HSTS and Preloading: How to Enable Safely
Enabling HSTS can prevent downgrade attacks, but max-age and includeSubDomains must be configured carefully, and thorough self-testing must be completed before preloading to avoid affecting grayscale and rollback.