Skip to content
https://fudinoo.hu

Infrastructure

· 17 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.
SCORE
87
GRADE
B
FIX
1
REVIEW
10
PASS
6
INFO
0
Probed from Santa Clara, United States
200 OK
Checks
17
6 PASS 10 REVIEW 1 FIX
D
CDN & Delivery
Action
No CDN detected
FIX
No CDN detected
Warning::
No CDN detected
A CDN can significantly improve load times for users around the world by caching content at edge nodes closer to them.
No CDN detected

Consider using a CDN to improve global delivery speed and reduce origin load.

B
DNSSEC
Unsigned (DNSSEC not deployed)
REVIEW
Unsigned (DNSSEC not deployed)
Info::
DNSSEC is not deployed
The zone is not DNSSEC-signed. Users on validating resolvers (Cloudflare 1.1.1.1, Quad9 9.9.9.9, growing default in mobile resolvers) get no protection against DNS spoofing for this domain. Most registrars now offer DNSSEC at a single click; consider enabling it for sites where authenticity matters (banking, healthcare, government).
B
CAA Records
No CAA records (any CA may issue certificates)
REVIEW
No CAA records (any CA may issue certificates)
Info::
No CAA records published
Without CAA records, any publicly-trusted CA can issue certificates for this domain. Adding a CAA record (`yourdomain. IN CAA 0 issue "letsencrypt.org"`) restricts issuance to CAs you authorize. Required by CAB Forum baseline since 2017; the default of 'any CA' is widely supported but is the broader attack surface for issuance fraud.
B
Reverse DNS
0/1 IPs match cert SAN
REVIEW
0/1 IPs match cert SAN
Info::
PTR for 185.187.73.120 does not match any cert SAN: server1.voov.hu
Common when behind a CDN or shared hosting (PTR points at the provider's hostname). Mismatch can also affect mail deliverability if this IP sends email -- many MTAs reject mail when forward+reverse DNS disagree.
B
Multi-Resolver DNS Speed
Mean 118ms across 3 resolvers (spread 165ms)
REVIEW
Mean 118ms across 3 resolvers (spread 165ms)
Info::
Google: 10ms
Got: 10ms via 8.8.8.8:53
Info::
Cloudflare: 169ms
Got: 169ms via 1.1.1.1:53
Info::
Quad9: 175ms
Got: 175ms via 9.9.9.9:53
C
IPv6 Readiness
Action
No IPv6 support
REVIEW
No IPv6 support
Info::
No IPv6 (AAAA) records found
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No IPv6 Support
About 40% of internet users have IPv6. Consider adding AAAA records.

IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.

Why this matters

No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.

Source: Google IPv6 stats

C
HTTP Probe Timing
Action
Total 1761 ms — DNS, TCP, TLS, TTFB, content transfer breakdown
REVIEW
DNS Lookup DNS Lookup — time to resolve the domain name to an IP address.
351 ms
TCP Connect TCP Connect — time to establish a TCP connection to the server.
170 ms
TLS Handshake TLS Handshake — time to complete the HTTPS encryption handshake.
173 ms
Time to First Byte Time to First Byte — how long the server takes to respond with the first byte of data.
1.59 s
Total Time Total request time from DNS lookup through full response.
1.76 s

Connection waterfall

DNS Lookup 351 ms TCP Connect 170 ms TLS Handshake 173 ms Server Processing 898 ms Content Transfer 170 ms
B
TLS Certificate Expiry & Recommendations
33 days until leaf cert expires — 3 issues to address
REVIEW

Certificate validity

33
days left
0d 30d 60d 90d+

Recommended actions

  • Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
  • Enable DNSSEC on your domain for DNS spoofing protection
  • Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
B
CDN Cache Observability
No CDN cache-status headers in the response
REVIEW
No CDN cache-status headers in the response
Info::
No CDN cache-status headers in the response
Without an X-Cache / CF-Cache-Status / X-Vercel-Cache / Age header, you can't tell from outside whether a request hit the cache or went to origin. Operationally important: enables debugging stale-content reports and verifying cache rules. Most managed CDN platforms emit at least one of these by default; absence often means the platform's diagnostic headers are stripped at an upstream proxy.
B
Operational Status Page
No status page link detected
REVIEW
No status page link detected
Info::
No operational status page link detected
Status pages communicate planned maintenance and incidents to users -- a hallmark of operationally-mature services. Most SaaS teams publish one via Atlassian Statuspage, Instatus, BetterUptime, or a self-hosted Cachet. Smaller sites legitimately don't need one; flagged as Info, not a failure.
B
Health Check Endpoint
No conventional health endpoint found
REVIEW
No conventional health endpoint found
Info::
No conventional health endpoint found
Health endpoints (/health, /healthz, /status, /ping, /api/health) let uptime monitors, load balancers, and orchestration systems (Kubernetes, ECS, Fly.io) verify the service is alive. Marketing sites and small services often skip them legitimately; flagged as Info, not a failure. Probe results: /api/health: 404, /health: 507, /healthz: connection error, /ping: 404, /status: 404.
A
DNS Records
1 A records, 363 ms lookup
PASS
1 A records, 363 ms lookup
Info::
Resolves to 1 IPv4 address(es)
Got: 185.187.73.120
Info::
Single A record — no DNS redundancy
Multiple A records provide failover if one server goes down.
Info::
No IPv6 (AAAA) records
Info::
2 nameserver(s) configured
Got: ns1.voov.hu, ns2.voov.hu
Info::
1 mail exchanger(s) configured
Info::
SPF record present in TXT
Warning::
DNS resolution is slow (363 ms)
Slow DNS adds latency to every page load. Consider a faster DNS provider.
Got: 363 ms
A185.187.73.120
AAAA
CNAME
NSns1.voov.hu, ns2.voov.hu
MX
1 smtp.google.com
TXT
SPF v=spf1 +a +mx +ip4:185.187.73.120 +ip4:185.187.73.149 ~all
google-site-verification=Kz2zBvpeRR5DQGYRt-ZuGYzB-dthkJ_VzZEHdxe9Uhc
CAALookup not available with standard resolver
Resolved in 363 ms

Multiple A records provide failover if one server goes down.

Why this matters

Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.

Learn more

Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.

Source: SRE practice / DNS architecture

Slow DNS adds latency to every page load. Consider a faster DNS provider.

Why this matters

DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.

Source: DNS performance benchmarks

A+
Subdomain Takeover
No subdomain takeover risk detected
PASS
No subdomain takeover risk detected
Info::
No CNAME record present
A+
Redirect Chain
No redirects — direct access
PASS
No redirects — direct access
Info::
No redirects — direct access
Got: https://fudinoo.hu

https://fudinoo.hu

2024 ms · HTTP/1.1 FINAL

#URLStatusTimeProtocolServer
1https://fudinoo.hu2002024 msHTTP/1.1Apache
A+
Crawlability
robots.txt present, sitemap with 6527 URLs
PASS
robots.txt present, sitemap with 6527 URLs
Info::
robots.txt is present
Got: 62 bytes
Info::
sitemap.xml is present
Info::
sitemap.xml is valid XML
Info::
sitemap.xml contains 6527 entries
Info::
robots.txt references sitemap
robots.txt 200 OK
Size 62 B Sitemaps referenced 1 User-agents * Blocking No — crawling allowed
User-agent: *
Allow: /
Sitemap: https://fudinoo.hu/sitemap.xml
A+
URL Variants
www/non-www, trailing slash, HTTP→HTTPS
PASS
www/non-www, trailing slash, HTTP→HTTPS
Info::
www/non-www redirect configured correctly (preferred: non-www)
Info::
HTTP correctly 301-redirects to HTTPS

www / non-www

301https://www.fudinoo.hu/
200https://fudinoo.hu/

Preferred variant: non-www

HTTP → HTTPS

301http://fudinoo.hu/ https://fudinoo.hu/

Consistent

A+
Domain Intelligence
fudinoo.hu — 3 months old, hosted on RACKFOREST-AS - Rackforest Zrt., HU
PASS
fudinoo.hu — 3 months old, hosted on RACKFOREST-AS - Rackforest Zrt., HU
Info::
Domain is only 3 months old
Newly registered domains may face SEO trust challenges. Search engines generally give more authority to older domains. This is informational — not a problem to fix.
Got: Registered Mar 31, 2026
Info::
Hosting: RACKFOREST-AS - Rackforest Zrt., HU
Got: AS62214
Domain expiry

Unknown

SSL certificate

33 days

Issued by Let's Encrypt

Domain age

3 months

Registered March 31, 2026

DNSSEC

Status unknown

Protects against DNS spoofing

Hosting

RACKFOREST-AS - Rackforest Zrt., HU

ASN AS62214

185.187.73.120

Registrar

Registrar unknown

Lock status unknown Name servers unknown
Expiry timeline
Today
+1 year
SSL expiry Danger zone (≤30 days)
Recommended actions
  • Newly registered domain — build backlinks and content to establish SEO trust
Registrar
Created March 31, 2026 (3 months ago)
Hosting
IP Address 185.187.73.120
ASN AS62214 (RACKFOREST-AS - Rackforest Zrt., HU)
Provider RACKFOREST-AS - Rackforest Zrt., HU
Data source: whois (1.2s)

Newly registered domains may face SEO trust challenges. Search engines generally give more authority to older domains. This is informational — not a problem to fix.

Why this matters

Informational: domain age. Newer domains may have lower trust signals in spam/security filters.

All checks on this page are automated. Results are estimates - run targeted manual reviews when the score affects a release decision.

Send Feedback