Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
BRedirect Chain1 redirect(s), 2408 ms totalREVIEW
https://ionos.fr
1163 ms · HTTP/1.1
https://www.ionos.fr/
1245 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://ionos.fr | 301 | 1163 ms | HTTP/1.1 | Apache |
| 2 | https://www.ionos.fr/ | 200 | 1245 ms | HTTP/1.1 | Apache |
See the visual redirect chain in the HTTP Probe tab →
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BHTTP Probe TimingTotal 1377 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations151 days until leaf cert expires — 5 issues to addressREVIEW
Certificate validity
Recommended actions
- Prefer TLS 1.3 — TLS 1.2 is acceptable but TLS 1.3 removes RSA key exchange and improves latency
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
ADNS Records2 A records, 383 ms lookupPASS
| A | 217.160.86.49, 217.160.86.51 |
| AAAA | — |
| CNAME | — |
| NS | ns-1and1.ui-dns.biz, ns-1and1.ui-dns.de, ns-1and1.ui-dns.org, ns-1and1.ui-dns.com |
| MX | 10 mxint02.1and1.com 10 mxint01.1and1.com |
| TXT | facebook-domain-verification=kr51nsl2y75l73kl8wupn47cyu2ad8 google-site-verification=jeVezsM5i-M-3GARdThXn8shcgCA9_fTLO2IkPWPMBs globalsign-domain-verification=B3CDCFAAD7B7F796CA726890BEBA1D34 w7f33tk9q2h7gyj3r5d772fpwwtw47js dwgv68r9y354986dmp74wxlyvj06t8cr google-site-verification=bUaDNaCrx1SitOzQs-cTuKEY6DC5Wql689zrAD3vQPM yngnb4jfy17386fkgq7k83z5ygxr6dbc google-site-verification=NaEq_PZX4dw63jIhyXf-jCiCO3_VOLkMTjZmEW5BqTc 3px5ybb9b2md54vfdq079ldlcjsggf69 _telesec-domain-validation=358289_2026-02-19_Ixfb9n3DvYZ5sxMFRhkfTkm0CI4vYLr5is3... bg1nhg32qwy6vn4p5xkn0yc71y60t32f globalsign-domain-verification=c8b02db001691521c8af8eeabd4a80fd SPF v=spf1 redirect=_spf-corporate.ionos.com wpnv3wbbchbnlysjtlmmd1tj0jkm21kw |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
Slow DNS adds latency to every page load. Consider a faster DNS provider.
DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.
Source: DNS performance benchmarks
A+Crawlabilityrobots.txt present, sitemap with 450 URLsPASS
Sitemap: https://www.ionos.fr/sitemap.xml
User-agent: *
#print
Disallow: /details-print
#terms and conditions
Disallow: /terms-
#Popups etc.
Disallow: /details-
Disallow: /popup
Disallow: /Feature
Disallow: /*-popup$
#Results
Allow: /server-configurator
Disallow: /domaincheckresult
Disallow: /tariffselect
#crawl delay
User-agent: Slurp
Crawl-delay: 300
User-agent: msnbot
Crawl-delay: 300
User-agent: dotbot
User-agent: kinshoo
Disallow: /
A+Domain Intelligenceionos.fr — via InterNetX GmbH, 9 years, 10 months old, hosted on IONOSPASS
48 days
August 2, 2026
151 days
Issued by Sectigo Limited
9 years, 10 months
Registered July 20, 2016
Status unknown
Protects against DNS spoofing
IONOS
ASN AS8560
217.160.86.49
InterNetX GmbH
Expiry timeline
Recommended actions
- Renew the domain or enable auto-renewal to prevent accidental expiry
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice