Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

J

 

General Configuration problem

 

Checked:
22.03.2025 14:28:26

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
2a02:4780:10:4205::1
AAAA
2a02:4780:10:4205::1
Phoenix/Arizona/United States (US) - Hostinger International Limited

yes


 

2. DNSSEC

 

No DNSSEC - Informations found

 

3. Name Servers

 

No Nameserver entries found

 

4. SOA-Entries

 

No SOA entries found

5. Screenshots

Startaddress: https://2a02:4780:10:4205::1/, address used: about:blank, Screenshot created 2025-03-22 14:30:37 +00:0 url is insecure, certificate invalid

 

Mobil (412px x 732px)

 

11627 milliseconds

 

Mobil + Landscape (732px x 412px)

 

11490 milliseconds

 

Screen (1280px x 1680px)

 

3643 milliseconds

 

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport412732
content Size412732

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://2a02:4780:10:4205::1/
2a02:4780:10:4205::1
200

Html is minified: 100.62 %
0.333
H
Date: Sat, 22 Mar 2025 13:28:30 GMT
Server: Apache
Accept-Ranges: bytes
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Last-Modified: Thu, 12 Dec 2024 17:30:47 GMT
Content-Length: 163
Expires: 0
Content-Type: text/html

• https://2a02:4780:10:4205::1/
2a02:4780:10:4205::1
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.62 %
Other inline scripts (∑/total): 0/0
5.967
J
Certificate error: RemoteCertificateNameMismatch
Date: Sat, 22 Mar 2025 13:28:31 GMT
Server: Apache
Accept-Ranges: bytes
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Last-Modified: Thu, 12 Dec 2024 17:30:47 GMT
Content-Length: 163
Expires: 0
Content-Type: text/html

• http://2a02:4780:10:4205::1/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a02:4780:10:4205::1
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 642.60 %
Other inline scripts (∑/total): 0/0
0.333
A
Not Found
Visible Content:
Date: Sat, 22 Mar 2025 13:28:39 GMT
Server: Apache
Accept-Ranges: bytes
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Transfer-Encoding: chunked
Expires: 0
Content-Type: text/html
Content-Length: 10198

• https://[2a02:4780:0010:4205:0000:0000:0000:0001]/
2a02:4780:10:4205::1
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.62 %
Other inline scripts (∑/total): 0/0
5.937
J
Certificate error: RemoteCertificateNameMismatch
Date: Sat, 22 Mar 2025 13:28:39 GMT
Server: Apache
Accept-Ranges: bytes
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Last-Modified: Thu, 12 Dec 2024 17:30:47 GMT
Content-Length: 163
Expires: 0
Content-Type: text/html

 

7. Comments


1. General Results, most used to calculate the result

Aname "2a02:4780:10:4205::1" is ipv6 address, public suffix is not defined
AGood: All ip addresses are public addresses
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):0 complete Content-Type - header (4 urls)
http://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1


Url with incomplete Content-Type - header - missing charset
https://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1


Url with incomplete Content-Type - header - missing charset
http://2a02:4780:10:4205::1/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 2a02:4780:10:4205::1


Url with incomplete Content-Type - header - missing charset
https://[2a02:4780:0010:4205:0000:0000:0000:0001]/ 2a02:4780:10:4205::1


Url with incomplete Content-Type - header - missing charset
Bhttps://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1
200

Missing HSTS-Header
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Jhttps://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Jhttps://[2a02:4780:0010:4205:0000:0000:0000:0001]/ 2a02:4780:10:4205::1
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Nhttps://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://[2a02:4780:0010:4205:0000:0000:0000:0001]/ 2a02:4780:10:4205::1
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.2a02:4780:10:4205::1

2. Header-Checks

Fcodedragon.dev 2a02:4780:10:4205::1
Content-Security-Policy
Critical: Missing Header:
Fcodedragon.dev 2a02:4780:10:4205::1
X-Content-Type-Options
Critical: Missing Header:
Fcodedragon.dev 2a02:4780:10:4205::1
Referrer-Policy
Critical: Missing Header:
Fcodedragon.dev 2a02:4780:10:4205::1
Permissions-Policy
Critical: Missing Header:
Bcodedragon.dev 2a02:4780:10:4205::1
Cross-Origin-Embedder-Policy
Info: Missing Header
Bcodedragon.dev 2a02:4780:10:4205::1
Cross-Origin-Opener-Policy
Info: Missing Header
Bcodedragon.dev 2a02:4780:10:4205::1
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks


4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: No https + http status 200 with inline CSS / JavaScript found
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
https://2a02:4780:10:4205::1/ 2a02:4780:10:4205::1
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
https://[2a02:4780:0010:4205:0000:0000:0000:0001]/ 2a02:4780:10:4205::1
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
Warning: Svg-Images greater 1024 Bytes without internal compression are found. Svg is an Xml-Application, so Compression is required to reduce the size of the file. 1 images (type image/svg+xml, image/x-icon, image/vnd.microsoft.icon) found without compression.
AGood: All images with internal compression not compressed. Some Images (.png, .jpg, .jpeg, .webp, .gif) are already compressed, so an additional compression isn't helpful. 1 images (type image/png, image/jpg, image/jpeg, image/webp, image/gif) found without additional Compression. Not required because these images are already compressed
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 2 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 0 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 2 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: Some img-elements have a valid alt-attribute.: 2 img-elements found, 1 img-elements with correct alt-attributes (defined, not an empty value).
Wrong: img-elements without alt-attribute or empty alt-attribute found. The alt-attribute ("alternative") is required and should describe the img. So Screenreader and search engines are able to use these informations.: 1 img-elements without alt-attribute, 0 img-elements with empty alt-attribute found.
ADuration: 156814 milliseconds, 156.814 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
codedragon.dev
2a02:4780:10:4205::1
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
supported
ok
codedragon.dev
2a02:4780:10:4205::1
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=srv763118.hstgr.cloud


2CN=R10, O=Let's Encrypt, C=US


3CN=R10, O=Let's Encrypt, C=US


[2a02:4780:0010:4205:0000:0000:0000:0001]
2a02:4780:10:4205::1
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
supported
ok

[2a02:4780:0010:4205:0000:0000:0000:0001]
2a02:4780:10:4205::1
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
supported
ok
no http/2 via ALPN 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=srv763118.hstgr.cloud


2CN=R10, O=Let's Encrypt, C=US


3CN=R10, O=Let's Encrypt, C=US

 

9. Certificates

1.
1.
CN=srv763118.hstgr.cloud
20.03.2025
18.06.2025
expires in 51 days
autoconfig.srv763118.hstgr.cloud, autodiscover.srv763118.hstgr.cloud, cpanel.srv763118.hstgr.cloud, cpcalendars.srv763118.hstgr.cloud, cpcontacts.srv763118.hstgr.cloud, ipv6.srv763118.hstgr.cloud, mail.srv763118.hstgr.cloud, srv763118.hstgr.cloud, webdisk.srv763118.hstgr.cloud, webmail.srv763118.hstgr.cloud, whm.srv763118.hstgr.cloud, www.srv763118.hstgr.cloud - 12 entries
1.
1.
CN=srv763118.hstgr.cloud
20.03.2025

18.06.2025
expires in 51 days


autoconfig.srv763118.hstgr.cloud, autodiscover.srv763118.hstgr.cloud, cpanel.srv763118.hstgr.cloud, cpcalendars.srv763118.hstgr.cloud, cpcontacts.srv763118.hstgr.cloud, ipv6.srv763118.hstgr.cloud, mail.srv763118.hstgr.cloud, srv763118.hstgr.cloud, webdisk.srv763118.hstgr.cloud, webmail.srv763118.hstgr.cloud, whm.srv763118.hstgr.cloud, www.srv763118.hstgr.cloud - 12 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:066DAE3E16E88DE593AA79EFA97FE44725D8
Thumbprint:1BAFA4750C0C91670E025F6A23985EDAD191C4B0
SHA256 / Certificate:kAb+ELHvnYLC2E41LONvB1XSnU2KAKXYIqqY/DFe2/s=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):467d67e0bd1a4cccf82e750306605216e2cd4072cec935fbc6355560500bb2e3
SHA256 hex / Subject Public Key Information (SPKI):467d67e0bd1a4cccf82e750306605216e2cd4072cec935fbc6355560500bb2e3 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://r10.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R10, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 684 days


2.
CN=R10, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 684 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:4BA85293F79A2FA273064BA8048D75D0
Thumbprint:00ABEFD055F9A9C784FFDEABD1DCDD8FED741436
SHA256 / Certificate:nXw/GqatKy7A1c8eJG+NmubLyf0HVa03u5dLHy+2A/M=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):Error find_SubjectPublicKeyInfo_in_Certificate - no result found
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3689 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3689 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

No CertSpotter - CT-Log entries found

 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://2a02:4780:10:4205::1/
2a02:4780:10:4205::1
meta
other
2

0


0
0
0

https://[2a02:4780:0010:4205:0000:0000:0000:0001]/
2a02:4780:10:4205::1
meta
other
2

0


0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://2a02:4780:10:4205::1/
2a02:4780:10:4205::1
meta
Cache-control
no-cache


1
ok















meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok














https://[2a02:4780:0010:4205:0000:0000:0000:0001]/
2a02:4780:10:4205::1
meta
Cache-control
no-cache


1
ok















meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok














 

12. Html-Parsing via https://validator.w3.org/nu/

Url used (first standard-https-result with http status 200): https://2a02:4780:10:4205::1/

Summary

Good: No non-document-errors
5 errors
1 warnings

TypeMessagenum found
1.errorThe character encoding was not declared. Proceeding using windows-1252.1
2.errorStart tag seen without seeing a doctype first. Expected <!DOCTYPE html>.1
3.errorBad value Cache-control for attribute http-equiv on element meta.1
4.errorBad value 0;URL=/cgi-sys/defaultwebpage.cgi for attribute content on element meta: Expected a space character, but saw U instead.1
5.errorElement head is missing a required instance of child element title.1
6.warningConsider adding a lang attribute to the html start tag to declare the language of this document.1

Details


TypeMessage + Sample
1errorThe character encoding was not declared. Proceeding using windows-1252.


2errorStart tag seen without seeing a doctype first. Expected <!DOCTYPE html>.

From line 1, column 1 to line 1, column 6

<html><head>
3errorBad value Cache-control for attribute http-equiv on element meta.

From line 1, column 13 to line 1, column 64

tml><head><META HTTP-EQUIV="Cache-control" CONTENT="no-cache"><META
4errorBad value 0;URL=/cgi-sys/defaultwebpage.cgi for attribute content on element meta: Expected a space character, but saw U instead.

From line 1, column 65 to line 1, column 135

no-cache"><META HTTP-EQUIV="refresh" CONTENT="0;URL=/cgi-sys/defaultwebpage.cgi"></head
5errorElement head is missing a required instance of child element title.

From line 1, column 136 to line 1, column 142

page.cgi"></head><body>
6warningConsider adding a lang attribute to the html start tag to declare the language of this document.

From line 1, column 1 to line 1, column 6

<html><head>

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers:

 

 

No NameServer - IP address - Informations found

 

14. CAA - Entries

No CAA entries found

 

15. TXT - Entries

No TXT entries found

 

16. DomainService - Entries

No DomainServiceEntries entries found

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
codedragon.dev
2a02:4780:10:4205::1
443
5 Ciphers81.04 sec
0 without, 5 FS
100.00 %
Complete

1
5 Ciphers
5.00 Ciphers/Check
81.04 sec81.04 sec/Check
0 without, 5 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
codedragon.dev
2a02:4780:10:4205::1
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
5 Ciphers, 81.04 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

DH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256

DH
RSA
AESGCM(128)
AEAD

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=22a3001a-cfe0-410d-9e00-759f7e75059f

 

Last Result: https://check-your-website.server-daten.de/?q=%5B2a02%3A4780%3A10%3A4205%3A%3A1%5D&h=codedragon.dev - 2025-03-22 14:28:26

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=%5B2a02%3A4780%3A10%3A4205%3A%3A1%5D&h=codedragon.dev" target="_blank">Check this Site: %5B2a02%3A4780%3A10%3A4205%3A%3A1%5D</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=[2a02:4780:10:4205::1]&h=codedragon.dev