# Chapter 11. Security

**URL:** <https://discuss.httparchive.org/t/chapter-11-security/2047>\
**Category:** 2020 Web Almanac\
**Created:** [October 25, 2020, 11:19pm UTC](https://discuss.httparchive.org/t/chapter-11-security/2047 "2020-10-25T23:19:15Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![rviscomi](https://yyz1.discourse-cdn.com/flex035/user_avatar/discuss.httparchive.org/rviscomi/32/835_2.png) [@rviscomi](https://discuss.httparchive.org/u/rviscomi)\
**Post date:** [October 25, 2020, 11:19pm UTC](https://discuss.httparchive.org/t/chapter-11-security/2047/1 "2020-10-25T23:19:15Z")

</div>

# Tell us what you think!

We’d love to hear your feedback on the [Security chapter](https://almanac.httparchive.org/en/2020/security) of the 2020 Web Almanac. Leave a comment and tell us your questions, comments, and ideas.

_Poll ([view on site](https://discuss.httparchive.org/t/chapter-11-security/2047/1))_

## Chapter resources 🤓

Here are some additional resources if you’d like to learn more about how this chapter was made:

- [💡 Planning issue](https://github.com/HTTPArchive/almanac.httparchive.org/issues/906)
- [📝 Draft document](https://docs.google.com/document/d/1voVozbhlNMz1kAChwxlDYTVg43-EFDrDA7XIbTkcQgg/edit?usp=sharing)
- [🔎 Analysis queries](https://github.com/HTTPArchive/almanac.httparchive.org/tree/main/sql/2020/security)
- [📊 Analysis results](https://docs.google.com/spreadsheets/d/1T7sxPP5BV3uwv-sXhBEZraVk-obd0tDfFrLiD49nZC0/edit#gid=2077755325)

## Found a bug? 🐛

[File an issue](https://github.com/HTTPArchive/almanac.httparchive.org/issues/new?assignees=nrllh&labels=bug%2C+writing&template=2020-content-issue.md&title=Issue+with+the+2020+Security+chapter) or submit a pull request on GitHub. Thanks for your help!

## Join us! 🌱

The Web Almanac was built with the support of [over 100 contributors](https://almanac.httparchive.org/en/2020/contributors) from the web community. If you’d like to contribute to the 2021 edition, please fill out our [interest form](https://forms.gle/xDeiLMh1XHHL6LM8A) and we’ll reach out to you in mid-2021.

---

<div class="post-metadata">

**Author:** ![Alan-Liang](https://yyz1.discourse-cdn.com/flex035/user_avatar/discuss.httparchive.org/alan-liang/32/1824_2.png) [@Alan-Liang](https://discuss.httparchive.org/u/Alan-Liang)\
**Post date:** [December 23, 2020, 6:49am UTC](https://discuss.httparchive.org/t/chapter-11-security/2047/2 "2020-12-23T06:49:19Z")

</div>

Have you got data on OCSP stapling? I wonder how many servers have enabled them in 2020.

---

<div class="post-metadata">

**Author:** ![tunetheweb](https://yyz1.discourse-cdn.com/flex035/user_avatar/discuss.httparchive.org/tunetheweb/32/1671_2.png) [@tunetheweb](https://discuss.httparchive.org/u/tunetheweb)\
**Post date:** [December 23, 2020, 9:59am UTC](https://discuss.httparchive.org/t/chapter-11-security/2047/3 "2020-12-23T09:59:35Z")

</div>

Just checked and doesn’t look like OCSP stapling details are provided to our crawler.

Best bet would be to check SSL Labs Monthly Pulse report: [https://www.ssllabs.com/ssl-pulse/](https://www.ssllabs.com/ssl-pulse/). Looks like that as of the October run 31.2% of the sites they check (or 43,159 out of the 150,000 they check) have this enabled.
