Expect-CT

HTTP response header

The Expect-CT header allows sites to opt in to reporting and/or enforcement of Certificate Transparency requirements which prevents the use of misissued certificates for that site from going unnoticed

Header usage statistics

Expect-CT response header information and usage statistics.

Websites using header Expect-CT 870,830
Percentage of websites that use Expect-CT header 7.47%
Total discovered header values 2,387
Header uses directives Yes
Header values are unique or random No
Most popular in the country United States of America

Expect-CT Directives (3 total)

  • enforce
  • max-age
  • report-uri

Expect-CT Directives

Expect-CT directives value information and usage statistics

Directive Share Websites count Unique Values
max-age 79.98% 696,448 90
report-uri 79.01% 688,002 1,357
enforce 0.82% 7,121 51

Connected technologies

Technologies that utilize the header

CloudFlare, category Content Delivery Networks, total 910,090 websites

Distribution by websites popularity

Expect-CT detection in the top websites by popularity

Top 10k sites 2,581 websites
Top 100k sites 14,559 websites
Top 1m sites 118,007 websites

Websites utilizing Expect-CT

List of websites that use Expect-CT header

Domain Country Rank Contacts
github.com United States of America 23
cdnjs.cloudflare.com United States of America 33
creativecommons.org United States of America 34
medium.com United States of America 37
tinyurl.com United States of America 69
about.me United States of America 94
See full domain list

Geographical Distribution

Header usage distribution by websites across the globe.






Common header values

List of top common Expect-CT header values

Header value Value prevalence
max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct" 97.62%
max-age=31536000, report-uri="http://csp.yahoo.com/beacon/csp?src=yahoocom-expect-ct-report-only" 0.31%
max-age=0 0.20%
max-age=7776000, enforce 0.19%
max-age=86400 0.16%
max-age=0, report-uri="/report-expect-ct-violation" 0.13%
max-age=300, report-uri="https://report.enjin.com/expect-ct" 0.10%
enforce, max-age=21600 0.08%
report-uri="https://web-security-reports.services.atlassian.com/expect-ct-report/global-proxy", enforce, max-age=86400 0.08%
max-age=31536000 0.07%
max-age=86400, enforce 0.05%
max-age=31536000, enforce 0.04%
enforce, max-age=30 0.04%
enforce, max-age=86400, report-uri="https://hpage-report.uriports.com/reports/enforce" 0.03%
enforce; max-age=2592000; 0.03%
enforce, max-age=31536000 0.02%
enforce, max-age=300 0.02%
enforce, max-age=86400 0.02%
enforce, max-age=3600 0.02%
enforce,max-age=86400 0.02%