SECURITY FINDING
TLS/HTTPS handshake failed
What it is
We couldn't establish a secure (HTTPS) connection at all. This is usually an outdated TLS configuration (very old protocol/cipher support only) that modern browsers and scanners refuse to negotiate — visitors on a modern browser may not be able to reach the site securely either.
How to fix it
Ask your hosting provider to enable TLS 1.2/1.3 on this domain.
In depth
Your website is not able to establish a secure connection using modern security standards. When someone tries to visit your site with an up-to-date web browser, the browser and your server cannot agree on how to encrypt the conversation between them, which means visitors may see error messages or the site may not load at all. This happens because your hosting server is configured to use very old, outdated encryption methods that modern browsers have stopped accepting for security reasons. You need to contact your web hosting company's support team and ask them to enable TLS 1.2 or TLS 1.3 on your domain, which are the current standard secure connection protocols. This is a server-level setting that your hosting provider controls, so they will need to make this change for you—it's not something you can fix from within WordPress itself. Once they update the configuration, your site will be reachable securely by modern visitors and will pass security checks.
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.