Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BCrawlabilityrobots.txt present, no sitemapREVIEW
A sitemap helps search engines discover and index your pages more efficiently.
No sitemap.xml — Google relies on crawl-graph discovery alone, slowing indexing of deep or fresh URLs.
Learn more ▾ ▴
A sitemap accelerates Google's discovery of new and updated content. Most CMSes auto-generate one; static-site frameworks need a build-step plugin. Reference it from robots.txt and submit in Search Console to confirm Google can fetch it.
Source: sitemaps.org / Google Search Central
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
User-agent: AmazonAdBot
Disallow: /auth/xshare
User-agent: *
Disallow: /auth/xshare
Disallow: /*/spellcheck/
User-agent: Bingbot
User-agent: ias_crawler
User-agent: ias_wombles
User-agent: SirdataBot
Crawl-delay: 1
User-agent: Verity/1.1
Crawl-delay: 3
User-agent: Keybot Translation-Search-Machine
User-agent: Covario-IDS
User-agent: 008
Disallow:/
No sitemap found
Adding a sitemap helps search engines discover your pages.
BTLS Certificate Expiry & Recommendations31 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Extend HSTS max-age to at least 31536000 (1 year) to meet the preload list criteria
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records2 A records, 13 ms lookupPASS
| A | 104.18.10.40, 104.18.11.40 |
| AAAA | 2606:4700::6812:b28, 2606:4700::6812:a28 |
| CNAME | — |
| NS | tim.ns.cloudflare.com, zoe.ns.cloudflare.com |
| MX | 1 aspmx.l.google.com 5 alt1.aspmx.l.google.com 5 alt2.aspmx.l.google.com 10 alt3.aspmx.l.google.com 10 alt4.aspmx.l.google.com |
| TXT | adobe-idp-site-verification=fe1e7c2e-02bf-4c4b-ad28-3f9a03c275b6 google-site-verification=8d6Ks8XXY74q3Mbqu9JyCX1zc7eISN-0HHnn7w6pcDM google-site-verification=biIt6hmP6t3GDyYqAukG2a4titGVcXgTRYk_q3FpkdY google-site-verification=qcRd31y2Km5uIA3UZPLx3xJmxSIgleSnX1Y-t9GYr50 paddle-verification=02bc8747 paddle-verification=215d7cf1 paddle-verification=23d15f83 paddle-verification=4d0cd995 paddle-verification=505cb768 paddle-verification=561ca1b7 paddle-verification=5b152e1b paddle-verification=661b3bd9 paddle-verification=6836c1d3 paddle-verification=748fcf0 paddle-verification=7cd2f247 paddle-verification=7ce25034 paddle-verification=7e586302 paddle-verification=7ef8134a paddle-verification=861b57eb paddle-verification=9aba024c paddle-verification=a887a5be paddle-verification=a8f8a98e paddle-verification=b41322f2 paddle-verification=bf923ae9 paddle-verification=cf91f61c paddle-verification=db620be4 paddle-verification=e25463d5 paddle-verification=f3fb0a6e paddle-verification=f5cb38c7 paddle-verification=f7c1aa26 paddle-verification=f987060f paddle-verification=ff1baefd SPF v=spf1 include:_spf.google.com ip4:85.25.30.160/27 include:spf1.mcsv.net include... |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+Redirect ChainNo redirects — direct accessPASS
https://bab.la
438 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://bab.la | 200 | 438 ms | HTTP/1.1 | cloudflare |
A+IPv6 ReadinessIPv6 reachable (2 ms)PASS
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligencebab.la — via Key-Systems GmbH, 19 years, 9 months oldPASS
133 days
October 26, 2026
31 days
Issued by Google Trust Services
19 years, 9 months
Registered October 26, 2006
Status unknown
Protects against DNS spoofing
Unknown
2606:4700::6812:b28
Key-Systems GmbH
Expiry timeline
Domain cannot be transferred without explicit unlock from the registrar. This protects against unauthorized transfers.
Registrar lock (clientTransferProhibited et al.) prevents unauthorized domain transfers — strongest defense against domain hijacking.
Source: ICANN / domain-security best practice