October is recognized as Cyber Security Awareness Month. To help website owners help
keep personal information and private data safe, we’ve teamed up with Google Registry
to offer a 50% discount off HSTS-preloaded domains this October. Read on to learn more
about HSTS-preloading and why it matters.
Many website owners don’t know that bad actors can use even a single page that isn’t
encrypted to gain access to the rest of your website. Once they have access, they may try to
misdirect traffic, spy through open Wi-Fi networks, inject malware or tracking, or alter site
content. To help make your website more resistant to these kinds of HTTP downgrade attacks,
you can opt for HSTS-preloading. The HSTS-preload list contains websites that modern
browsers know only load over a secure, encrypted connection. HSTS-preloading is one of
the best things a website owner can do to make their website secure.
There are two ways to implement HSTS preloading:
- Add your existing domain to the HSTS-preload list and wait for an indeterminate
amount of time. This could take weeks or even months and is dependent on browsers
accepting the change. - Use a HSTS-preloaded top-level domain and receive the highest standard of website
encryption from day one. There are no extra steps beyond installing an SSL certificate
and no need to wait for browsers to update.
All the following top-level HSTS-preloaded domains are available at 50% off, from now
through the end of October: .app, .dev, .page, .day, .foo, .nexus, .mov, .zip, .dad, .phd,
.esq, .prof, .boo, .rsvp, .ing, .meme. For more info on encryption and HSTS-preloading, check
out this video.