Infrastructure
· 17 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.FMulti-Resolver DNS SpeedActionAll public resolvers failed to resolve the domainFIX
CDNSSECActionDNSSEC posture not checkedREVIEW
CCAA RecordsActionCAA posture not checkedREVIEW
CReverse DNSAction0/6 IPs match cert SANREVIEW
BRedirect Chain1 redirect(s), 2475 ms totalREVIEW
https://migliorisitiporno.net
986 ms · HTTP/1.1
https://www.migliorisitiporno.net/
1490 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://migliorisitiporno.net | 301 | 986 ms | HTTP/1.1 | cloudflare |
| 2 | https://www.migliorisitiporno.net/ | 200 | 1490 ms | HTTP/1.1 | cloudflare |
See the visual redirect chain in the HTTP Probe tab →
BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
HTTP → HTTPS
HTTP version does not redirect to HTTPS
BHTTP Probe TimingTotal 992 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations78 days until leaf cert expires — 4 issues to addressREVIEW
Certificate validity
Recommended actions
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
BOperational Status PageNo status page link detectedREVIEW
BHealth Check EndpointNo conventional health endpoint foundREVIEW
A+DNS Records3 A records, 148 ms lookupPASS
| A | 104.26.9.230, 172.67.73.77, 104.26.8.230 |
| AAAA | 2606:4700:20::ac43:494d, 2606:4700:20::681a:9e6, 2606:4700:20::681a:8e6 |
| CNAME | — |
| NS | lara.ns.cloudflare.com, skip.ns.cloudflare.com |
| MX | 0 _dc-mx.6dc253ab1686.migliorisitiporno.net |
| TXT | — |
| CAA | Lookup not available with standard resolver |
SPF helps prevent email spoofing. Add a TXT record starting with 'v=spf1'.
Without SPF, receiving servers can't validate sending IPs — your domain is easier to spoof in phishing.
Learn more ▾ ▴
SPF complements DMARC. Both should be published. SPF records list authorized sending IPs (e.g., `v=spf1 include:_spf.google.com ~all` for Google Workspace). After publishing, verify in Google Postmaster Tools or mxtoolbox.
Source: RFC 7208 (SPF)
A+Subdomain TakeoverNo subdomain takeover risk detectedPASS
A+IPv6 ReadinessIPv6 reachable (3 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 4 URLsPASS
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
User-agent: *
Disallow: /wp-admin/
ACDN & DeliveryCloudflare (DYNAMIC)PASS
A+CDN Cache ObservabilityCache state: DYNAMICPASS
Domain IntelligenceDomain intelligence data not availableINFO
RDAP and WHOIS lookup both failed