Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BHTTP Probe TimingTotal 844 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations40 days until leaf cert expires — 2 issues to addressREVIEW
Certificate validity
Recommended actions
- Submit your domain to hstspreload.org to be added to the Chrome preload list
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records3 A records, 8 ms lookupPASS
| A | 104.26.5.55, 104.26.4.55, 172.67.75.147 |
| AAAA | 2606:4700:20::681a:437, 2606:4700:20::681a:537, 2606:4700:20::ac43:4b93 |
| CNAME | — |
| NS | ali.ns.cloudflare.com, adam.ns.cloudflare.com |
| MX | 1 aspmx.l.google.com 5 alt2.aspmx.l.google.com 5 alt1.aspmx.l.google.com 10 alt3.aspmx.l.google.com 10 alt4.aspmx.l.google.com |
| TXT | klaviyo-site-verification=WqwiFd facebook-domain-verification=qn13og73666ghlqlgsjnza4qkue5bb google-site-verification=2WgNbg_clIgUidXE_ATBtR6U7OKVIQTCiPrin5CLhoY google-site-verification=58XqEUbxw_gMrxC4Eib0wAi4pGN5dT2sp8Y5QWBTHqE google-site-verification=tCxP_MdQ5q8lvO3h1bz0QthdiXiZkQ3j8zlntCYi4Fo google-site-verification=yUI1qpkq94WQK9cCcsXl4-MPfNOD17Aruo6ZFDF9q0s _globalsign-domain-verification=l42pzbocx47-up_aD7Y3UplelwA5zi9TtTsjomJ0Yy SPF v=spf1 include:emsd1.com include:_spf.google.com include:sendgrid.net include:ma... |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+Redirect ChainNo redirects — direct accessPASS
https://positivepsychology.com
554 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://positivepsychology.com | 200 | 554 ms | HTTP/1.1 | cloudflare |
A+IPv6 ReadinessIPv6 reachable (2 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 6 URLsPASS
User-agent: *
Disallow: /wp-admin/
Allow: /wp-admin/admin-ajax.php
Sitemap: https://positivepsychology.com/sitemap_index.xml
Disallow: /courses/*
Disallow: /course/*
Disallow: /lesson/*
Disallow: /community/*
Disallow: /tools/*
Disallow: /tool/*
Disallow: /*feed/*
Disallow: /*comment*
Disallow: /search/*
Disallow: /*?s=*
User-agent: YandexBot
Disallow: /
User-agent: ClaudeBot
Disallow: /
User-agent: 360Spider
Disallow: /
User-agent: AhrefsBot
Disallow: /
User-agent: Baiduspider
Disallow: /
User-agent: BLEXBot
Disallow: /
User-agent: DotBot
Disallow: /
User-agent: Exabot
Disallow: /
User-agent: MJ12bot
Disallow: /
User-agent: PetalBot
Disallow: /
User-agent: SEOkicks-Robot
Disallow: /
User-agent: SemrushBot
Disallow: /
User-agent: SiteExplorer
Disallow: /
User-agent: Sogou
Disallow: /
User-agent: spbot
Disallow: /
User-agent: YandexImages
Disallow: /
User-agent: Yeti
Disallow: /
User-agent: YisouSpider
Disallow: /
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligencepositivepsychology.com — via Cloudflare, Inc., 27 years oldPASS
427 days
August 17, 2027
40 days
Issued by Google Trust Services
27 years
Registered August 17, 1999
Enabled
Protects against DNS spoofing
Unknown
2606:4700:20::681a:437
Cloudflare, Inc.
Expiry timeline
Recommended actions
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice