Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
BRedirect Chain1 redirect(s), 1609 ms totalREVIEW
https://mvmt.com
730 ms · HTTP/1.1
https://www.mvmt.com
879 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://mvmt.com | 301 | 730 ms | HTTP/1.1 | DNSME HTTP Redirection |
| 2 | https://www.mvmt.com | 200 | 879 ms | HTTP/1.1 | cloudflare |
See the visual redirect chain in the HTTP Probe tab →
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BTLS Certificate Expiry & Recommendations191 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records4 A records, 11 ms lookupPASS
| A | 96.45.83.229, 96.45.82.40, 96.45.82.155, 96.45.83.85 |
| AAAA | — |
| CNAME | — |
| NS | ns10.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns14.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns15.dnsmadeeasy.com |
| MX | 1 mvmt-com.mail.protection.outlook.com |
| TXT | onetrust-domain-verification=477e7181d1ca4fb1bc8836235a0b2793 8gc+lObOtGGBjjMNkcPohpzbYbTHWDAdHSFO9sZMGyV9FVkZCOScHZLh/bjvCR01+Z+iIZOEcPOVx06M... 63YY4b9/BKD8CWjCYvxkmKh6TfmrCr03Fbk0knHGsjCMg99D5X6HT34cjiynaqBkNa5csWT4XBptBovt... MS=ms38964349 google-site-verification=AVR91H9ZBfwQdOCP6YgODVCa3f9md00LW0EIIUBa_RQ _u1bh8l8hpfzujsiirlxd39m2wyjt6wq SPF v=spf1 include:spf.gorgias.io include:spf.protection.outlook.com a:production.na... openai-domain-verification=dv-p3CXtdOyYTMsP6h9d5tDdE4S facebook-domain-verification=sx21md4p7cqpzbx3bsq46qf7kh02q6 ssf03jx3qtdyk7ksrk2h6f69hj8h9rmq google-site-verification=dJ9_dFetUEzH0drGIdnOe7qrVtmsMII2zTblbwsZ79s _xtczndmhbopmb41whputcjws20gd7oe Validity-Domain-Authentication=dheutkfkxjfjsh |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ACrawlabilityrobots.txt present, no sitemapPASS
A sitemap helps search engines discover and index your pages more efficiently.
No sitemap.xml — Google relies on crawl-graph discovery alone, slowing indexing of deep or fresh URLs.
Learn more ▾ ▴
A sitemap accelerates Google's discovery of new and updated content. Most CMSes auto-generate one; static-site frameworks need a build-step plugin. Reference it from robots.txt and submit in Search Console to confirm Google can fetch it.
Source: sitemaps.org / Google Search Central
User-agent: *
Disallow: /passwordchange
Disallow: /Account-EditPassword
Disallow: /account-edit
Disallow: /Account-EditProfile
Disallow: /passwordresetdialog
Disallow: /Account-PasswordResetDialogForm
Disallow: /registerwatch
Disallow: /Account-RegisterWatch
Disallow: /setnewpassword
Disallow: /Account-SetNewPassword
Disallow: /account
Disallow: /Account-Show
Disallow: /account-mywatches
Disallow: /Account-ShowWatchlist
Disallow: /addaddress
Disallow: /Address-AddAddress
Disallow: /address-list
Disallow: /Address-List
Disallow: /affirmsuccess
Disallow: /Affirm-Success
Disallow: /shopping-bag
Disallow: /Cart-Show
Disallow: /checkout
Disallow: /Checkout-Begin
Disallow: /compare
Disallow: /Compare-Show
Disallow: /error
Disallow: /Home-ErrorNotFound
Disallow: /logout
Disallow: /Login-Logout
Disallow: /oauthlogin
Disallow: /Login-OAuthLogin
Disallow: /login
Disallow: /Login-Show
Disallow: /confirmation
Disallow: /Order-Confirm
Disallow: /order-history
Disallow: /Order-History
Disallow: /checkorder
Disallow: /Order-Track
Disallow: /riskified-notification
Disallow: /Riskified-AnalysisNotificationEndpoint
Disallow: /search
Disallow: /Search-Show
Disallow: /smartgift-addtocart
Disallow: /SmartGift-AddToCart
Disallow: /swell/index/create-gift-certificate
Disallow: /SwellYotpo-CreateGiftCertificate
Disallow: /swell/index/customer
Disallow: /SwellYotpo-GetCustomer
Disallow: /swell/index/customers
Disallow: /SwellYotpo-GetCustomers
Disallow: /swell/index/order
Disallow: /SwellYotpo-GetOrder
Disallow: /swell/index/order-count
Disallow: /SwellYotpo-GetOrderCountByState
Disallow: /swell/index/thirty-day-order-volume
Disallow: /SwellYotpo-GetOrderCountByVolume
Disallow: /swell/index/orders
Disallow: /SwellYotpo-GetOrders
Disallow: /wishlist-add
Disallow: /Wishlist-AddProduct
Disallow: /wishlist
Disallow: /Wishlist-Show
Disallow: /wishlists
Disallow: /Wishlist-ShowOthers
Disallow: /*prefv*
Disallow: /*prefn*
Disallow: /*pmax
Disallow: /*pmin
Disallow: *QuickView
Disallow: *ProductDisplay
Disallow: *Page-Show*
Disallow: */null
Disallow: /_gd=
Disallow: /_lo_v
Sitemap: https://www.mvmtwatches.com/sitemap_index.xml
No sitemap found
Adding a sitemap helps search engines discover your pages.
A+Domain Intelligencemvmt.com — via Tucows Domains Inc., 24 years, 11 months old, hosted on DIGICERT - Tiggee LLC, USPASS
474 days
September 13, 2027
191 days
Issued by DigiCert Inc
24 years, 11 months
Registered September 13, 2001
Not enabled
Protects against DNS spoofing
DIGICERT - Tiggee LLC, US
ASN AS16552
96.45.82.155
Tucows Domains Inc.
Expiry timeline
Recommended actions
- Enable DNSSEC to protect visitors from DNS spoofing
DNSSEC protects against DNS spoofing attacks. While not required, enabling DNSSEC adds an additional layer of security. Contact your DNS provider to enable it.
Without DNSSEC, an attacker who can poison your DNS can hijack your domain — and SSL certs alone don't stop them.
Learn more ▾ ▴
DNSSEC adds cryptographic signatures to DNS records, preventing forged responses from poisoning resolver caches. Without it, an attacker who controls the network path can redirect your domain to a malicious server before any HTTPS handshake happens. Most modern registrars (Cloudflare, Google Domains, Route 53) enable it with one toggle.
Source: ICANN / RFC 4033