Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

K

 

different ip addresses with diff. status

 

Checked:
19.08.2026 17:04:09

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
amplify.app
A
207.207.210.36
Tigard/Oregon/United States (US) - Amazon.com, Inc.
No Hostname found
yes
1
0

A
207.207.210.50
Tigard/Oregon/United States (US) - Amazon.com, Inc.
No Hostname found
yes
1
0

AAAA

yes


www.amplify.app
CNAME
uixie.porkbun.com
yes
1
0

A
207.207.210.36
Tigard/Oregon/United States (US) - Amazon.com, Inc.
No Hostname found
yes



A
207.207.210.50
Tigard/Oregon/United States (US) - Amazon.com, Inc.
No Hostname found
yes


*.amplify.app
A

yes



AAAA

yes



CNAME
uixie.porkbun.com
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 57780, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 31.08.2026, 00:00:00 +, Signature-Inception: 10.08.2026, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: app

app
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 23684, DigestType 2 and Digest OlzIox4CyUq6ZGGRL6u36fXjSVe7YRSlWoZNlq7DGDY=






1 RRSIG RR to validate DS RR found






RRSIG-Owner app., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 01.09.2026, 05:00:00 +, Signature-Inception: 19.08.2026, 04:00:00 +, KeyTag 57780, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 57780 used to validate the DS RRSet in the parent zone






2 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 23684, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 30630, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner app., Algorithm: 8, 1 Labels, original TTL: 300 sec, Signature-expiration: 08.09.2026, 13:22:54 +, Signature-Inception: 17.08.2026, 13:22:54 +, KeyTag 23684, Signer-Name: app






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 23684 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 23684, DigestType 2 and Digest "OlzIox4CyUq6ZGGRL6u36fXjSVe7YRSlWoZNlq7DGDY=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: amplify.app

amplify.app
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "aeimrb2ivc7folublsgjacpivq38k2o4" between the hashed NSEC3-owner "aeimrb2ivc7folublsgjacpivq38k2o4" and the hashed NextOwner "aeina4oo4csjk1m8kniudn229ja23ug7". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: No Bitmap? Validated: RRSIG-Owner aeimrb2ivc7folublsgjacpivq38k2o4.app., Algorithm: 8, 2 Labels, original TTL: 900 sec, Signature-expiration: 08.09.2026, 13:22:54 +, Signature-Inception: 17.08.2026, 13:22:54 +, KeyTag 30630, Signer-Name: app






0 DNSKEY RR found









Zone: www.amplify.app

www.amplify.app
0 DS RR in the parent zone found



Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 57780, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 31.08.2026, 00:00:00 +, Signature-Inception: 10.08.2026, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: com

com
1 DS RR in the parent zone found






DS with Algorithm 13, KeyTag 19718, DigestType 2 and Digest isuwzSj0ElCoCkkTiUJNNBUi2Uaw2gwCkfLT13HXgFo=






1 RRSIG RR to validate DS RR found






RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 01.09.2026, 05:00:00 +, Signature-Inception: 19.08.2026, 04:00:00 +, KeyTag 57780, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 57780 used to validate the DS RRSet in the parent zone






2 DNSKEY RR found






Public Key with Algorithm 13, KeyTag 19718, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 13, KeyTag 41446, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner com., Algorithm: 13, 1 Labels, original TTL: 86400 sec, Signature-expiration: 30.08.2026, 14:02:35 +, Signature-Inception: 15.08.2026, 13:57:35 +, KeyTag 19718, Signer-Name: com






Status: Good - Algorithmus 13 and DNSKEY with KeyTag 19718 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 19718, DigestType 2 and Digest "isuwzSj0ElCoCkkTiUJNNBUi2Uaw2gwCkfLT13HXgFo=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: porkbun.com

porkbun.com
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "02aa5a5fgol622usd8isilng6ptr2utq" between the hashed NSEC3-owner "02aa15gmit46qqu036hrqink5k5cil0o" and the hashed NextOwner "02aaid2r2p87am6jhm6n8g36bh23d8dk". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 02aa15gmit46qqu036hrqink5k5cil0o.com., Algorithm: 13, 2 Labels, original TTL: 900 sec, Signature-expiration: 26.08.2026, 02:48:27 +, Signature-Inception: 19.08.2026, 01:38:27 +, KeyTag 41446, Signer-Name: com






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q35hrs4h76g6chnb9414cjn6s5upl". So that domain name is the Closest Encloser of "porkbun.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 13, 2 Labels, original TTL: 900 sec, Signature-expiration: 26.08.2026, 11:02:29 +, Signature-Inception: 19.08.2026, 09:52:29 +, KeyTag 41446, Signer-Name: com






0 DNSKEY RR found









Zone: uixie.porkbun.com

uixie.porkbun.com
0 DS RR in the parent zone found






0 DNSKEY RR found







 

3. Name Servers

DomainNameserverNS-IP
amplify.app
  curitiba.ns.porkbun.com / 67m123
173.245.58.37
Toronto/Ontario/Canada (CA) - Cloudflare, Inc.


 
2400:cb00:2049:1::adf5:3a25
San Francisco/California/United States (US) - CLOUDFLARE


  fortaleza.ns.porkbun.com / 67m185
162.159.8.140
Toronto/Ontario/Canada (CA) - Cloudflare, Inc.


 
2400:cb00:2049:1::a29f:88c
San Francisco/California/United States (US) - CLOUDFLARE


  maceio.ns.porkbun.com / 67m87
162.159.11.180
Toronto/Ontario/Canada (CA) - Cloudflare, Inc.


 
2400:cb00:2049:1::a29f:bb4
San Francisco/California/United States (US) - CLOUDFLARE


  salvador.ns.porkbun.com / 67m190
162.159.10.150
Toronto/Ontario/Canada (CA) - Cloudflare, Inc.


 
2400:cb00:2049:1::a29f:a96
San Francisco/California/United States (US) - CLOUDFLARE

app
  ns-tld1.charlestonroadregistry.com / hex:80 C7 0F 0B 10 5C 62 02 C7 19 B8 B0 FA 3A 1C D0


  ns-tld2.charlestonroadregistry.com / hex:58 AC C2 0F 03 C2 9F 47 36 18 17 E3 55 2D 12 B2


  ns-tld3.charlestonroadregistry.com / hex:1B B0 CC AE 38 51 D6 DD 68 88 5B C2 68 0A 03 00


  ns-tld4.charlestonroadregistry.com / �U�y��u2L'��f�נ


  ns-tld5.charlestonroadregistry.com / hex:68 09 A8 34 56 2A 0A A8 39 37 BF FB A8 35 4E 0A


uixie.porkbun.com
  ns-199.awsdns-24.com / a4f440b198e4df5daee3e362f084fdea -
205.251.192.199
Ashburn/Virginia/United States (US) - Amazon.com


 
2600:9000:5300:c700::1
Seattle/Washington/United States (US) - Amazon.com, Inc.

porkbun.com
  ns-1328.awsdns-38.org / 6124d918de955a8cf02ac8dc9225c9ad -
205.251.197.48
Herndon/Virginia/United States (US) - Amazon.com


 
2600:9000:5305:3000::1
Palo Alto/California/United States (US) - Amazon.com, Inc.


  ns-1982.awsdns-55.co.uk / 3aa1922ddad633bc46f6d4ce3d48f706 -
205.251.199.190
Ashburn/Virginia/United States (US) - Amazon.com


 
2600:9000:5307:be00::1
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns-199.awsdns-24.com / a4f440b198e4df5daee3e362f084fdea -
205.251.192.199
Ashburn/Virginia/United States (US) - Amazon.com


 
2600:9000:5300:c700::1
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns-586.awsdns-09.net / e83de3afe70778b7edc1bec6f3af45fb -
205.251.194.74
Herndon/Virginia/United States (US) - Amazon.com


 
2600:9000:5302:4a00::1
Seattle/Washington/United States (US) - Amazon.com, Inc.

com
  a.gtld-servers.net / nnn1-defra-5


  b.gtld-servers.net / nnn1-elwaw4


  c.gtld-servers.net / nnn1-usmnz-1d


  d.gtld-servers.net / nnn1-mnz4


  e.gtld-servers.net / nnn1-usmnz-1e


  f.gtld-servers.net / nnn1-defra-4


  g.gtld-servers.net / nnn1-defra-4


  h.gtld-servers.net / nnn1-defra-4


  i.gtld-servers.net / nnn1-defra-4


  j.gtld-servers.net / nnn1-frmrs-2


  k.gtld-servers.net / nnn1-frmrs-2


  l.gtld-servers.net / nnn1-frmrs-2


  m.gtld-servers.net / nnn1-frmrs-2

 

4. SOA-Entries


Domain:app
Zone-Name:app
Primary:ns-tld1.charlestonroadregistry.com
Mail:cloud-dns-hostmaster.google.com
Serial:101427
Refresh:21600
Retry:3600
Expire:259200
TTL:900
num Entries:5


Domain:amplify.app
Zone-Name:amplify.app
Primary:curitiba.ns.porkbun.com
Mail:dns.cloudflare.com
Serial:2409195776
Refresh:10000
Retry:2400
Expire:604800
TTL:1800
num Entries:8



Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1787151834
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:5


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1787151849
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:8


Domain:porkbun.com
Zone-Name:porkbun.com
Primary:ns-199.awsdns-24.com
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:86400
num Entries:8


Domain:uixie.porkbun.com
Zone-Name:porkbun.com
Primary:ns-199.awsdns-24.com
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:86400
num Entries:2


5. Screenshots

Startaddress: https://www.godaddy.com/forsale/amplify.app, address used: https://www.godaddy.com/forsale/amplify.app, Screenshot created 2026-08-19 17:17:00 +00:0

 

Mobil (412px x 732px)

 

732 milliseconds

 

Screenshot mobile - https://www.godaddy.com/forsale/amplify.app
Mobil + Landscape (732px x 412px)

 

768 milliseconds

 

Screenshot mobile landscape - https://www.godaddy.com/forsale/amplify.app
Screen (1280px x 1680px)

 

800 milliseconds

 

Screenshot Desktop - https://www.godaddy.com/forsale/amplify.app

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport412717
content Size414717

 

Fatal: Horizontal scrollbar detected. Content-size width is greater then visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://amplify.app/
207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
0.390
E
Server: openresty
Date: Wed, 19 Aug 2026 15:06:05 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://amplify.app/
207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
0.360
E
Server: openresty
Date: Wed, 19 Aug 2026 15:06:05 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://www.amplify.app/
207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
0.406
E
Server: openresty
Date: Wed, 19 Aug 2026 15:06:06 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://www.amplify.app/
207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
0.203
E
Server: openresty
Date: Wed, 19 Aug 2026 15:06:06 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• https://amplify.app/
207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
11.310
B
Server: openresty
Date: Wed, 19 Aug 2026 15:06:07 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• https://amplify.app/
207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
6.470
B
Server: openresty
Date: Wed, 19 Aug 2026 15:06:19 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• https://www.amplify.app/
207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
17.580
B
Server: openresty
Date: Wed, 19 Aug 2026 15:06:27 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• https://www.amplify.app/
207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
6.297
B
Server: openresty
Date: Wed, 19 Aug 2026 15:06:45 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• https://www.godaddy.com/forsale/amplify.app

Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
403

Html is minified: 102.06 %
Other inline scripts (∑/total): 0/0
7.123
B
Forbidden
Server: AkamaiGHost
Mime-Version: 1.0
Cache-Control: no-store, no-cache, max-age=0
Pragma: no-cache
Date: Wed, 19 Aug 2026 15:07:14 GMT
Connection: close
Set-Cookie: market=de-DE; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com,currency=EUR; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com
X-Frame-Options: DENY
X-ARC: 2,6
Server-Timing: ak_p; desc="1787152034312_2917035100_2286835141_14_19416_27_30_-";dur=1
Content-Type: text/html
Content-Length: 396
Expires: Wed, 19 Aug 2026 15:07:14 GMT

• http://amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
207.207.210.50
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
Other inline scripts (∑/total): 0/0
0.360
E
Visible Content:
Server: openresty
Date: Wed, 19 Aug 2026 15:07:02 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://www.amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
207.207.210.36
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
Other inline scripts (∑/total): 0/0
0.357
E
Visible Content:
Server: openresty
Date: Wed, 19 Aug 2026 15:07:02 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://www.amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
207.207.210.50
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://www.godaddy.com/forsale/amplify.app
Html is minified: 110.94 %
Other inline scripts (∑/total): 0/0
0.186
E
Visible Content:
Server: openresty
Date: Wed, 19 Aug 2026 15:07:03 GMT
Connection: keep-alive
Location: https://www.godaddy.com/forsale/amplify.app
X-Frame-Options: sameorigin
Content-Type: text/html
Content-Length: 142

• http://amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
207.207.210.36
-14


10.037
T
Timeout - The operation has timed out.
Visible Content:

• https://207.207.210.36/
207.207.210.36
-14


10.030
T
Timeout - The operation has timed out.

• https://207.207.210.50/
207.207.210.50
-103


0.373
P
SecureConnectionError (3, 0x80131501). The SSL connection could not be established, see inner exception. Authentication failed because the remote party sent a TLS alert: 'HandshakeFailure'. (FF: SSL_ERROR_NO_CYPHER_OVERLAP)

 

7. Comments


1. General Results, most used to calculate the result

Aname "amplify.app" is domain, public suffix is ".app", top-level-domain is ".app", top-level-domain-type is "generic", tld-manager is "Charleston Road Registry Inc.", num .app-domains preloaded: 47 (complete: 276475)
AGood: All ip addresses are public addresses
AGood: Minimal 2 ip addresses per domain name found: amplify.app has 2 different ip addresses (authoritative).
AGood: Minimal 2 ip addresses per domain name found: www.amplify.app has 2 different ip addresses (authoritative).
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: amplify.app has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.amplify.app has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
Ahttps://www.amplify.app/ 207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Correct redirect https to https
Ahttps://www.amplify.app/ 207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Correct redirect https to https
AGood: No cookie sent via http.
AExcellent: Domain is in the Google-Preload-List
AExcellent: Domain is in the Mozilla/Firefox-Preload-List
AHSTS-Preload-Status: Preloaded. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):0 complete Content-Type - header (1 urls)
https://www.godaddy.com/forsale/amplify.app


Url with incomplete Content-Type - header - missing charset
Bhttps://amplify.app/ 207.207.210.36
302

Missing HSTS-Header
Bhttps://amplify.app/ 207.207.210.50
302

Missing HSTS-Header
Bhttps://www.amplify.app/ 207.207.210.36
302

Missing HSTS-Header
Bhttps://www.amplify.app/ 207.207.210.50
302

Missing HSTS-Header
Bhttps://www.godaddy.com/forsale/amplify.app
403

Missing HSTS-Header
Bhttps://www.godaddy.com/forsale/amplify.app
403
market=de-DE; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com
Cookie sent via https, but not marked as secure
Bhttps://www.godaddy.com/forsale/amplify.app
403
currency=EUR; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com
Cookie sent via https, but not marked as secure
Bhttps://www.godaddy.com/forsale/amplify.app
403
market=de-DE; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://www.godaddy.com/forsale/amplify.app
403
currency=EUR; expires=Thu, 19-Aug-2027 15:07:14 GMT; path=/; domain=.godaddy.com
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
CError - no version with Http-Status 200
Ehttp://amplify.app/ 207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Wrong redirect one domain http to other domain https. First redirect to https without new dns query, so the server can send the HSTS header. That's fundamental using HSTS (Http Strict Transport Security). First step: Add correct redirects http ⇒ https. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop. Then recheck your domain, should be Grade C. There is the rule to select one https version as preferred version.
Ehttp://amplify.app/ 207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Wrong redirect one domain http to other domain https. First redirect to https without new dns query, so the server can send the HSTS header. That's fundamental using HSTS (Http Strict Transport Security). First step: Add correct redirects http ⇒ https. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop. Then recheck your domain, should be Grade C. There is the rule to select one https version as preferred version.
Ehttp://www.amplify.app/ 207.207.210.36
302
https://www.godaddy.com/forsale/amplify.app
Wrong redirect one domain http to other domain https. First redirect to https without new dns query, so the server can send the HSTS header. That's fundamental using HSTS (Http Strict Transport Security). First step: Add correct redirects http ⇒ https. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop. Then recheck your domain, should be Grade C. There is the rule to select one https version as preferred version.
Ehttp://www.amplify.app/ 207.207.210.50
302
https://www.godaddy.com/forsale/amplify.app
Wrong redirect one domain http to other domain https. First redirect to https without new dns query, so the server can send the HSTS header. That's fundamental using HSTS (Http Strict Transport Security). First step: Add correct redirects http ⇒ https. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop. Then recheck your domain, should be Grade C. There is the rule to select one https version as preferred version.
HFatal error: No https - result with http-status 200, no encryption
Khttp://amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 207.207.210.36, Status -14

http://amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 207.207.210.50, Status 302
Configuration problem - different ip addresses with different status
Mhttps://www.godaddy.com/forsale/amplify.app
403

Misconfiguration - main pages should never send http status 400 - 499
Fatal: More then one ip address per domain name found, but checking all ip addresses different http status found.: Domain amplify.app, 2 ip addresses, 2 different http results.
Fatal: More then one ip address per domain name found, but checking all ip addresses different http status found.: Domain www.amplify.app, 2 ip addresses, 2 different http results.
Info: Checking the ip addresses of that domain name not exact one certificate found. So it's impossible to check if that domain requires Server Name Indication (SNI).: Domain amplify.app, 2 ip addresses.
Info: Checking the ip addresses of that domain name not exact one certificate found. So it's impossible to check if that domain requires Server Name Indication (SNI).: Domain www.amplify.app, 2 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.amplify.app

2. Header-Checks

Awww.godaddy.com
X-Frame-Options
Ok: Header without syntax errors found: DENY
B

Info: Header is deprecated. May not longer work in modern browsers. DENY. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
Fwww.godaddy.com
Content-Security-Policy
Critical: Missing Header:
Fwww.godaddy.com
X-Content-Type-Options
Critical: Missing Header:
Fwww.godaddy.com
Referrer-Policy
Critical: Missing Header:
Fwww.godaddy.com
Permissions-Policy
Critical: Missing Header:
Bwww.godaddy.com
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.godaddy.com
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.godaddy.com
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 25 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 0 Name Servers.
AInfo:: 25 Queries complete, 25 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AInfo:: 4 different Name Servers found: curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, salvador.ns.porkbun.com, 4 Name Servers included in Delegation: curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, salvador.ns.porkbun.com, 4 Name Servers included in 1 Zone definitions: curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, salvador.ns.porkbun.com, 1 Name Servers listed in SOA.Primary: curitiba.ns.porkbun.com.
AGood: Only one SOA.Primary Name Server found.: curitiba.ns.porkbun.com.
AGood: SOA.Primary Name Server included in the delegation set.: curitiba.ns.porkbun.com.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, salvador.ns.porkbun.com
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 4 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 4 Name Servers, 1 Top Level Domain: com
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: porkbun.com
AGood: Name servers with different Country locations found: 4 Name Servers, 2 Countries: CA, US
AInfo: Ipv4-Subnet-list: 4 Name Servers, 2 different subnets (first Byte): 162., 173., 2 different subnets (first two Bytes): 162.159., 173.245., 4 different subnets (first three Bytes): 162.159.10., 162.159.11., 162.159.8., 173.245.58.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 1 different subnets (first block): 2400:, 1 different subnets (first two blocks): 2400:cb00:, 1 different subnets (first three blocks): 2400:cb00:2049:, 1 different subnets (first four blocks): 2400:cb00:2049:0001:
Fatal: All Name Server IPv6 addresses from the same subnet.
AGood: Nameserver supports TCP connections: 8 good Nameserver
AGood: Nameserver supports Echo Capitalization: 8 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 8 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 8 good Nameserver
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: amazon.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: godaddy.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: letsencrypt.org is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: sectigo.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: wordpress.com is allowed to create wildcard-certificates
Warning: Unknown CAA found: wordpress.com isn't defined. Unknown entry. May be wrong written, may be not longer valid. May be a missing entry in this tool.

4. Content- and Performance-critical Checks

http://amplify.app/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 207.207.210.36
-14

Fatal: Check of /.well-known/acme-challenge/random-filename has a timeout. Creating a Letsencrypt certificate via http-01 challenge can't work. You need a running webserver (http) and an open port 80. If it's a home server + ipv4, perhaps a correct port forwarding port 80 extern ⇒ working port intern is required. Port 80 / http can redirect to another domain port 80 or port 443, but not other ports. If it's a home server, perhaps your ISP blocks port 80. Then you may use the dns-01 challenge. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AInfo: No img element found, no alt attribute checked
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
AInfo: Different Server-Headers found
ADuration: 775364 milliseconds, 775.364 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
amplify.app
207.207.210.36
443
ok






not supported
ok
amplify.app
207.207.210.36
443
ok







not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=amplify.app


2CN=YR2, O=Let's Encrypt, C=US


3CN=Root YR, O=ISRG, C=US


amplify.app
207.207.210.50
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

amplify.app
207.207.210.50
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=amplify.app


2CN=YR2, O=Let's Encrypt, C=US


3CN=Root YR, O=ISRG, C=US


www.godaddy.com
www.godaddy.com
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
supported
ok

www.godaddy.com
www.godaddy.com
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2


www.amplify.app
207.207.210.36
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.amplify.app
207.207.210.36
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
no Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
no Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=amplify.app


2CN=YR2, O=Let's Encrypt, C=US


3CN=Root YR, O=ISRG, C=US


www.amplify.app
207.207.210.50
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.amplify.app
207.207.210.50
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=amplify.app


2CN=YR2, O=Let's Encrypt, C=US


3CN=Root YR, O=ISRG, C=US

 

9. Certificates

1.
1.
CN=amplify.app
10.07.2026
08.10.2026
expires in 33 days
*.amplify.app, amplify.app - 2 entries
1.
1.
CN=amplify.app
10.07.2026

08.10.2026
expires in 33 days


*.amplify.app, amplify.app - 2 entries

KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:052DE7A997BD31BD5F6A866DE81B990DAC49
Thumbprint:73DB81A020F492CD20EFBDB761228FDF748D4076
SHA256 / Certificate:9VhPn2UiZEONG43BVNzB1v1M+EP5/qei2SvtVtDwZi4=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8ebaf7f4f84f9cc95051a19d21dfb5a8f7292458a634b4b0f26c476553c5f516
SHA256 hex / Subject Public Key Information (SPKI):8ebaf7f4f84f9cc95051a19d21dfb5a8f7292458a634b4b0f26c476553c5f516 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




2.
CN=amplify.app
10.07.2026
08.10.2026
expires in 33 days
*.amplify.app, amplify.app - 2 entries

2.
CN=amplify.app
10.07.2026

08.10.2026
expires in 33 days


*.amplify.app, amplify.app - 2 entries

KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:052DE7A997BD31BD5F6A866DE81B990DAC49
Thumbprint:73DB81A020F492CD20EFBDB761228FDF748D4076
SHA256 / Certificate:9VhPn2UiZEONG43BVNzB1v1M+EP5/qei2SvtVtDwZi4=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8ebaf7f4f84f9cc95051a19d21dfb5a8f7292458a634b4b0f26c476553c5f516
SHA256 hex / Subject Public Key Information (SPKI):8ebaf7f4f84f9cc95051a19d21dfb5a8f7292458a634b4b0f26c476553c5f516 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=YR2, O=Let's Encrypt, C=US
03.09.2025
03.09.2028
expires in 729 days


3.
CN=YR2, O=Let's Encrypt, C=US
03.09.2025

03.09.2028
expires in 729 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:4EBD24947E24D394802D84A52FD5B319
Thumbprint:2D74D6DFD96EEA55AD7BAAFA0D3C6552B2DADC37
SHA256 / Certificate:I4uFoAmcZblwR31XJPGh1HXOUFjP/k76hzOJm9uGPEc=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):9d637b3d27a9e570d07607b9ccadb80a70915c7af72afce12841b1b1da825fd1
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




4.
CN=YR2, O=Let's Encrypt, C=US
03.09.2025
03.09.2028
expires in 729 days


4.
CN=YR2, O=Let's Encrypt, C=US
03.09.2025

03.09.2028
expires in 729 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:4EBD24947E24D394802D84A52FD5B319
Thumbprint:2D74D6DFD96EEA55AD7BAAFA0D3C6552B2DADC37
SHA256 / Certificate:I4uFoAmcZblwR31XJPGh1HXOUFjP/k76hzOJm9uGPEc=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):9d637b3d27a9e570d07607b9ccadb80a70915c7af72afce12841b1b1da825fd1
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




5.
CN=Root YR, O=ISRG, C=US
13.05.2026
03.09.2032
expires in 2190 days


5.
CN=Root YR, O=ISRG, C=US
13.05.2026

03.09.2032
expires in 2190 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00F24B6D17F9D9AD7CB1C9FEA78782699F
Thumbprint:AB9D0263244DD0326EB67015705A667E79CFE998
SHA256 / Certificate:ByY50LFA1b/64WrZw/bMYIYEBiH1HuYabUaokVwHz3Y=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):7e4e8838a8add6295de7ae3b047d3aba3488ab95db0a0aa56d897a00d8618bcf
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




6.
CN=Root YR, O=ISRG, C=US
03.09.2025
03.09.2032
expires in 2190 days


6.
CN=Root YR, O=ISRG, C=US
03.09.2025

03.09.2032
expires in 2190 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00FAA6275DC258431D9766EC3045EF24AC
Thumbprint:18F47BAE342367CBBF120681E6721D6AADC386C7
SHA256 / Certificate:JwxktroarpSwdW6D2NsHMvW1NLzcVF1E4zTV3U0Q/sA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):7e4e8838a8add6295de7ae3b047d3aba3488ab95db0a0aa56d897a00d8618bcf
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




7.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3194 days


7.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3194 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





8.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3194 days


8.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3194 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025
03.11.2026
expires in 59 days
godaddy.com, *.godaddy.com - 2 entries
2.
1.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025

03.11.2026
expires in 59 days


godaddy.com, *.godaddy.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008A9E32C0A94C6F17
Thumbprint:9737161662860E245F364EA0346C95EF57E5CD92
SHA256 / Certificate:wDq+2IBlLTzl+IUVVXK+4UMNYz9ySflV4q0VqSq3NJA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613
SHA256 hex / Subject Public Key Information (SPKI):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025
03.11.2026
expires in 59 days
godaddy.com, *.godaddy.com - 2 entries

2.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025

03.11.2026
expires in 59 days


godaddy.com, *.godaddy.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008A9E32C0A94C6F17
Thumbprint:9737161662860E245F364EA0346C95EF57E5CD92
SHA256 / Certificate:wDq+2IBlLTzl+IUVVXK+4UMNYz9ySflV4q0VqSq3NJA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613
SHA256 hex / Subject Public Key Information (SPKI):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025
03.11.2026
expires in 59 days
godaddy.com, *.godaddy.com - 2 entries

3.
CN=*.godaddy.com, O=GoDaddy Inc., L=Tempe, S=Arizona, C=US
02.10.2025

03.11.2026
expires in 59 days


godaddy.com, *.godaddy.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008A9E32C0A94C6F17
Thumbprint:9737161662860E245F364EA0346C95EF57E5CD92
SHA256 / Certificate:wDq+2IBlLTzl+IUVVXK+4UMNYz9ySflV4q0VqSq3NJA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613
SHA256 hex / Subject Public Key Information (SPKI):f810ec56da91b54b8c7425017743a5185892d8f8c97488d2eada60ba9fffb613 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011
03.05.2031
expires in 1701 days


4.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011

03.05.2031
expires in 1701 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:07
Thumbprint:27AC9369FAF25207BB2627CEFACCBE4EF9C319B8
SHA256 / Certificate:lzpBJ2/9AeAnoqrUnjTDeEbT6Xb/amILZxLjODIEGqY=
SHA256 hex / Cert (DANE * 0 1):973a41276ffd01e027a2aad49e34c37846d3e976ff6a620b6712e33832041aa6
SHA256 hex / PublicKey (DANE * 1 1):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SHA256 hex / Subject Public Key Information (SPKI):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




5.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011
03.05.2031
expires in 1701 days


5.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011

03.05.2031
expires in 1701 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:07
Thumbprint:27AC9369FAF25207BB2627CEFACCBE4EF9C319B8
SHA256 / Certificate:lzpBJ2/9AeAnoqrUnjTDeEbT6Xb/amILZxLjODIEGqY=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SHA256 hex / Subject Public Key Information (SPKI):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




6.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011
03.05.2031
expires in 1701 days


6.
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011

03.05.2031
expires in 1701 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:07
Thumbprint:27AC9369FAF25207BB2627CEFACCBE4EF9C319B8
SHA256 / Certificate:lzpBJ2/9AeAnoqrUnjTDeEbT6Xb/amILZxLjODIEGqY=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SHA256 hex / Subject Public Key Information (SPKI):f11c3dd048f74edb7c45192b83e5980d2f67ec84b4ddb9396e33ff5173ed698f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




7.
CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
01.01.2014
30.05.2031
expires in 1728 days


7.
CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
01.01.2014

30.05.2031
expires in 1728 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:1BE715
Thumbprint:340B2880F446FCC04E59ED33F52B3D08D6242964
SHA256 / Certificate:Oi++kokeV/4F1XCH9I5zDxflpfU+9APWGOW3TXp+bss=
SHA256 hex / Cert (DANE * 0 1):3a2fbe92891e57fe05d57087f48e730f17e5a5f53ef403d618e5b74d7a7e6ecb
SHA256 hex / PublicKey (DANE * 1 1):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SHA256 hex / Subject Public Key Information (SPKI):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




8.
CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
01.09.2009
01.01.2038
expires in 4136 days


8.
CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
01.09.2009

01.01.2038
expires in 4136 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00
Thumbprint:47BEABC922EAE80E78783462A79F45C254FDE68B
SHA256 / Certificate:RRQLMkfrnMjFtPDXtTCR9zKSCJ5uWmPidJ3TrKkZjto=
SHA256 hex / Cert (DANE * 0 1):45140b3247eb9cc8c5b4f0d7b53091f73292089e6e5a63e2749dd3aca9198eda
SHA256 hex / PublicKey (DANE * 1 1):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SHA256 hex / Subject Public Key Information (SPKI):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





9.
CN=Go Daddy Root Certificate Authority - G2, OU=https://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011
03.05.2031
expires in 1701 days


9.
CN=Go Daddy Root Certificate Authority - G2, OU=https://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US
03.05.2011

03.05.2031
expires in 1701 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:2003
Thumbprint:841D4A9FC9D3B2F0CA5FAB95525AB2066ACF8322
SHA256 / Certificate:m/WJZ1RZlhlFEtthdxUa/plwauo9o2/u562fizwFB8s=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SHA256 hex / Subject Public Key Information (SPKI):2a8f2d8af0eb123898f74c866ac3fa669054e23c17bc7a95bd0234192dc635d0
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.godaddy.com/
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




10.
OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US
29.06.2004
29.06.2034
expires in 2854 days


10.
OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US
29.06.2004

29.06.2034
expires in 2854 days




KeyalgorithmRSA encryption ( bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:00
Thumbprint:2796BAE63F1801E277261BA0D77770028F20EEE4
SHA256 / Certificate:w4Rr8kuek8pkJ0wOxnwezF4CT/ys0tdAGTUOgf5UauQ=
SHA256 hex / Cert (DANE * 0 1):c3846bf24b9e93ca64274c0ec67c1ecc5e024ffcacd2d74019350e81fe546ae4
SHA256 hex / PublicKey (DANE * 1 1):5632d97bfa775bf3c99ddea52fc2553410864016729c52dd6524c8a9c3b4489f
SHA256 hex / Subject Public Key Information (SPKI):5632d97bfa775bf3c99ddea52fc2553410864016729c52dd6524c8a9c3b4489f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





11.
OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US
29.06.2004
29.06.2034
expires in 2854 days


11.
OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US
29.06.2004

29.06.2034
expires in 2854 days




KeyalgorithmRSA encryption ( bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:00
Thumbprint:2796BAE63F1801E277261BA0D77770028F20EEE4
SHA256 / Certificate:w4Rr8kuek8pkJ0wOxnwezF4CT/ys0tdAGTUOgf5UauQ=
SHA256 hex / Cert (DANE * 0 1):c3846bf24b9e93ca64274c0ec67c1ecc5e024ffcacd2d74019350e81fe546ae4
SHA256 hex / PublicKey (DANE * 1 1):5632d97bfa775bf3c99ddea52fc2553410864016729c52dd6524c8a9c3b4489f
SHA256 hex / Subject Public Key Information (SPKI):5632d97bfa775bf3c99ddea52fc2553410864016729c52dd6524c8a9c3b4489f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=YR2, O=Let's Encrypt, C=US
0
1
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
16242291507
leaf cert
CN=YR2, O=Let's Encrypt, C=US
2026-07-10 18:06:30
2026-10-08 18:06:29
*.amplify.app, amplify.app - 2 entries


 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found

 

11. Html-Content - Entries

No Html-Content entries found. Only checked if https + status 200/401/403/404

 

12. Html-Parsing via https://validator.w3.org/nu/


No https result http status 200 and Content-Type text/html or text/xml found, no Html-Parsing - Check

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, salvador.ns.porkbun.com

 

QNr.DomainTypeNS used
1
com
NS
k.root-servers.net (2001:7fd::1)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
curitiba.ns.porkbun.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns-1328.awsdns-38.org, ns-1982.awsdns-55.co.uk, ns-199.awsdns-24.com, ns-586.awsdns-09.net

Answer: ns-199.awsdns-24.com
205.251.192.199, 2600:9000:5300:c700::1
3
fortaleza.ns.porkbun.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns-1328.awsdns-38.org, ns-1982.awsdns-55.co.uk, ns-199.awsdns-24.com, ns-586.awsdns-09.net

Answer: ns-199.awsdns-24.com
205.251.192.199, 2600:9000:5300:c700::1
4
maceio.ns.porkbun.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns-1328.awsdns-38.org, ns-1982.awsdns-55.co.uk, ns-199.awsdns-24.com, ns-586.awsdns-09.net

Answer: ns-199.awsdns-24.com
205.251.192.199, 2600:9000:5300:c700::1
5
salvador.ns.porkbun.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns-1328.awsdns-38.org, ns-1982.awsdns-55.co.uk, ns-199.awsdns-24.com, ns-586.awsdns-09.net

Answer: ns-199.awsdns-24.com
205.251.192.199, 2600:9000:5300:c700::1
6
org
NS
k.root-servers.net (2001:7fd::1)

Answer: a0.org.afilias-nst.info, a2.org.afilias-nst.info, b0.org.afilias-nst.org, b2.org.afilias-nst.org, c0.org.afilias-nst.info, d0.org.afilias-nst.org
7
ns-1328.awsdns-38.org
NS
a0.org.afilias-nst.info (2001:500:e::1)

Answer: g-ns-1065.awsdns-38.org, g-ns-1638.awsdns-38.org, g-ns-166.awsdns-38.org, g-ns-744.awsdns-38.org

Answer: g-ns-1065.awsdns-38.org
205.251.196.41, 2600:9000:5304:2900::1

Answer: g-ns-1638.awsdns-38.org
205.251.198.102, 2600:9000:5306:6600::1

Answer: g-ns-166.awsdns-38.org
205.251.192.166, 2600:9000:5300:a600::1

Answer: g-ns-744.awsdns-38.org
205.251.194.232, 2600:9000:5302:e800::1
8
uk
NS
b.root-servers.net (2001:500:200::b)

Answer: dns1.nic.uk, dns2.nic.uk, dns3.nic.uk, dns4.nic.uk, nsa.nic.uk, nsb.nic.uk, nsc.nic.uk, nsd.nic.uk
9
ns-1982.awsdns-55.co.uk
NS
dns1.nic.uk (2a01:618:400::1)

Answer: g-ns-1530.awsdns-55.co.uk, g-ns-1851.awsdns-55.co.uk, g-ns-375.awsdns-55.co.uk, g-ns-951.awsdns-55.co.uk

Answer: g-ns-1530.awsdns-55.co.uk
205.251.197.250, 2600:9000:5305:fa00::1

Answer: g-ns-1851.awsdns-55.co.uk
205.251.199.59, 2600:9000:5307:3b00::1

Answer: g-ns-375.awsdns-55.co.uk
205.251.193.119, 2600:9000:5301:7700::1

Answer: g-ns-951.awsdns-55.co.uk
205.251.195.183, 2600:9000:5303:b700::1
10
net
NS
e.root-servers.net (2001:500:a8::e)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
11
ns-586.awsdns-09.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: g-ns-1353.awsdns-09.net, g-ns-1929.awsdns-09.net, g-ns-458.awsdns-09.net, g-ns-779.awsdns-09.net

Answer: g-ns-1353.awsdns-09.net
205.251.197.73, 2600:9000:5305:4900::1

Answer: g-ns-1929.awsdns-09.net
205.251.199.137, 2600:9000:5307:8900::1

Answer: g-ns-458.awsdns-09.net
205.251.193.202, 2600:9000:5301:ca00::1

Answer: g-ns-779.awsdns-09.net
205.251.195.11, 2600:9000:5303:b00::1
12
ns-1328.awsdns-38.org: 205.251.197.48
A
g-ns-1065.awsdns-38.org (2600:9000:5304:2900::1)
13
ns-1328.awsdns-38.org: 2600:9000:5305:3000::1
AAAA
g-ns-1065.awsdns-38.org (2600:9000:5304:2900::1)
14
ns-1982.awsdns-55.co.uk: 205.251.199.190
A
g-ns-1530.awsdns-55.co.uk (2600:9000:5305:fa00::1)
15
ns-1982.awsdns-55.co.uk: 2600:9000:5307:be00::1
AAAA
g-ns-1530.awsdns-55.co.uk (2600:9000:5305:fa00::1)
16
ns-586.awsdns-09.net: 205.251.194.74
A
g-ns-1353.awsdns-09.net (2600:9000:5305:4900::1)
17
ns-586.awsdns-09.net: 2600:9000:5302:4a00::1
AAAA
g-ns-1353.awsdns-09.net (2600:9000:5305:4900::1)
18
curitiba.ns.porkbun.com: No A record found
A
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
19
curitiba.ns.porkbun.com: No AAAA record found
AAAA
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
20
fortaleza.ns.porkbun.com: No A record found
A
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
21
fortaleza.ns.porkbun.com: No AAAA record found
AAAA
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
22
maceio.ns.porkbun.com: No A record found
A
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
23
maceio.ns.porkbun.com: No AAAA record found
AAAA
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
24
salvador.ns.porkbun.com: No A record found
A
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)
25
salvador.ns.porkbun.com: No AAAA record found
AAAA
ns-1328.awsdns-38.org (2600:9000:5305:3000::1)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
uixie.porkbun.com
0

no CAA entry found
1
0
www.amplify.app



1
0
amplify.app
0

no CAA entry found
1
0
porkbun.com
9
issuewild
amazon.com
1
0

9
issuewild
godaddy.com
1
0

9
issuewild
letsencrypt.org
1
0

9
issuewild
sectigo.com
1
0

9
issuewild
wordpress.com
1
0
app
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
amplify.app
441ebb1370ffbe75255117178512fd6bc78b1ed6
ok
1
0
amplify.app
v=spf1 mx include:_spf.porkbun.com ~all
ok
1
0
www.amplify.app


1
0
uixie.porkbun.com

ok
1
0
_acme-challenge.amplify.app
0VZCcmj8I0I4SxxASlZRWwFHShL8TnWPVzhu8SyYwF4
looks good, correct length, correct characters
1
0
_acme-challenge.amplify.app
YdqkG5bubkiV-eki74zvCLyltA5I5sT882FM-95tUEE
looks good, correct length, correct characters
1
0
_acme-challenge.www.amplify.app


1
0
_acme-challenge.uixie.porkbun.com

missing entry or wrong length
1
0
_acme-challenge.amplify.app.amplify.app


1
0
_acme-challenge.www.amplify.app.amplify.app


1
0
_acme-challenge.www.amplify.app.www.amplify.app


1
0
_acme-challenge.uixie.porkbun.com.uixie.porkbun.com

perhaps wrong
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

amplify.app
1
fwd1.porkbun.com
02ok

A


44.226.226.6
01ok

CNAME


00ok
MX

amplify.app
1
fwd2.porkbun.com
02ok

A


52.10.201.111
01ok

CNAME


00ok
_mta-sts
CNAME
_mta-sts.amplify.app

uixie.porkbun.com
ok
SPF
TXT
amplify.app

v=spf1 mx include:_spf.porkbun.com ~all
ok

MX
amplify.app

fwd1.porkbun.com
ok

MX-A
fwd1.porkbun.com

44.226.226.6
8192Duplicated ipv4 found.

MX
amplify.app

fwd2.porkbun.com
ok

MX-A
fwd2.porkbun.com

52.10.201.111
8192Duplicated ipv4 found.

TXT
_spf.porkbun.com

v=spf1 a:fwd1.porkbun.com a:fwd2.porkbun.com a:fwd3.porkbun.com a:hognose1.porkbun.com a:transactional1.porkbun.com a:smtp-test.porkbun.com ~all
ok

A
fwd1.porkbun.com

44.226.226.6
8192Duplicated ipv4 found.

A
fwd2.porkbun.com

52.10.201.111
8192Duplicated ipv4 found.

A
fwd3.porkbun.com

34.208.219.23
ok

A
fwd3.porkbun.com

44.233.25.175
ok

A
fwd3.porkbun.com

52.38.101.121
ok

AAAA
fwd3.porkbun.com

2600:1f14:35:3001:5163:e986:74de:4188
ok

AAAA
fwd3.porkbun.com

2600:1f14:35:3000:62e5:fe9f:70bd:2092
ok

AAAA
fwd3.porkbun.com

2600:1f14:35:3002:4017:62c9:6105:ace4
ok

A
hognose1.porkbun.com

35.82.102.206
ok

A
transactional1.porkbun.com

54.71.62.227
ok

A
smtp-test.porkbun.com

35.87.94.189
ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
amplify.app
207.207.210.36
443
2 Ciphers245.02 sec
0 without, 2 FS
100.00 %
amplify.app
207.207.210.50
443
3 Ciphers94.72 sec
0 without, 3 FS
100.00 %
www.amplify.app
207.207.210.36
443
3 Ciphers96.41 sec
0 without, 3 FS
100.00 %
www.amplify.app
207.207.210.50
443
3 Ciphers95.25 sec
0 without, 3 FS
100.00 %
Complete

4
11 Ciphers
2.75 Ciphers/Check
531.39 sec132.85 sec/Check
0 without, 11 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
amplify.app
207.207.210.36
443
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
2 Ciphers, 245.02 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD


207.207.210.50
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 94.72 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD

www.amplify.app
207.207.210.36
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 96.41 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD


207.207.210.50
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 95.25 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=a68d01fb-2e6b-4e10-908c-347eb72ece01

 

Last Result: https://check-your-website.server-daten.de/?q=amplify.app - 2026-08-19 17:04:09

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=amplify.app" target="_blank">Check this Site: amplify.app</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=amplify.app