Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BURL Variantswww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Consistent
BTLS Certificate Expiry & Recommendations39 days until leaf cert expires — 2 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
BCDN & DeliveryCloudflareREVIEW
A+DNS Records2 A records, 11 ms lookupPASS
| A | 104.20.26.246, 172.66.159.219 |
| AAAA | 2606:4700:10::6814:1af6, 2606:4700:10::ac42:9fdb |
| CNAME | — |
| NS | greg.ns.cloudflare.com, lucy.ns.cloudflare.com |
| MX | 10 aspmx.l.google.com 20 alt1.aspmx.l.google.com 20 alt2.aspmx.l.google.com 30 alt3.aspmx.l.google.com 30 alt4.aspmx.l.google.com |
| TXT | epphjbel0ukl3gcnr8mc6no9fq vnaaa7hnm4eg3pacfmqe7st1ar ZOOM_verify_60fNLFQDsxpXWLqQII6pTm ZOOM_verify__-IJdwiLQvGCQ7eAw9svcg ca3-0e62bd0d052d4deb80dd7badcb73659d MS=315E2C01A2CB750CE7E489A63C5298B6D5B21818 openai-domain-verification=dv-FDKBfOV1bcqnBxz6AJpRmOUc Validity-Domain-Verification=/lXsQFyzvO4pNJ4oqOkrtbNcPUw= anthropic-domain-verification-nabkgf=evTdtlI2VArJeKHjAeeaTpeVS slack-domain-verification=wrx41GHuFV7vTPtLlTXoMtfIhSzku9zv1pg9UGpp yahoo-verification-key=/ayiWblfgq9HYgaRxArjgSZyOjpOFDxoYtl9soW3ayc= google-site-verification=-OmKQl-1dN3LLfVvNaIqq8cHAWkSgdUAqAuWiEDyv8U google-site-verification=DIOfhqFkvJMQry-0bcoiRVEPEsjtCCYFM9zzrcCeqzo google-site-verification=U5ta_jZJ0qZzb0BwihKeg7lfVRzqNJXRtZzSQ_OBCl8 google-site-verification=bULZz7ecaXz_ziDTsCJrQLVXy5aTQxOufMmgT97kRPg google-site-verification=p2t7YJQD5bJwYi15uC75c-u0ILz3fwkpmMOVWYOMocM SPF v=spf1 include:_spf.questionpro.com include:_spf2.questionpro.com include:_spf.g... |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ARedirect Chain1 redirect(s), 747 ms totalPASS
https://questionpro.com
14 ms · HTTP/1.1
https://www.questionpro.com/
733 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://questionpro.com | 301 | 14 ms | HTTP/1.1 | cloudflare |
| 2 | https://www.questionpro.com/ | 200 | 733 ms | HTTP/1.1 | cloudflare |
See the visual redirect chain in the HTTP Probe tab →
A+IPv6 ReadinessIPv6 reachable (1 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 19 URLsPASS
User-agent: *
Allow: /userimages/indexmap/
Allow: /userimages/help_file_images/
Allow: /userimages/site_media/
Disallow: /userimages/
Disallow: /a/jsp/
Disallow: /a/PreviewSurvey
Disallow: /userimages/site_media/*.pdf$
Disallow: /*.txt$
Disallow: /*.pdf$
Host: www.questionpro.com
Sitemap: https://www.questionpro.com/sitemap.xml
- https://www.questionpro.com/en/sitemap/s...
- https://www.questionpro.com/en/sitemap/s...
- https://www.questionpro.com/en/sitemap/h...
- https://www.questionpro.com/es/sitemap/s...
- https://www.questionpro.com/es/sitemap/s...
- https://www.questionpro.com/es/sitemap/h...
- https://www.questionpro.com/de/sitemap/s...
- https://www.questionpro.com/de/sitemap/h...
- https://www.questionpro.com/pt-br/sitema...
- https://www.questionpro.com/pt-br/sitema...
- https://www.questionpro.com/pt-br/sitema...
- https://www.questionpro.com/ar/sitemap/s...
- https://www.questionpro.com/ar/sitemap/s...
- https://www.questionpro.com/ja/sitemap/s...
- https://www.questionpro.com/ja/sitemap/s...
- https://www.questionpro.com/fr/sitemap/s...
- https://www.questionpro.com/fr/sitemap/s...
- https://www.questionpro.com/blog/sitemap...
- https://www.questionpro.com/engineering/...
ADomain Intelligencequestionpro.com — via Cloudflare, Inc., 26 years, 2 months oldPASS
14 days
June 30, 2026
39 days
Issued by Google Trust Services
26 years, 2 months
Registered June 30, 2000
Enabled
Protects against DNS spoofing
Unknown
2606:4700:10::6814:1af6
Cloudflare, Inc.
Expiry timeline
Recommended actions
- Renew the domain or enable auto-renewal to prevent accidental expiry
- Enable registrar lock (clientTransferProhibited) to block unauthorized domain transfers
Consider enabling auto-renewal to prevent accidental expiration.
Domain expiry approaching — renew immediately and ensure auto-renew + alerting are configured.
Source: ICANN renewal policy
The domain can be transferred without an unlock step. Enable registrar lock (clientTransferProhibited) in your registrar's control panel to protect against unauthorized or accidental transfers.
Without registrar lock, an attacker who phishes your registrar credentials can transfer the domain in minutes — total brand hijack.
Learn more ▾ ▴
Registrar lock (clientTransferProhibited, clientUpdateProhibited, clientDeleteProhibited) requires extra verification before any transfer/update/delete. Every major registrar offers it free. Combined with 2FA on your registrar account, it's the strongest defense against domain hijacking.
Source: ICANN / domain-security best practice