HTTPS, SSL & Security Report for ruokamo.eu

This report summarizes how well ruokamo.eu is configured for secure web delivery. It covers HTTPS availability, HTTP→HTTPS redirects, TLS/SSL certificate validity, security headers, HTTP/2 and HTTP/3 support, and mixed content. Use it to quickly spot configuration gaps and improve your site's security and trust.

SecureScore95/100Last checked: 7 Sept 2026 at 16:15 UTC
HTTPS

Enabled

HTTP → HTTPS

Yes

TLS

A · 1.2, 1.3

Security headers

4/6

Detailed checks

HTTPS availability

The site is reachable over HTTPS.

Why it matters: HTTPS encrypts traffic and protects user data.

HTTP to HTTPS redirect

Requests to HTTP are redirected to HTTPS.

TLS & CertificateA

You entered ruokamo.eu. After redirects, browsers use jarno.ruokamo.eu. Certificate below is for ruokamo.eu. Headers and TLS are from jarno.ruokamo.eu.

Valid (ruokamo.eu)Yes
IssuerC=US, O=Let's Encrypt, CN=YE2
Expires2026-11-17
Days until expiry71 days
OCSP staplingNo

Certificate for jarno.ruokamo.eu

ValidYes
SubjectCN=jarno.ruokamo.eu
Expires2026-11-24 (77 days)

Why it matters: A valid, non-expired certificate ensures encryption is trusted by browsers.

To improve your grade

  • Improve: Security Headers (+5 pts).
  • For A+: add HSTS preload.
  • For A+: add Content-Security-Policy.

Monitor this domain

We'll check SSL grade, HTTPS, redirects, and security headers automatically. Email only when something changes.

Start monitoring — freeOne-click account with Google, GitHub, or email. No password.

Free: 1 domain, weekly. Plans from €7/mo — daily checks, up to 50 domains, history & white-label PDF.

Grade breakdown3 things to improve for a higher grade →
95/100 pts
HTTPS Connection
+25/25
HTTP to HTTPS Redirect
+20/20
Valid SSL Certificate
+20/20
Certificate Not Expiring Soon
+10/10
Short Redirect Chain
+5/5
HSTS Enabled
+5/5
Security Headers
+0/5

Requires 4 of 6 headers and Content-Security-Policy (CSP).

Modern TLS (no 1.0/1.1)
+10/10

To improve your grade

  • Improve: Security Headers (+5 pts).
  • For A+: add HSTS preload.
  • For A+: add Content-Security-Policy.

Security headers4/6

  • HSTS
  • CSP
  • X-Frame-Options
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policy

Score: 4 of 6 headers effective. For the grade factor (5 pts), 4+ headers and Content-Security-Policy (CSP) are both required.

HSTS (HTTP Strict Transport Security)Enabled

  • EnabledYes
  • Max-Age365 days
  • PreloadNo
Submit or verify on hstspreload.org

Why it matters: HSTS tells browsers to use only HTTPS for this site. Preload allows inclusion in browsers’ built-in HSTS lists.

We check Chromium’s built-in list. hstspreload.org checks eligibility for submission (HSTS header, redirect chain). Results may differ for domains that are preloaded but no longer meet current eligibility rules.

HTTP/2

Negotiated (ALPN h2)

ALPN: h2

HTTP/3 (QUIC)

Advertised (not negotiated)

Alt-Svc: h3=":443"; ma=2592000

Advertised via Alt-Svc, but an active HTTP/3 request fell back (server did not serve h3 on UDP 443).

DNS Security

CAAConfigured

Allowed issuers: pki.goog, letsencrypt.org

DNSSEC
Validated
HTTPS Record
Not set

No HTTPS record. Browsers discover protocols via connection — an HTTPS record speeds this up. Learn more →

Mixed content

None detected

No HTTP resources were detected on the HTTPS page.

Redirect chain1203ms total

When you visit the site over HTTP, the server may send you through one or more redirects until you land on the final HTTPS URL. Shorter chains are faster and better for SEO.

  1. 1.http://ruokamo.eu295ms
  2. 2.https://ruokamo.eu/448ms
  3. 3.https://jarno.ruokamo.eu/460ms

Recommendations for ruokamo.eu

Based on this scan, here are the 2 next steps that would most improve security and SEO for ruokamo.eu.

  1. Add 2 missing security headers

    Recommended

    ruokamo.eu sends 4 of 6 recommended security headers — missing: CSP, Permissions-Policy. Most take one line of server config and protect against clickjacking, MIME sniffing and data leaks.

  2. Enable OCSP stapling

    Nice to have

    ruokamo.eu did not staple an OCSP response on the TLS handshake. Stapling saves a round-trip for visitors and keeps revocation checks off the CA. Informational — it does not affect the SSL grade.

Show this badge on your site

Let your visitors know your SSL setup is verified. The badge always shows your current grade and links to this report. Paste the snippet into your site footer:

SSL grade badge for ruokamo.eu← live preview, updates automatically
<a href="https://httpsornot.com/report/ruokamo.eu?utm_source=badge" target="_blank" rel="noopener">
  <img src="https://httpsornot.com/badge/ruokamo.eu.svg" alt="SSL grade for ruokamo.eu — checked by HTTPS Checker" height="20" loading="lazy" />
</a>

Domain owner? If you want this report removed or made private, contact us.

Need this check in a script or CI? JSON API — free, no key, 120/hour per IP. Shared CI or Google Sheets egress IP? Create a free API key.