Skip to content
https://gob.bo

Infrastructure

· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.
SCORE
89
GRADE
B
FIX
1
REVIEW
3
PASS
4
INFO
1
Probed from Madrid, Spain
200 OK
Checks
9
4 PASS 3 REVIEW 1 FIX
D
CDN & Delivery
Action
No CDN detected
FIX
No CDN detected
Warning::
No CDN detected
A CDN can significantly improve load times for users around the world by caching content at edge nodes closer to them.
No CDN detected

Consider using a CDN to improve global delivery speed and reduce origin load.

C
IPv6 Readiness
Action
No IPv6 support
REVIEW
No IPv6 support
Info::
No IPv6 (AAAA) records found
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No IPv6 Support
About 40% of internet users have IPv6. Consider adding AAAA records.

IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.

Why this matters

No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.

Source: Google IPv6 stats

B
HTTP Probe Timing
Total 1230 ms — DNS, TCP, TLS, TTFB, content transfer breakdown
REVIEW
DNS Lookup DNS Lookup — time to resolve the domain name to an IP address.
273 ms
TCP Connect TCP Connect — time to establish a TCP connection to the server.
236 ms
TLS Handshake TLS Handshake — time to complete the HTTPS encryption handshake.
238 ms
Time to First Byte Time to First Byte — how long the server takes to respond with the first byte of data.
1.22 s
Total Time Total request time from DNS lookup through full response.
1.23 s

Connection waterfall

DNS Lookup 273 ms TCP Connect 236 ms TLS Handshake 238 ms Server Processing 471 ms Content Transfer 12 ms
B
TLS Certificate Expiry & Recommendations
54 days until leaf cert expires — 3 issues to address
REVIEW

Certificate validity

54
days left
0d 30d 60d 90d+

Recommended actions

  • Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
  • Enable DNSSEC on your domain for DNS spoofing protection
  • Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A
DNS Records
3 A records, 274 ms lookup
PASS
3 A records, 274 ms lookup
Info::
Resolves to 3 IPv4 address(es)
Got: 200.87.125.229, 190.14.106.5, 186.121.242.46
Info::
No IPv6 (AAAA) records
Info::
2 nameserver(s) configured
Got: ns.agetic.gob.bo, ns1.agetic.gob.bo
Info::
No MX records — email not configured via DNS
Info::
CAA records not checked
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Info::
No SPF record found in TXT records
SPF helps prevent email spoofing. Add a TXT record starting with 'v=spf1'.
Warning::
DNS resolution is slow (274 ms)
Slow DNS adds latency to every page load. Consider a faster DNS provider.
Got: 274 ms
A200.87.125.229, 190.14.106.5, 186.121.242.46
AAAA
CNAME
NSns.agetic.gob.bo, ns1.agetic.gob.bo
MX
TXT
CAALookup not available with standard resolver
Resolved in 274 ms

CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.

Why this matters

Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.

SPF helps prevent email spoofing. Add a TXT record starting with 'v=spf1'.

Why this matters

Without SPF, receiving servers can't validate sending IPs — your domain is easier to spoof in phishing.

Learn more

SPF complements DMARC. Both should be published. SPF records list authorized sending IPs (e.g., `v=spf1 include:_spf.google.com ~all` for Google Workspace). After publishing, verify in Google Postmaster Tools or mxtoolbox.

Source: RFC 7208 (SPF)

Slow DNS adds latency to every page load. Consider a faster DNS provider.

Why this matters

DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.

Source: DNS performance benchmarks

A+
Redirect Chain
No redirects — direct access
PASS
No redirects — direct access
Info::
No redirects — direct access
Got: https://www.gob.bo

https://www.gob.bo

888 ms · HTTP/1.1 FINAL

#URLStatusTimeProtocolServer
1https://www.gob.bo200888 msHTTP/1.1nginx/1.27.1
A+
Crawlability
robots.txt present, sitemap with 2317 URLs
PASS
robots.txt present, sitemap with 2317 URLs
Info::
robots.txt is present
Got: 98 bytes
Info::
sitemap.xml is present
Info::
sitemap.xml is valid XML
Info::
sitemap.xml contains 2317 entries
Info::
robots.txt references sitemap
robots.txt 200 OK
Size 98 B Sitemaps referenced 1 User-agents * Blocking No — crawling allowed
User-Agent: *
Allow: /
Disallow: /admin
Disallow: /login

Sitemap: https://www.gob.bo/sitemap.xml

A+
URL Variants
www/non-www, trailing slash, HTTP→HTTPS
PASS
www/non-www, trailing slash, HTTP→HTTPS
Info::
HTTP correctly 301-redirects to HTTPS

www / non-www

200https://www.gob.bo/
https://gob.bo/

HTTP → HTTPS

301http://www.gob.bo/ https://www.gob.bo/

Consistent

Domain Intelligence
Domain intelligence data not available
INFO
Domain intelligence data not available

RDAP and WHOIS lookup both failed

All checks on this page are automated. Results are estimates - run targeted manual reviews when the score affects a release decision.

Send Feedback