Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BTLS Certificate Expiry & Recommendations42 days until leaf cert expires — 4 issues to addressREVIEW
Certificate validity
Recommended actions
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records2 A records, 101 ms lookupPASS
| A | 104.18.31.84, 104.18.30.84 |
| AAAA | 2606:4700::6812:1e54, 2606:4700::6812:1f54 |
| CNAME | — |
| NS | nicolas.ns.cloudflare.com, alla.ns.cloudflare.com |
| MX | 5 us-smtp-inbound-2.mimecast.com 5 us-smtp-inbound-1.mimecast.com 10 gh-mail.ruggable.commxb.mailgun.org 10 gh-mail.ruggable.commxa.mailgun.org |
| TXT | notion-domain-verification=XqBWkYZIWf4pMCbPfo0YQmGi9RJqej8osj3R64oB5qm google-site-verification=G-ygHUKEedzuy_CB3LT1VHkVAQqmeZdngx6wB5O73oQ google-site-verification=AxYhOkUyTAG3p7YIW_5ZZYIERQWw9TZVsZZkN-GqZR4 0ed1fe018a26ac207fb6ce41819ca9d04e7c846f64 atlassian-domain-verification=4XysiU5y0g3uVWrWxfuWT6sIitt1tqKkNa9tRVVb4e2Fv24DFR... smartsheet-site-validation=3LL-JLdDdQfPhdn1GbFZiOIHLp1RuskX ZOOM_verify_WISgvIFTSsKo_rgyKxavbA google-site-verification=DqMtqiUARLKW1lJbcG6LoJDuXfmhguG-l0v-Vi-Su_A apple-domain-verification=7OdU8qrGxypMUo7Q MS=ms26489765 google-site-verification=jjCo-IAeF52DDvD0eZs4E9MqdNSdcLz1VbJ-MfYB8As bw=E7BM2TYlaBYnoZ6UUIIx1CLYDfkzcF9krNoubo2ffU55 airtable-verification=42546a26b80fa884d3cee5ec08c6ab53 google-site-verification=l16Oqgb2FJ2rOj1wbcPW8PxJhS603S0PTxHM6VcMBDs google-site-verification=1rXILZLRGT9LAgdjRJfM4WdlLFyY_SjOaki6IQiyrAg SPF v=spf1 redirect=cf3962es._spf._d.mim.ec MS=2252D1E9F4AB3C7D7F834E536DDC36EC4C970ED3 jamf-site-verification=vjHIeg1pPeenR8_aTISOOQ shopify-verification-code=89V6o7hUDSgzgIY2U4w9JxC0PucVz3 autodesk-domain-verification=c_bu3mDAl9eRfnCx8fab klaviyo-site-verification=P4vVLs |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+Redirect ChainNo redirects — direct accessPASS
https://ruggable.com
348 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://ruggable.com | 200 | 348 ms | HTTP/1.1 | cloudflare |
A+IPv6 ReadinessIPv6 reachable (17 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 10 URLsPASS
# we use Shopify as our ecommerce platform
User-agent: *
Disallow: /admin
Disallow: /cart
Disallow: /orders
Disallow: /checkouts/
Disallow: /checkout
Disallow: /10330751/checkouts
Disallow: /10330751/orders
Disallow: /carts
Disallow: /account
Disallow: /collections/*sort_by*
Disallow: /*/collections/*sort_by*
Disallow: /collections/*+*
Disallow: /collections/*%2B*
Disallow: /collections/*%2b*
Disallow: /*/collections/*+*
Disallow: /*/collections/*%2B*
Disallow: /*/collections/*%2b*
Disallow: /blogs/*+*
Disallow: /blogs/*%2B*
Disallow: /blogs/*%2b*
Disallow: /*/blogs/*+*
Disallow: /*/blogs/*%2B*
Disallow: /*/blogs/*%2b*
Disallow: /*?*oseid=*
Disallow: /*preview_theme_id*
Disallow: /*preview_script_id*
Disallow: /policies/
Disallow: /*/*?*ls=*&ls=*
Disallow: /*/*?*ls%3D*%3Fls%3D*
Disallow: /*/*?*ls%3d*%3fls%3d*
Disallow: */vendor?q=
Disallow: /search
Disallow: /apple-app-site-association
Sitemap: https://ruggable.com/sitemap.xml
# Google adsbot ignores robots.txt unless specifically named!
User-agent: adsbot-google
Disallow: /checkouts/
Disallow: /checkout
Disallow: /carts
Disallow: /orders
Disallow: /10330751/checkouts
Disallow: /10330751/orders
Disallow: /*?*oseid=*
Disallow: /*preview_theme_id*
Disallow: /*preview_script_id*
User-agent: Nutch
Disallow: /
User-agent: AhrefsBot
Crawl-delay: 10
Disallow: /admin
Disallow: /cart
Disallow: /orders
Disallow: /checkouts/
Disallow: /checkout
Disallow: /10330751/checkouts
Disallow: /10330751/orders
Disallow: /carts
Disallow: /account
Disallow: /collections/*sort_by*
Disallow: /*/collections/*sort_by*
Disallow: /collections/*+*
Disallow: /collections/*%2B*
Disallow: /collections/*%2b*
Disallow: /*/collections/*+*
Disallow: /*/collections/*%2B*
Disallow: /*/collections/*%2b*
Disallow: /blogs/*+*
Disallow: /blogs/*%2B*
Disallow: /blogs/*%2b*
Disallow: /*/blogs/*+*
Disallow: /*/blogs/*%2B*
Disallow: /*/blogs/*%2b*
Disallow: /*?*oseid=*
Disallow: /*preview_theme_id*
Disallow: /*preview_script_id*
Disallow: /policies/
Disallow: /*/*?*ls=*&ls=*
Disallow: /*/*?*ls%3D*%3Fls%3D*
Disallow: /*/*?*ls%3d*%3fls%3d*
Disallow: /search
Disallow: */vendor?q=
Disallow: /apple-app-site-association
Sitemap: https://ruggable.com/sitemap.xml
User-agent: AhrefsSiteAudit
Crawl-delay: 10
Disallow: /admin
Disallow: /cart
Disallow: /orders
Disallow: /checkouts/
Disallow: /checkout
Disallow: /10330751/checkouts
Disallow: /10330751/orders
Disallow: /carts
Disallow: /account
Disallow: /collections/*sort_by*
Disallow: /*/collections/*sort_by*
Disallow: /collections/*+*
Disallow: /collections/*%2B*
Disallow: /collections/*%2b*
Disallow: /*/collections/*+*
Disallow: /*/collections/*%2B*
Disallow: /*/collections/*%2b*
Disallow: /blogs/*+*
Disallow: /blogs/*%2B*
Disallow: /blogs/*%2b*
Disallow: /*/blogs/*+*
Disallow: /*/blogs/*%2B*
Disallow: /*/blogs/*%2b*
Disallow: /*?*oseid=*
Disallow: /*preview_theme_id*
Disallow: /*preview_script_id*
Disallow: /policies/
Disallow: /*/*?*ls=*&ls=*
Disallow: /*/*?*ls%3D*%3Fls%3D*
Disallow: /*/*?*ls%3d*%3fls%3d*
Disallow: /search
Disallow: */vendor?q=
Disallow: /apple-app-site-association
Sitemap: https://ruggable.com/sitemap.xml
User-agent: MJ12bot
Crawl-Delay: 10
User-agent: Pinterest
Crawl-delay: 1
- https://ruggable.com/sitemap_products_1....
- https://ruggable.com/sitemap_pages_1.xml
- https://ruggable.com/sitemap_collections...
- https://ruggable.com/sitemap_blogs_1.xml
- https://ruggable.com/sitemap_blog-author...
- https://ruggable.com/sitemap_en-ca_produ...
- https://ruggable.com/sitemap_en-ca_pages...
- https://ruggable.com/sitemap_en-ca_colle...
- https://ruggable.com/sitemap_en-ca_blogs...
- https://ruggable.com/sitemap_en-ca_blog-...
AURL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
HTTP → HTTPS
Use 301 (permanent) instead of 302 (temporary)
A+Domain Intelligenceruggable.com — via GoDaddy.com, LLC, 16 years, 7 months oldPASS
2002 days
November 20, 2031
42 days
Issued by Google Trust Services
16 years, 7 months
Registered November 20, 2009
Not enabled
Protects against DNS spoofing
Unknown
2606:4700::6812:1f54
GoDaddy.com, LLC
Expiry timeline
Recommended actions
- Enable DNSSEC to protect visitors from DNS spoofing
DNSSEC protects against DNS spoofing attacks. While not required, enabling DNSSEC adds an additional layer of security. Contact your DNS provider to enable it.
Without DNSSEC, an attacker who can poison your DNS can hijack your domain — and SSL certs alone don't stop them.
Learn more ▾ ▴
DNSSEC adds cryptographic signatures to DNS records, preventing forged responses from poisoning resolver caches. Without it, an attacker who controls the network path can redirect your domain to a malicious server before any HTTPS handshake happens. Most modern registrars (Cloudflare, Google Domains, Route 53) enable it with one toggle.
Source: ICANN / RFC 4033