Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BTLS Certificate Expiry & Recommendations253 days until leaf cert expires — 5 issues to addressREVIEW
Certificate validity
Recommended actions
- Extend HSTS max-age to at least 31536000 (1 year) to meet the preload list criteria
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
BCDN & DeliveryAkamaiREVIEW
A+DNS Records1 A records, 77 ms lookupPASS
| A | 23.46.84.192 |
| AAAA | 2a02:26f0:e0:49d::1127, 2a02:26f0:e0:4a7::1127 |
| CNAME | — |
| NS | a7-66.akam.net, a4-64.akam.net, a1-164.akam.net, a6-65.akam.net, a13-67.akam.net, a8-67.akam.net |
| MX | 0 ea-com.mail.protection.outlook.com |
| TXT | atlassian-domain-verification=TcMmJBl8jkffKRnLX0s82TVPAOBmzFE8N1xCvCg42ehCFfU8nx... jamf-site-verification=S-CTq123ci-Nj6fX_h7xLA SPF v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.protection.o... amazonses:f11tLfH2vr9OwsWpUEXnb+wXe8KNcen1j3Lk5fK4W7U= apple-domain-verification=AYQE6OxMih12JCzk y5503r708mgq4j4q43ybr6rft71x8xvs amazonses:h4cXsZhHgq6fK4DGoUQgriYwSeE6hO5aJ+h6wHnx/fk= docker-verification=4bfce2f1-7d0f-474e-a43b-d60d18b35182 logmein-verification-code=a02f93d4-a3af-4666-9eac-1b942a06a775 google-site-verification=OuARkQv2V73oYiiZVk88KR1JF5-dQ9Coy1ZRLl6sCsc amazonses:mgCkNYnAkmnZtXK6zLrZW+THRSUyJZGJnSOBdj+isYU= tiktok-developers-site-verification=VcYwjcEIoOmPFODSYEQjCUP09jElnNkn google-site-verification=GYuY8XAe8jdr6Wr-IFTvC75N3UOWel-PJ3LB55n0f4Q ms-domain-verification=2658d552-c7d7-4822-a256-16eb09a6a432 google-site-verification=W_cWHGmP5RqmA9hYnm8inTTb9Sau7q1Ro911CH4SrZ8 ms-domain-verification=28dc05d9-f0d5-48a8-b161-eff7735d41ae QfGw4p+QlBkLTkHaJRQrTAHpN+ZgoZENi4uAnKBoQVVKGMBBhCzqeTpmndH2fHvajdi9FWSCrdQrPwQ7... atlassian-domain-verification=rPC6tgQBbotGCUJc2KCnOxlbxW4GeR54VPwPc8fVfQpr0y2k2H... 9wdnz07rdws73ndsd29bvbh2g078mrpm parsec-domain-verification=td_2PekalqDxqm3NIcvbo3Megt72X9 openai-domain-verification=dv-YrfF7OlR2a17O78uKEgzshRW Console2714e2e7-3fa3-4b34-8693-c09b1d9986c6 amazonses:SMeDjsim2TRE1HOX7bQmJJhBjV2DZPdakNXVtC1U5QA= openai-domain-verification=dv-zKMivwPHrBsP7kgvIdS6GaY4 pendo-domain-verification=b222077a-2e50-4ff3-ad90-fa75f5dca758 01E6D34C64F24201EE75D6BB52FD49ECA8E7F05E57CFC5D9963DFE28F5DD793B amazonses:9QIPnjs+UD8ZuYiSqjVTy4qGcBR9TIvB3HD52irZPjk= google-site-verification=JPqUmrL51cf3BGW7dM_RP70SaOhgCQpfVmfEWE4JWS0 3OmNQBavww/twjq0qhOd4N4Iq1nVxlwZIn7++1Ax/cGPh4tRz1V1Vwg1f/TiE2Fno+6l4BykGENz65LM... _lu7s8u6zwcdy6lwf0owmzy5zwnqwin1 google-site-verification=dSC8gq7vptNeGVIDEpGQZ0xE8s-5BBIbc1r6R3_PwT0 267F68C89F9174C1DE93BE4BD20990BB09014EE6355582AA62F1CA95FC962B2C shopify-verification-code=oarXm8VVyw5BycTVUZS53HSydl24Ba AagMut9FoA4ka4DYvu3QvUa5FRJCN4esFVQ3RG6RdGAjA8hTAlxLXme7sSHZnFDNX7XAPe5BIIbg1G23... v=DKIM1;k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDUejllw7R9wJvQ8LoCS5LwXo3x... v=DMARC1;p=none;fo=1;rua=mailto:yesmail@rua.agari.com;ruf=mailto:yesmail@ruf.aga... google-site-verification=T8NmTlNnB0xPkycfop5hMmOAVQSivlmA4d8Y7--2x6U _gx03bxq9om1klr17fd0eqqwfw026png lovable_verification=wZkgBHNGXK1sMxUCtqNt 30d0e455-f274-4c0b-b606-9a835bf5974e.falcon.ea.com google-site-verification=069b0lSxMIobzf7rJTBnXqb1KDTmfFhsJMm8mP9xnBU tiktok-developers-site-verification=UWDwy70DCmMmCerrJX6oV1pRGABPapRe lookingglassweb.azurewebsites.net facebook-domain-verification=oq80s5pdyo1d8huizochkuyscyewf2 cisco-ci-domain-verification=4cb82531e58e0b3c12afb359f5142eb4d461e0e589eefa3603a... adobe-sign-verification=c3b24a9842e8e22172e2568873e4ed3b google-site-verification=VtxQaj7j_j013LXYPxlTV644QBxazMYipfG1USdvrOk globalsign-domain-verification=jpcnVg6kuHYyEz5op6ZzxI2E53gePoVqca7RgL0aNq mongodb-site-verification=cPx4xoyitTn3W8MmDPht4i7jYkP8v55b unity-sso-verification=aac6dbce-432e-47c8-b84b-3e2b17bdbbe6 adobe-idp-site-verification=b36e2eb4-d986-4903-a5be-15e3651396cf tiktok-developers-site-verification=gZsAdTrtYEO38BFg51P9NCZxK5vsqpvh favro-verification=ZZeXG7b1hCYDjKGawUWpxK5LA1IhkTZux_oDE7q5Uml MS=ms19667016 tiktok-developers-site-verification=C3JxOQdbxqWHFTDQe4NxjsoVILVmkWNz coda-domain-verification=5a85c362ac0b72f3424ca33c00d23799dce6bdf8ba8f7229063d19b... openai-domain-verification=dv-gHyy52y9q0nsS0u2VTHOjT1o smartsheet-site-validation=2s81-L1kix0MAeJQmj44rEehwVlCUIYV google-site-verification=HYdRtN3xk_TxaVDfhAVQb-Qbav7wj57E01Pci8x3oOg Dynatrace-site-verification=54000376-a605-40b6-955d-7db46b6afc4c__lbfps854cgctsk... 60c96f47dd6a7488b6dd38d5ae33efc370ebc531b96579f91f |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ARedirect Chain1 redirect(s), 56 ms totalPASS
https://ea.com
8 ms · HTTP/1.1
https://www.ea.com/
48 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://ea.com | 301 | 8 ms | HTTP/1.1 | AkamaiGHost |
| 2 | https://www.ea.com/ | 200 | 48 ms | HTTP/1.1 |
See the visual redirect chain in the HTTP Probe tab →
A+IPv6 ReadinessIPv6 reachable (0 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 35 URLsPASS
User-agent: *
Disallow: /results
Sitemap: https://www.ea.com/sitemap.xml
# --- BLOCKED BOTS ---
User-agent: AI2Bot
Disallow: /
User-agent: Bytespider
Disallow: /
User-agent: FriendlyCrawler
Disallow: /
User-agent: ICC-Crawler
Disallow: /
User-agent: cohere-ai
Disallow: /
User-agent: cohere-training-data-crawler
Disallow: /
User-agent: Meta-ExternalAgent
Disallow: /
#Electronic Arts Inc. and its affiliated companies explicitly reserve all their rights in any content made available, including on websites, social media pages and any other platforms. Electronic Arts content includes without limitation, video games, visual displays of video games, characters, brands, artworks, images, videos, music, dialogue, story, and any Electronic Arts works or data. Any use of such content for the development, training, programming, improvement and/or enhancement of artificial intelligence (including, but not limited to, generative AI systems), web scraping, machine learning, or any form of text or data mining, is prohibited, unless specifically and explicitly authorized in writing by Electronic Arts.
#This statement is a reservation of rights with respect to text and data mining under Article 4 (3) of Directive (EU) 2019/790 and any analogous statutes worldwide.
- https://www.ea.com/sitemap-ar-sa.xml
- https://www.ea.com/sitemap-cs-cz.xml
- https://www.ea.com/sitemap-da-dk.xml
- https://www.ea.com/sitemap-de-de.xml
- https://www.ea.com/sitemap-en-au.xml
- https://www.ea.com/sitemap-en-ca.xml
- https://www.ea.com/sitemap-en-gb.xml
- https://www.ea.com/sitemap-en-us.xml
- https://www.ea.com/sitemap-es-es.xml
- https://www.ea.com/sitemap-es-mx.xml
- https://www.ea.com/sitemap-fi-fi.xml
- https://www.ea.com/sitemap-fr-ca.xml
- https://www.ea.com/sitemap-fr-fr.xml
- https://www.ea.com/sitemap-hi-in.xml
- https://www.ea.com/sitemap-in-id.xml
- https://www.ea.com/sitemap-it-it.xml
- https://www.ea.com/sitemap-ja-jp.xml
- https://www.ea.com/sitemap-ko-kr.xml
- https://www.ea.com/sitemap-ms-my.xml
- https://www.ea.com/sitemap-nb-no.xml
- https://www.ea.com/sitemap-nl-nl.xml
- https://www.ea.com/sitemap-pl-pl.xml
- https://www.ea.com/sitemap-pt-br.xml
- https://www.ea.com/sitemap-pt-pt.xml
- https://www.ea.com/sitemap-ro-ro.xml
- https://www.ea.com/sitemap-ru-ru.xml
- https://www.ea.com/sitemap-ru-ua.xml
- https://www.ea.com/sitemap-sv-se.xml
- https://www.ea.com/sitemap-sw-ke.xml
- https://www.ea.com/sitemap-th-th.xml
- https://www.ea.com/sitemap-tl-ph.xml
- https://www.ea.com/sitemap-tr-tr.xml
- https://www.ea.com/sitemap-zh-cn.xml
- https://www.ea.com/sitemap-zh-hk.xml
- https://www.ea.com/sitemap-zh-tw.xml
A+Domain Intelligenceea.com — via CSC Corporate Domains, Inc., 33 years, 5 months oldPASS
303 days
April 15, 2027
253 days
Issued by DigiCert Inc
33 years, 5 months
Registered April 14, 1993
Not enabled
Protects against DNS spoofing
Unknown
2a02:26f0:e0:4a7::1127
CSC Corporate Domains, Inc.
Expiry timeline
Recommended actions
- Enable DNSSEC to protect visitors from DNS spoofing
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
DNSSEC protects against DNS spoofing attacks. While not required, enabling DNSSEC adds an additional layer of security. Contact your DNS provider to enable it.
Without DNSSEC, an attacker who can poison your DNS can hijack your domain — and SSL certs alone don't stop them.
Learn more ▾ ▴
DNSSEC adds cryptographic signatures to DNS records, preventing forged responses from poisoning resolver caches. Without it, an attacker who controls the network path can redirect your domain to a malicious server before any HTTPS handshake happens. Most modern registrars (Cloudflare, Google Domains, Route 53) enable it with one toggle.
Source: ICANN / RFC 4033
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice