hstspreload.org icon indicating copy to clipboard operation
hstspreload.org copied to clipboard

:lock: Chromium's HSTS preload list submission website.

Results 69 hstspreload.org issues
Sort by recently updated
recently updated
newest added

Security Headers gives hstspreload.org a score of D for its use of security headers. Please get the score to A+. https://securityheaders.com/?q=hstspreload.org&followRedirects=on The Qualys SSL Server Test points out that hstspreload.org...

This updates the Python scripts in `scripts/` to be Python3 compatible, and does some general cleanup. This also adds a new `.pylintrc` file and `.style.yapf` file so pylint and yapf...

@agl just moved us off of Travis. It should be fairly easy to switch to GitHub Actions. I might have time for this at some point, but it would probably...

[Type] enhancement
[Type] help wanted
testing

Currently, it seems to be `Go-http-client/2.0` which doesn't tell the purpose for the request. For example SSL Labs test sends `SSL Labs https://www.ssllabs.com/about/assessment.html)` as user-agent.

I'd like to add the site https://neběží.xyz (https://xn--neb-tma3u8u.xyz) to the HSTS preload list. This site is intentionally accessible only over IPv6. When I submit the preload request via https://hstspreload.appspot.com/?domain=neb%C4%9B%C5%BE%C3%AD.xyz I...

[Status] bug
google-cloud-workaround

Trying https://fowardemail.net there is a 302 redirect to `https://forwardemail.net/` (e.g. https://forwardemail.net/en) where hsts header is present >Strict-Transport-Security: max-age=31557600; includeSubDomains; preload hstspreload.org responds with `Error: No HSTS header Response error: No...

When checking if a subdomain is preloaded, I’d like to know if it’s been preloaded by a parent domain that has the `includeSubdomains` HSTS directive and the name of said...

I think it would be nice if the webpage for the HSTS preload list contained info where to actually get the preload list. The link goes to the github mirror...

Change the CSS so that the validation button (at the bottom of the page) can display all the text content.