Infrastructure
· 17 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
BCAA RecordsNo CAA records (any CA may issue certificates)REVIEW
CReverse DNSAction0/1 IPs match cert SANREVIEW
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BHTTP Probe TimingTotal 1245 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations120 days until leaf cert expires — 4 issues to addressREVIEW
Certificate validity
Recommended actions
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
BCDN Cache ObservabilityNo CDN cache-status headers in the responseREVIEW
BOperational Status PageNo status page link detectedREVIEW
BHealth Check EndpointNo conventional health endpoint foundREVIEW
A+DNS Records1 A records, 9 ms lookupPASS
| A | 185.104.209.24 |
| AAAA | — |
| CNAME | — |
| NS | elma.ns.cloudflare.com, john.ns.cloudflare.com |
| MX | 1 aspmx.l.google.com 5 alt2.aspmx.l.google.com 5 alt1.aspmx.l.google.com 10 alt3.aspmx.l.google.com 10 alt4.aspmx.l.google.com |
| TXT | yandex-verification=c063347f6cfa2030 zendeskverification=dde00c30d16a212a google-site-verification=LJqQfNstOGKp8ZybvSxRtxs3z8golzH6BW_czUqi4MA DirectFedAuthUrl=https://sso.simpleswap.io/realms/simpleswap-sso/protocol/saml atlassian-domain-verification=VCo1o6vlBJW//0EbQ81rqtL66XWIX5SxFJi2oOY5qqITEMTUtO... SPF v=spf1 a mx include:_spf.mlsend.com include:_spf.google.com include:mail.zendesk... |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
A+Subdomain TakeoverNo subdomain takeover risk detectedPASS
A+DNSSECSigned and validatingPASS
A+Multi-Resolver DNS SpeedMean 7ms across 3 resolvers (spread 11ms)PASS
A+Redirect ChainNo redirects — direct accessPASS
https://simpleswap.io/?id=jvw7l9dn7nk6aj...
946 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://simpleswap.io/?id=jvw7l9dn7nk6aj... | 200 | 946 ms | HTTP/1.1 | QRATOR |
A+Crawlabilityrobots.txt present, sitemap with 22 URLsPASS
User-agent: *
Disallow: */forgot-password*
Disallow: */password-reset*
Disallow: /api/
Disallow: /500.html
Disallow: */?__cf_*
User-agent: Bingbot
Disallow: */forgot-password*
Disallow: */password-reset*
Disallow: /api/
Disallow: /500.html
Disallow: */?__cf_*
User-agent: Slurp
Disallow: */forgot-password*
Disallow: */password-reset*
Disallow: /api/
Disallow: /500.html
Disallow: */?__cf_*
Sitemap: https://simpleswap.io/sitemap.xml
- https://simpleswap.io/sitemap_index_affi...
- https://simpleswap.io/sitemap_index_blog...
- https://simpleswap.io/sitemap_index_buy-...
- https://simpleswap.io/sitemap_index_coin...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cryp...
- https://simpleswap.io/sitemap_index_cust...
- https://simpleswap.io/sitemap_index_prof...
- https://simpleswap.io/sitemap_index_sell...
- https://simpleswap.io/sitemap_media.xml
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligencesimpleswap.io — via GoDaddy.com, LLC, 8 years, 6 months old, hosted on QRATOR-SW - Qrator Labs CZ s.r.o., CZPASS
957 days
April 10, 2029
120 days
Issued by Sectigo Limited
8 years, 6 months
Registered April 10, 2018
Status unknown
Protects against DNS spoofing
QRATOR-SW - Qrator Labs CZ s.r.o., CZ
ASN AS209671
185.104.209.24
GoDaddy.com, LLC
Expiry timeline
Domain cannot be transferred without explicit unlock from the registrar. This protects against unauthorized transfers.
Registrar lock (clientTransferProhibited et al.) prevents unauthorized domain transfers — strongest defense against domain hijacking.
Source: ICANN / domain-security best practice