Total Rows: 378159 Security Headers Grades: A 20,848 A+ 2,427 B 17,988 C 16,476 D 70,594 E 11,484 F 238,298 R 44 Sites using strict-transport-security: 98,774 Sites using content-security-policy: 47,869 Sites using content-security-policy-report-only: 3,469 Sites using x-webkit-csp: 316 Sites using x-content-security-policy: 1,313 Sites using public-key-pins: 471 Sites using public-key-pins-report-only: 5 Sites using x-content-type-options: 94,034 Sites using x-frame-options: 115,697 Sites using x-xss-protection: 69,333 Sites using x-download-options: 12,590 Sites using x-permitted-cross-domain-policies: 14,780 Sites using access-control-allow-origin: 21,619 Sites using referrer-policy: 60,206 Sites using feature-policy: 2,269 Sites using permissions-policy: 20,387 Sites using report-to: 117,706 Sites using nel: 116,967 Sites using security.txt: 3,342 Sites redirecting to HTTPS: 271,056 Sites using Let's Encrypt certificate: 128,116 Sites using EV Certificates: 3,042 Top 10 Server headers: cloudflare 141,938 nginx 57,349 Apache 34,564 LiteSpeed 9,590 Microsoft-IIS/10.0 8,467 openresty 4,926 nginx/1.18.0 (Ubuntu) 4,265 nginx/1.14.0 (Ubuntu) 3,733 AmazonS3 3,560 Microsoft-HTTPAPI/2.0 2,209 Top 10 TLDs: .com 166,295 .ru 16,121 .net 16,007 .cn 13,460 .org 12,814 .top 8,479 .br 7,160 .de 6,867 .jp 4,715 .uk 4,529 Top 10 Certificate Issuers: C = US, O = Let's Encrypt, CN = R3 95,789 C = US, O = Google Trust Services LLC, CN = GTS CA 1P5 50,582 C = US, O = Let's Encrypt, CN = E1 32,318 C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA 12,400 C = US, O = "Cloudflare, Inc.", CN = Cloudflare Inc ECC CA-3 7,632 C = US, O = Amazon, CN = Amazon RSA 2048 M02 7,173 C = US, O = Amazon, CN = Amazon RSA 2048 M03 6,144 C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2 5,423 C = US, O = DigiCert Inc, CN = DigiCert Global G2 TLS RSA SHA256 2020 CA1 4,323 C = US, O = DigiCert Inc, OU = www.digicert.com, CN = RapidSSL TLS RSA CA G1 2,753 TLS Protocol Versions: TLSv1.3 178,451 TLSv1.2 46,926 TLSv1.0 91 Top 10 Cipher Suites: TLS_AES_256_GCM_SHA384 152,726 TLS_AES_128_GCM_SHA256 24,448 ECDHE-RSA-AES256-GCM-SHA384 22,755 ECDHE-RSA-AES128-GCM-SHA256 16,678 ECDHE-RSA-CHACHA20-POLY1305 3,380 TLS_CHACHA20_POLY1305_SHA256 1,277 ECDHE-RSA-AES256-SHA384 1,246 ECDHE-ECDSA-AES256-GCM-SHA384 1,043 ECDHE-ECDSA-CHACHA20-POLY1305 529 ECDHE-ECDSA-AES128-GCM-SHA256 496 Top 10 PFS Key Exchange Params: X25519, 253 bits 189,706 ECDH, P-256, 256 bits 28,474 ECDH, P-384, 384 bits 4,428 ECDH, P-521, 521 bits 2,191 DH, 1024 bits 219 DH, 2048 bits 155 DH, 4096 bits 12 X448, 448 bits 5 Top Key Sizes: 2048 bit 163,009 256 bit 43,199 4096 bit 15,113 384 bit 2,727 3072 bit 1,095 1024 bit 35 8192 bit 10 3000 bit 1 4095 bit 1 Sites using CAA: 15,348 HTTP Protocol Versions: http/2.0 222,110 http/1.1 155,531 http/1.0 503