Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
CCrawlabilityActionrobots.txt present, sitemap with 73 URLsREVIEW
Disallow: / for all user-agents prevents search engines from indexing any page. This will remove the site from search results.
Disallow: / in robots.txt blocks every search crawler — the site becomes invisible in organic search.
Learn more ▾ ▴
Common deployment mistake: a staging robots.txt with `User-agent: * / Disallow: /` ships to prod. The site falls out of search results within days. Verify your robots.txt is the production-intended version. If this is intentional (private site), no action needed.
Source: Google Search Central
# ============================================
# 高德地图 PC 端爬虫访问规则
# 更新时间: 2025-12-18
# 策略: 全面放开公开路由,保护敏感接口
# ============================================
# ===== 百度爬虫 =====
User-agent: Baiduspider
Allow: /
# 保护敏感接口
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/qrcodeGet
Disallow: /service/qrcodeConfirm
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
# 爬取延迟(秒)
Crawl-delay: 1
# ===== 百度图片爬虫 =====
User-agent: Baiduspider-image
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 2
# ===== Google 爬虫 =====
User-agent: Googlebot
Allow: /
# 保护敏感接口
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/qrcodeGet
Disallow: /service/qrcodeConfirm
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
# 爬取延迟(秒)
Crawl-delay: 1
# ===== Bing 爬虫 =====
User-agent: MSNBot
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 2
User-agent: bingbot
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 2
# ===== 搜狗爬虫 =====
User-agent: Sogou web spider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
User-agent: Sogou inst spider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
User-agent: Sogou spider2
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
User-agent: Sogou blog
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
User-agent: Sogou News Spider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
User-agent: Sogou Orion spider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 360 搜索爬虫 =====
User-agent: 360Spider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/setcookie
Disallow: /service/pushMessage
Disallow: /service/pushRoadbook
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 神马搜索爬虫 =====
User-agent: YisouSpider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 有道爬虫 =====
User-agent: YoudaoBot
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 中搜爬虫 =====
User-agent: ChinasoSpider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 搜搜爬虫 =====
User-agent: Sosospider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 宜搜爬虫 =====
User-agent: EasouSpider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 即刻搜索爬虫 =====
User-agent: JikeSpider
Allow: /
Disallow: /service/fav/
Disallow: /service/checklogin
Disallow: /service/logout
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /rb/
Disallow: /bin/
Crawl-delay: 3
# ===== 其他未知爬虫(限制更严格)=====
User-agent: *
# 只允许访问核心 SEO 页面
Allow: /detail/
Allow: /search/
Allow: /dir/
Allow: /place/
Allow: /service/poiInfo
Allow: /service/regeo
Allow: /service/weather
Allow: /service/poiTips
# 禁止其他所有路径(包括短信验证码接口)
Disallow: /service/smsGet
Disallow: /service/smsFlush
Disallow: /service/smsSend
Disallow: /service/
Disallow: /rb/
Disallow: /roadbook/
Disallow: /bin/
Disallow: /
# 更长的爬取延迟
Crawl-delay: 5
# ============================================
# Sitemap 配置
# ============================================
Sitemap: https://ditu.amap.com/sitemap.xml
# ============================================
# 说明:
# 1. 主流搜索引擎(百度、Google、Bing等)可以访问所有公开路由
# 2. 敏感接口(收藏、登录、推送、短信验证码等)对所有爬虫禁止访问
# 3. 路书管理接口(/rb/)需要认证,禁止爬虫访问
# 4. 不同爬虫设置了不同的 Crawl-delay:
# - Google/Bing/百度: 1-2秒(优先级最高)
# - 其他主流: 3秒(中等优先级)
# - 未知爬虫: 5秒(低优先级,且限制访问范围)
# 5. 建议配合服务器端限流机制使用
# 6. 短信验证码接口已全面禁止爬虫访问
# ============================================
- https://www.amap.com/sitemaps/sitemap-ra...
- https://ditu.amap.com/sitemap-poi-ecolog...
- https://ditu.amap.com/sitemap-poi-other....
- https://ditu.amap.com/sitemap-poi-scenic...
- https://ditu.amap.com/sitemap-poi-life.x...
- https://ditu.amap.com/sitemap-poi-shoppi...
- https://ditu.amap.com/sitemap-poi-hospit...
- https://ditu.amap.com/sitemap-poi-hotel....
- https://ditu.amap.com/sitemap-poi-house....
- https://ditu.amap.com/sitemap-poi-dining...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://a.amap.com/pc/static/sitemap/sit...
- https://www.amap.com/sitemap-postcode.xm...
BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BHTTP Probe TimingTotal 1037 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations300 days until leaf cert expires — 5 issues to addressREVIEW
Certificate validity
Recommended actions
- Prefer TLS 1.3 — TLS 1.2 is acceptable but TLS 1.3 removes RSA key exchange and improves latency
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
ADNS Records2 A records, 318 ms lookupPASS
| A | 182.92.251.86, 182.92.205.225 |
| AAAA | — |
| CNAME | — |
| NS | ns4.aliyun.com, ns3.aliyun.com, ns5.aliyun.com |
| MX | — |
| TXT | verify_d5cd5efbe9228e1fddacd521be3e11ae 526fa6fd0b64efc66e1738be0e749703 verify_f52fe18a2a56753e55a1eb4d386bc7c5 SPF v=spf1 include:spf1.service.alibaba.com include:spf2.service.alibaba.com include... verify_f913b08a0c1ef0bafc9cd13dc4742fce oss-domain-verfication=b8158c8905273a46c37c66faa3d3dadc _globalsign-domain-verification=_F50fhmECJ2dzTbdPJU7F2PqQbxuBCHGbdQTYAF34c verify_4c6d9a7f1483bb7d21552822aee9cf8b |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
Slow DNS adds latency to every page load. Consider a faster DNS provider.
DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.
Source: DNS performance benchmarks
A+Redirect ChainNo redirects — direct accessPASS
https://amap.com
894 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://amap.com | 200 | 894 ms | HTTP/1.1 | nginx |
A+Domain Intelligenceamap.com — via Alibaba Cloud Computing (Beijing) Co., Ltd., 23 years, 2 months old, hosted on Alibaba CloudPASS
342 days
May 23, 2027
300 days
Issued by GlobalSign nv-sa
23 years, 2 months
Registered May 23, 2003
Not enabled
Protects against DNS spoofing
Alibaba Cloud
ASN AS37963
182.92.251.86
Alibaba Cloud Computing (Beijing) Co., Ltd.
Expiry timeline
Recommended actions
- Enable DNSSEC to protect visitors from DNS spoofing
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
DNSSEC protects against DNS spoofing attacks. While not required, enabling DNSSEC adds an additional layer of security. Contact your DNS provider to enable it.
Without DNSSEC, an attacker who can poison your DNS can hijack your domain — and SSL certs alone don't stop them.
Learn more ▾ ▴
DNSSEC adds cryptographic signatures to DNS records, preventing forged responses from poisoning resolver caches. Without it, an attacker who controls the network path can redirect your domain to a malicious server before any HTTPS handshake happens. Most modern registrars (Cloudflare, Google Domains, Route 53) enable it with one toggle.
Source: ICANN / RFC 4033
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice