Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BDNS Records4 A records, 206 ms lookupREVIEW
| A | 108.156.85.30, 108.156.85.62, 108.156.85.93, 108.156.85.16 |
| AAAA | — |
| CNAME | d2oos2jwwtfbjj.cloudfront.net |
| NS | ns-1077.awsdns-06.org, ns-140.awsdns-17.com, ns-1742.awsdns-25.co.uk, ns-572.awsdns-07.net |
| MX | — |
| TXT | — |
| CAA | Lookup not available with standard resolver |
A CNAME at the zone apex can break MX and NS records. Use ALIAS/ANAME or A records instead.
CNAME at the apex (example.com) breaks every other apex record (MX, TXT, NS) — DNS-protocol violation per RFC 1034.
Learn more ▾ ▴
RFC 1034 forbids CNAME alongside other records at the same name. Some DNS providers offer ALIAS / ANAME / flattened-CNAME records that work around this — use those instead. Otherwise apex-level CNAME breaks email (no MX), domain ownership verification (no TXT), and more.
Source: RFC 1034
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
SPF helps prevent email spoofing. Add a TXT record starting with 'v=spf1'.
Without SPF, receiving servers can't validate sending IPs — your domain is easier to spoof in phishing.
Learn more ▾ ▴
SPF complements DMARC. Both should be published. SPF records list authorized sending IPs (e.g., `v=spf1 include:_spf.google.com ~all` for Google Workspace). After publishing, verify in Google Postmaster Tools or mxtoolbox.
Source: RFC 7208 (SPF)
Slow DNS adds latency to every page load. Consider a faster DNS provider.
DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.
Source: DNS performance benchmarks
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BTLS Certificate Expiry & Recommendations157 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Submit your domain to hstspreload.org to be added to the Chrome preload list
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
ARedirect Chain1 redirect(s), 689 ms totalPASS
https://www.gov.ie
340 ms · HTTP/1.1
https://www.gov.ie/en/
349 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://www.gov.ie | 302 | 340 ms | HTTP/1.1 | gunicorn |
| 2 | https://www.gov.ie/en/ | 200 | 349 ms | HTTP/1.1 | gunicorn |
See the visual redirect chain in the HTTP Probe tab →
If permanent, use 301 instead.
302 (Found) is for genuinely temporary redirects — if this redirect is permanent, switch to 301 to preserve SEO equity.
Learn more ▾ ▴
Search engines treat 302 as temporary, keeping the original URL indexed and not transferring full link equity to the destination. Use 301 (Moved Permanently) for permanent redirects (HTTP→HTTPS, www-vs-non-www, URL restructures).
Source: Google Search Central
A+Crawlabilityrobots.txt present, sitemap with 24 URLsPASS
User-agent: *
Disallow: /admin/
Disallow: /django-admin/
Disallow: /documents/
Disallow: /search/
Disallow: /*/search/
Disallow: /cuardaigh/
Disallow: /*/cuardaigh/
# Blocks numerous Irish search pages
Disallow: /*?*
Allow: /static/
# Point to sitemap
Sitemap: https://www.gov.ie/sitemap.xml
- https://www.gov.ie/sitemap-en.xml
- https://www.gov.ie/sitemap-en-2.xml
- https://www.gov.ie/sitemap-en-3.xml
- https://www.gov.ie/sitemap-en-4.xml
- https://www.gov.ie/sitemap-en-5.xml
- https://www.gov.ie/sitemap-en-6.xml
- https://www.gov.ie/sitemap-en-7.xml
- https://www.gov.ie/sitemap-en-8.xml
- https://www.gov.ie/sitemap-en-9.xml
- https://www.gov.ie/sitemap-en-10.xml
- https://www.gov.ie/sitemap-en-11.xml
- https://www.gov.ie/sitemap-en-12.xml
- https://www.gov.ie/sitemap-en-13.xml
- https://www.gov.ie/sitemap-en-14.xml
- https://www.gov.ie/sitemap-en-15.xml
- https://www.gov.ie/sitemap-en-16.xml
- https://www.gov.ie/sitemap-en-17.xml
- https://www.gov.ie/sitemap-en-18.xml
- https://www.gov.ie/sitemap-en-19.xml
- https://www.gov.ie/sitemap-en-20.xml
- https://www.gov.ie/sitemap-ga.xml
- https://www.gov.ie/sitemap-ga-2.xml
- https://www.gov.ie/sitemap-ga-3.xml
- https://www.gov.ie/sitemap-ga-4.xml
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: www
HTTP → HTTPS
Consistent
A+HTTP Probe TimingTotal 334 ms — DNS, TCP, TLS, TTFB, content transfer breakdownPASS
Connection waterfall
A+CDN & DeliveryAWS CloudFront (Hit from cloudfront)PASS
Domain IntelligenceDomain intelligence data not availableINFO
RDAP and WHOIS lookup both failed