Moz Q&A is closed.
After more than 13 years, and tens of thousands of questions, Moz Q&A closed on 12th December 2024. Whilst we’re not completely removing the content - many posts will still be possible to view - we have locked both new posts and new replies. More details here.
Can I leave off HTTP/HTTPS in a canonical tag?
- 
					
					
					
					
 We are working on moving our site to HTTPS and I was asked by my dev team if it is required to declare HTTP or HTTPS in the canonical tag? I know that relative URL's are acceptable but cannot find anything about HTTP/HTTPS. Example of what they would like to do Has anyone done this? Any reason to not leave off the protocol? 
- 
					
					
					
					
 Very good to hear, thanks Shawn! The goal is to use absolute canonicals, but for a period of time, we may have to use protocol relative. The redirects in place should avoid any duplicate content issues, which seems to be the big landmine. 
- 
					
					
					
					
 That's good to know. Thanks for the update Shawn. Since the initial discussion took place several Google reps. have publicly stated that there is no PageRank loss between redirects and rel ="canonical" tags. This seems to substantiate their claim. The biggest issue with these is when giving conflicting instructions to user agents, such as a redirect to a page that rel canonicals back to the URL from which it was redirected, thus closing an infinite loop. For example, if you redirected from HTTP to HTTPS, but then the HTTPS version had a rel ="canonical" tag that was hard-coded to the HTTP version. The above issue doesn't apply because you're redirecting from HTTP to HTTPs, which shows a relative path rel canonical tag for the HTTPs domain. 
- 
					
					
					
					
 Now that our entire site is HTTPS, there does not seem to be any negative impact to our URL's by leaving off the HTTP protocol. If there was any traffic lost, it didn't seem significant as our reports did not indicate a decline. One year later, traffic through SEO is higher than before we implemented. I personally agree with Everett, don't leave things to chance. I did require that the homepage did have HTTPS for the canonical though. I felt massive panic attacks while we were going through the transition. However, if you are unable to convince your developers the importance of using an absolute path for canonical this did not seem to have a negative impact on our site. I am glad that we didn't have any noticeable impact, but I am also glad that I didn't turn it into a bigger issue within our leadership team. Since we didn't see anything negative, it could've reduced my credibility within the business which would've had made it difficult for larger SEO problems. BTW, we are still using relative canonical tags today. (except the homepage, that still has HTTPS) 
- 
					
					
					
					
 Hey Shawn, did using an unspecified HTTP/HTTPS protocol work for you in the canonical and/or HREF-LANG? We are going through a transition to HTTPS as well, and have multiple systems with some URLs that are hard coded. Hoping this solution would work as a short-term fix, while we update these pages to use a new, more dynamic system. 
- 
					
					
					
					
 Shawn, My advice would be to canonical everything to the HTTPS version using an absolute path. That would be the best practice. I understand that is not what you're doing and you aren't getting any errors, but site-wide use of rel canonicals is something that can do more harm than good if a search engine misinterprets what you're trying to accomplish. Either way, good luck and keep us posted. 
- 
					
					
					
					
 No worries Shawn. I also hope it doesn't cause issues down the line. Everything in me is screaming "Don't do it!"  Best of luck. -Andy 
- 
					
					
					
					
 I know, and that's what sucks. It appears to work, but goes against what seems to be best practice and since I cannot find other instances to state one or the other it's hard not to follow their logic. I just hope it doesn't screw up everything in the end. Thanks for the discussion. 
- 
					
					
					
					
 Well, if it works (which I didn't think it would!) then I guess that answers one question - and I ran that page through Screaming Frog just to confirm there are no issues and it does indeed canonical back to the https version of the page. I just can't get out of the mindset that the format looks wrong. I haven't seen other instances of it done that way, and like you, have no documentation to suggest issues that might be caused. Sorry I can't be of more help. -Andy 
- 
					
					
					
					
 Thanks Andy, I posted a reply to the other response that ties into your comment here. On the page I listed above, there are not errors if I use HTTPS and the canonical doesn't declare anything. We have SSL certs, just haven't made the big switch yet. 
- 
					
					
					
					
 Thanks for the answers, all of which I've passed on to them. They have attempted this on a page and have not seen any errors or issues as of yet which is problematic for me in the sense of if I cannot show where any issue results by them taking shortcuts, they will not necessarily listen to my feedback. Here is the URL that they have left off the protocol in the canonical http://www.alaskaair.com/content/deals/flights/cheapest-flights-to-hawaii.aspx. I use the Chrome extension Canonical which doesn't give me the icon indicating that I am not viewing the preferred URL. When I use HTTPS and view source it looks the same as it does with HTTP. Sometimes there are parameters in the URL like ?INT=AS_HomePage_-prodID:SEO and even with HTTP missing from the canonical it still seems to work. Since I cannot find any documentation against doing it this way I am getting strong resistance to declaring HTTP and then going back at some point when it moves to HTTPS and updating. Like I've stated above, they are using this for links and assets on the site since our site moves back and forth between HTTPS and HTTP depending on what the customer is doing and they have found leaving off the protocol it makes their life easier and limits the errors that Andy below mentions. https://www.alaskaair.com/content/deals/flights/cheapest-flights-to-hawaii.aspx 
- 
					
					
					
					
 Hi again To be clear, I think this would populate http://www.domain.com//www.domain.com as the where the canonical should be attributed to. Hope this makes a bite more sense. Good luck! 
- 
					
					
					
					
 Example of what they would like to do That would be a no-no Shawn. If you are running over SSL, then you need to canonical back to the https version of the page. If you don't, you will end up with errors on the page (yellow warning triangle) and trust issues with Google. What they would like to do is canonical to a malformed URL which it could interpret as a file. Try going to any URL and just entering it as //www.domain.com -Andy 
- 
					
					
					
					
 Hi there According to Google... Avoid errors**:** use absolute paths rather than relative paths with the rel="canonical"link element. However, they then say (under "Prefer HTTPS over HTTP for canonical URLs)...
 Google prefers HTTPS pages over equivalent HTTP pages as canonical, except when there are conflicting signals such as the following: - The HTTPS page has an invalid SSL certificate.
- The HTTPS page contains insecure dependencies.
- The HTTPS page is roboted (and the HTTP page is not).
- The HTTPS page redirects users to or through an HTTP page.
- The HTTPS page has a rel="canonical"link to the HTTP page.
- The HTTPS page contains a noindexrobots meta tag
 Although our systems prefer HTTPS pages over HTTP pages by default, you can ensure this behavior by taking any of the following actions: - Add 301 or 302 redirects from the HTTP page to the HTTPS page.
- Add a rel="canonical"link from the HTTP page to the HTTPS page.
- Implement HSTS.
 To prevent Google from incorrectly making the HTTP page canonical, you should avoid the following practices: - Bad SSL certificates and HTTPS-to-HTTP redirects cause us to prefer HTTP very strongly. Implementing HSTS cannot override this strong preference.
- Including the HTTP page in your sitemap or hreflang entries rather than the HTTPS version.
- Implementing your SSL/TLS certificafe for the wrong host-variant: for example, example.com serving the certificate for www.example.com. The certificate must match your complete site URL, or be a wildcard certificate that can be used for multiple subdomains on a domain.
 
 Since I don't know how your SSL is configured, I can't tell you one way or another, but if you have a https version of your pages, then head that direction. Having a relative protocol won't seem to work here for what you're asking. Read the above and let me know if that helps! Good luck! 
- 
					
					
					
					
 I did read that before I asked, it didn't really answer my question. I understand that relative URL's work, but leaving off the protocol declaration isn't relative it just leaves it up to the server to provide whether the site is secure or not. Since we use multiple systems across our site, there isn't an easy way to implement relative or absolute canonical tags which is why the dev's want to know if they can implement without HTTP/HTTPS. They like to do this with assets on the site and have started to code links in a similar manner. What I can't determine is if this will cause issues. 
- 
					
					
					
					
 Hi there According to Google, they want you to either use relative URLs or use absolute URLs. You can read more here. I recommend reading this so you can see the types of common mistakes they find and how to resolve those. Good luck! 
Got a burning SEO question?
Subscribe to Moz Pro to gain full access to Q&A, answer questions, and ask your own.
Browse Questions
Explore more categories
- 
		
		Moz ToolsChat with the community about the Moz tools. 
- 
		
		SEO TacticsDiscuss the SEO process with fellow marketers 
- 
		
		CommunityDiscuss industry events, jobs, and news! 
- 
		
		Digital MarketingChat about tactics outside of SEO 
- 
		
		Research & TrendsDive into research and trends in the search industry. 
- 
		
		SupportConnect on product support and feature requests. 
Related Questions
- 
		
		
		
		
		
		How many links can you have on sitemap.html
 we have a lot of pages that we want to create crawlable paths to. How many links are able to be crawled on 1 page for sitemap.html White Hat / Black Hat SEO | | imjonny0
- 
		
		
		
		
		
		White H1 Tag Hurting SEO?
 Hi, We're having an issue with a client not wanting the H1 tag to display on their site and using an image of their logo instead. We made the H1 tag white (did not deliberately hide with CSS) and i just read an article where this is considered black hat SEO. https://www.websitemagazine.com/blog/16-faqs-of-seo The only reason we want to hide it is because it looks redundant appearing there along with the brand name logo. Does anyone have any suggestions? Would putting the brand logo image inside of an H1 tag be ok? Thanks for the help White Hat / Black Hat SEO | | AliMac261
- 
		
		
		
		
		
		How/Why do I have so many Spam backlinks?
 I was looking in GWT yesterday and found we have several thousand "spam" backlinks...I am curious why this happens and how this happens? There are some links from websites/domains that are not mine that appear to be spam. However, we own a large group of domains and have noticed some of the links are coming from 2 of those sites/domains we own to my main site. The sites/domains are not active, we just own them. I am wondering how someone could access these domains that are not active and create spammy backlinks to my main website? (They created about 20,000 links). Thanks. White Hat / Black Hat SEO | | carlystemmer0
- 
		
		
		
		
		
		Domain.com/XXX or domain.com/blog/XXX ?
 i have a business and a side blog on the website. is it fine to turn my blog to domain.com/XXX instead of domain.com/blog/XXX? does it in anyway of these affect the SEO? White Hat / Black Hat SEO | | andzon0
- 
		
		
		
		
		
		Hidden H1 Tags
 I am trying to triple check this - I have a client who has all of their H1 tags as hidden. As far as I am concerned, anything hidden is not a good thing for SEO. I am debating with their online store provider that this is not good practice. Everything I am reading says it is not good practice. They are saying it is for "My SEO experience would suggest otherwise. In addition, the H1 adds semantic value for users with disabilities to help give them context with what the content of the page is." Did I miss something? They are a large brand and have not been penalized. This has been happening for 8 months. White Hat / Black Hat SEO | | smulto0
- 
		
		
		
		
		
		Can a Page Title be all UPPER CASE?
 My clients wants to use UPPER CASE for all his page titles. Is this okay? Does Google react badly to this? White Hat / Black Hat SEO | | petewinter0
- 
		
		
		
		
		
		Would linking out to a gambling/casino site, harm my site and the other sites it links out to?
 I have been emailed asking if I sell links on one of my sites. The person wants to link out to slotsofvegas[dot]com or similar. Should I be concerned about linking out to this and does it reduce the link value to any of the other sites that the site links out to? Thanks, Mark White Hat / Black Hat SEO | | Markus1111
- 
		
		
		
		
		
		How do I find out if a competitor is using black hat methods and what can I do about it?
 A competitor of mine has appeared out of nowhere with various different websites targetting slightly different keywords but all are in the same industry. They don't have as many links as me, the site structure and code is truly awful (multiple H1's on same page, tables for non-tabular data etc...) yet they outperform mine and many of my other competitors. It's a long story but I know someone who knows the people who run these sites and from what I can gather they are using black hat techniques. But that is all I know and I would like to find out more so I can report them. White Hat / Black Hat SEO | | kevin11
 
			
		 
			
		 
			
		 
			
		 
			
		 
					
				 
					
				 
					
				 
					
				 
					
				 
					
				 
					
				