Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DRedirect ChainAction2 redirect(s), 1550 ms totalFIX
https://cpanel.com
423 ms · HTTP/1.1
https://cpanel.net/
400 ms · HTTP/1.1
https://www.cpanel.net/
726 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://cpanel.com | 302 | 423 ms | HTTP/1.1 | cloudflare |
| 2 | https://cpanel.net/ | 301 | 400 ms | HTTP/1.1 | LiteSpeed |
| 3 | https://www.cpanel.net/ | 200 | 726 ms | HTTP/1.1 | cloudflare |
See the visual redirect chain in the HTTP Probe tab →
Each redirect adds latency. Try to minimize the chain to 1 hop.
Redirect chain — each hop adds latency; combine into one redirect where possible.
Source: Google Search Central / web.dev
If permanent, use 301 instead.
302 (Found) is for genuinely temporary redirects — if this redirect is permanent, switch to 301 to preserve SEO equity.
Learn more ▾ ▴
Search engines treat 302 as temporary, keeping the original URL indexed and not transferring full link equity to the destination. Use 301 (Moved Permanently) for permanent redirects (HTTP→HTTPS, www-vs-non-www, URL restructures).
Source: Google Search Central
BTLS Certificate Expiry & Recommendations78 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Extend HSTS max-age to at least 31536000 (1 year) to meet the preload list criteria
- Add includeSubDomains to the HSTS directive
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records3 A records, 41 ms lookupPASS
| A | 172.67.73.239, 104.26.4.47, 104.26.5.47 |
| AAAA | 2606:4700:20::681a:42f, 2606:4700:20::681a:52f, 2606:4700:20::ac43:49ef |
| CNAME | — |
| NS | gene.ns.cloudflare.com, jeff.ns.cloudflare.com |
| MX | 0 cpanel-com.mail.protection.outlook.com |
| TXT | MS=ms65929897 SPF v=spf1 mx ip4:208.74.121.68 ip4:208.74.123.210 include:hubspotemail.net include:... google-site-verification=-CLam4X9Rlt3vEnWc9qC5XHU5GF0ciWNK-f2UjW6wI4 facebook-domain-verification=v1wdlzb1i1vg2tm31pm06hy81yc32a knowbe4-site-verification=908000ab199b1eca5e17f7271a4559cd ca3-e62d0aa62b06458fb2ea7647f253b1b4 |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+IPv6 ReadinessIPv6 reachable (17 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 3 URLsPASS
User-agent: *
Disallow: /*?
Disallow: /showip.shtml
Disallow: /showip.cgi
Disallow: /myip
Disallow: /wp-content/themes/cPbase/assets/docs/*.pdf$
Disallow: /wp-content/themes/cPbase/assets/downloads/*.pdf$
Disallow: /wp-content/uploads/pdf/*.pdf$
Sitemap: https://www.cpanel.net/sitemap_index.xml
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligencecpanel.com — via Tucows Domains Inc., 26 years, 6 months oldPASS
1357 days
March 3, 2030
78 days
Issued by Google Trust Services
26 years, 6 months
Registered March 3, 2000
Enabled
Protects against DNS spoofing
Unknown
2606:4700:20::681a:42f
Tucows Domains Inc.
Expiry timeline
Recommended actions
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice