1. Never give your private key to anyone
2. Especially not if it is sent over an unencrypted connection (the site doesn't even use https)
3. Don't. Just don't.
This is either the weakest attempt of the NSA to collect private SSL keys ever, or this company actually has zero knowledge of the product they're selling and shouldn't be trusted with your site's security