Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
BCrawlabilityrobots.txt present, no sitemapREVIEW
A sitemap helps search engines discover and index your pages more efficiently.
No sitemap.xml — Google relies on crawl-graph discovery alone, slowing indexing of deep or fresh URLs.
Learn more ▾ ▴
A sitemap accelerates Google's discovery of new and updated content. Most CMSes auto-generate one; static-site frameworks need a build-step plugin. Reference it from robots.txt and submit in Search Console to confirm Google can fetch it.
Source: sitemaps.org / Google Search Central
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
# robots.txt for http://www.fourmilab.ch
User-agent: *
Disallow: /bullets/zounds # Audio files for illustration only
Disallow: /cgi-bin/ # Dynamic services
Disallow: /documents/DOS/ # Denial of service countermeasures
Disallow: /hotbits/figures # Figures for illustration only
Disallow: /hotbits/source # Source code
Disallow: /earthview/cache/ # Ephemeral files
Disallow: /earthview/satellite.html # Satellite orbital elements
Disallow: /entrenous/ # Files for specific people
Disallow: /etexts/www/gergel # Mirror of Gergel PDF books
Disallow: /goldberg/ # Under construction
Disallow: /netfone/ # Renamed to /speakfree
Disallow: /serverstats/ # Changes every day, confusing
Disallow: /sitemap.html # Temporary link to home page
Disallow: /speakfree/unix/prior-releases # Obsolete releases
Disallow: /speakfree/windows/prior-releases # Obsolete releases
Disallow: /uscode/8usc/www/ # Bulk text of 8 USC
Disallow: /uscode/26usc/www/ # Bulk text of 26 USC
Disallow: /ustax/ # Renamed to /uscode/26usc
Disallow: /yoursky/catalogues/ # Yoursky object catalogues
User-agent: NPBot
Disallow: / # Nameprotect.com spybot blocking
User-agent: Twiceler # Moronic Twiceler cgi-bin chaser
Disallow: /
# Twitterbot blasts in dozens of requests in seconds,
User-agent: Twitterbot
Disallow: /
# AhrefsBot generates lots of traffic and provides no
# benefit to sites it scrapes. It is also known for
# ignoring robots.txt, so we also block it in .htaccess.
User-agent: AhrefsBot
Disallow: /
# MJ12bot generates a lot of traffic to no benefit.
# It claims to respect robots.txt. Let's see.
User-agent: MJ12bot
Disallow: /
# DotBot (Moz.com) crawls indiscriminately to no
# benefit but their own.
User-agent: DotBot
Disallow: /
# MauiBot crawls indiscriminately and quickly, and
# nobody knows what it is. Comes from an AWS
# address range.
User-agent: MauiBot
Disallow: /
# SEMrushBot is up to no good. In December 2019, it accounted for
# almost 4% of all hits on the site.
User-agent: SemrushBot
Disallow: /
# TurnitinBot is a "plagiarism" checker that hits the site
# indiscriminately.
User-agent: TurnitinBot
Disallow: /
No sitemap found
Adding a sitemap helps search engines discover your pages.
BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BTLS Certificate Expiry & Recommendations69 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records1 A records, 79 ms lookupPASS
| A | 52.28.236.0 |
| AAAA | 2a05:d014:d43:3101:94aa:a276:e035:6a2a |
| CNAME | — |
| NS | ns-614.awsdns-12.net, ns-1903.awsdns-45.co.uk, ns-1463.awsdns-54.org, ns-209.awsdns-26.com |
| MX | 1 aspmx.l.google.com 5 alt2.aspmx.l.google.com 5 alt1.aspmx.l.google.com 10 alt3.aspmx.l.google.com 10 alt4.aspmx.l.google.com |
| TXT | SPF v=spf1 include:_spf.google.com ip4:193.8.230.0/24 ip4:52.28.236.0 ip4:3.123.190.... |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+Redirect ChainNo redirects — direct accessPASS
https://fourmilab.ch
80 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://fourmilab.ch | 200 | 80 ms | HTTP/1.1 | Apache/2.4.64 (Amazon Linux) OpenSSL/3.2.2 |
A+IPv6 ReadinessIPv6 reachable (33 ms)PASS
A+HTTP Probe TimingTotal 115 ms — DNS, TCP, TLS, TTFB, content transfer breakdownPASS
Connection waterfall
Domain IntelligenceDomain intelligence data not availableINFO
RDAP and WHOIS lookup both failed