Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

A

 

Top config

 

Checked:
01.05.2026 18:34:30

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
netlify.ai
A
3.33.186.135
Montreal/Quebec/Canada (CA) - Amazon.com, Inc.
Hostname: afa7f374f51cc8991.awsglobalaccelerator.com
yes
1
0

A
15.197.167.90
Montreal/Quebec/Canada (CA) - Amazon.com, Inc.
Hostname: afa7f374f51cc8991.awsglobalaccelerator.com
yes
1
0

AAAA

yes


www.netlify.ai
A
3.33.186.135
Montreal/Quebec/Canada (CA) - Amazon.com, Inc.
Hostname: afa7f374f51cc8991.awsglobalaccelerator.com
yes
1
0

A
15.197.167.90
Montreal/Quebec/Canada (CA) - Amazon.com, Inc.
Hostname: afa7f374f51cc8991.awsglobalaccelerator.com
yes
1
0

AAAA

yes


*.netlify.ai
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 54393, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 22.05.2026, 00:00:00 +, Signature-Inception: 01.05.2026, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: ai

ai
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 3799, DigestType 2 and Digest ioAw1GYa5vz0FzSWgqwFhkg3EALnDnF+TPLxH4NUM4U=






1 RRSIG RR to validate DS RR found






RRSIG-Owner ai., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 14.05.2026, 05:00:00 +, Signature-Inception: 01.05.2026, 04:00:00 +, KeyTag 54393, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 54393 used to validate the DS RRSet in the parent zone






4 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 3799, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 4644, Flags 256






Public Key with Algorithm 8, KeyTag 6279, Flags 256






Public Key with Algorithm 8, KeyTag 44137, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner ai., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 22.05.2026, 15:45:30 +, Signature-Inception: 01.05.2026, 14:45:30 +, KeyTag 3799, Signer-Name: ai






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 3799 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 3799, DigestType 2 and Digest "ioAw1GYa5vz0FzSWgqwFhkg3EALnDnF+TPLxH4NUM4U=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: netlify.ai

netlify.ai
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "t0mq08lrliaogl2smur39ld23384g9b4" between the hashed NSEC3-owner "t0mnibevdhrlkd85s6nncbh3ngcetjdd" and the hashed NextOwner "t0nj3adi5e05re2gicnaiakc797s5o9c". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner t0mnibevdhrlkd85s6nncbh3ngcetjdd.ai., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.05.2026, 15:45:30 +, Signature-Inception: 01.05.2026, 14:45:30 +, KeyTag 6279, Signer-Name: ai






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "58cj07tk4r4uuu6m10c83sia655jfil6" as Owner. That's the Hash of "ai" with the NextHashedOwnerName "58e5j7rfab1b4k4bbvck7i2eta2o1qkp". So that domain name is the Closest Encloser of "netlify.ai". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner 58cj07tk4r4uuu6m10c83sia655jfil6.ai., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.05.2026, 16:27:39 +, Signature-Inception: 01.05.2026, 15:27:39 +, KeyTag 6279, Signer-Name: ai






0 DNSKEY RR found









Zone: www.netlify.ai

www.netlify.ai
0 DS RR in the parent zone found

 

3. Name Servers

DomainNameserverNS-IP
www.netlify.ai
  dns1.p01.nsone.net

netlify.ai
  dns1.p01.nsone.net / ns1dns-mrs01-11129-5323-0
198.51.44.1
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:1
New York/United States (US) - NSONE Inc


  dns1.p07.nsone.net / ns1dns-mrs01-1269-5321-0
198.51.44.7
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:7:0:1
New York/United States (US) - NSONE Inc


  dns2.p07.nsone.net / ns1dns-fra03-3d7dd357-5738-4722-93d0-420ada354c04-5301-0
198.51.45.7
Kimball/Nebraska/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:7::2
Amsterdam/North Holland/The Netherlands (NL) - NS1


  dns3.p07.nsone.net / ns1dns-mrs01-11129-5303-0
198.51.44.71
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:7:0:3
New York/United States (US) - NSONE Inc


  dns4.p07.nsone.net / ns1dns-fra03-d166bc23-3639-4869-ba28-ba5cfb012fa2-5331-0
198.51.45.71
Kimball/Nebraska/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:7::4
Amsterdam/North Holland/The Netherlands (NL) - NS1

ai
  v0n0.nic.ai / app21.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  v0n1.nic.ai / app24.lax1.hosts.meta.redstone.afilias-nst.info-1633102198


  v0n2.nic.ai / app21.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  v0n3.nic.ai / app4.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  v2n0.nic.ai / FRA4


  v2n1.nic.ai / FRA4

 

4. SOA-Entries


Domain:ai
Zone-Name:ai
Primary:v0n0.nic.ai
Mail:hostmaster.donuts.email
Serial:1777652811
Refresh:7200
Retry:900
Expire:1209600
TTL:3600
num Entries:6


Domain:netlify.ai
Zone-Name:netlify.ai
Primary:dns1.p01.nsone.net
Mail:domains+netlify.netlify.com
Serial:1776719615
Refresh:43200
Retry:7200
Expire:1209600
TTL:3600
num Entries:10


Domain:www.netlify.ai
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


5. Screenshots

Startaddress: https://netlify.ai/, address used: https://netlify.ai/, Screenshot created 2026-05-01 18:38:43 +00:0

 

Mobil (412px x 732px)

 

692 milliseconds

 

Screenshot mobile - https://netlify.ai/
Mobil + Landscape (732px x 412px)

 

697 milliseconds

 

Screenshot mobile landscape - https://netlify.ai/
Screen (1280px x 1680px)

 

792 milliseconds

 

Screenshot Desktop - https://netlify.ai/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport408732
content Size4081937

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://netlify.ai/
3.33.186.135
301
https://netlify.ai/
Html is minified: 100.00 %
0.033
A
Date: Fri, 01 May 2026 16:35:42 GMT
Location: https://netlify.ai/
Server: Netlify
X-Nf-Request-Id: 01KQJ6ARQQWJZKGG6H8238PX48
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• http://netlify.ai/
15.197.167.90
301
https://netlify.ai/
Html is minified: 100.00 %
0.033
A
Date: Fri, 01 May 2026 16:35:42 GMT
Location: https://netlify.ai/
Server: Netlify
X-Nf-Request-Id: 01KQJ6ARP7ZV8SEXYY04CV3WCF
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• http://www.netlify.ai/
3.33.186.135
301
https://www.netlify.ai/
Html is minified: 100.00 %
0.020
A
Date: Fri, 01 May 2026 16:35:43 GMT
Location: https://www.netlify.ai/
Server: Netlify
X-Nf-Request-Id: 01KQJ6ARYN0E522V65WYG6JDHA
Content-Type: text/plain; charset=utf-8
Content-Length: 38

• http://www.netlify.ai/
15.197.167.90
301
https://www.netlify.ai/
Html is minified: 100.00 %
0.157
A
Date: Fri, 01 May 2026 16:35:43 GMT
Location: https://www.netlify.ai/
Server: Netlify
X-Nf-Request-Id: 01KQJ6ARS0EQ8MJVJEB9SY4H3S
Content-Type: text/plain; charset=utf-8
Content-Length: 38

• https://www.netlify.ai/
3.33.186.135
301
https://netlify.ai/
Html is minified: 100.00 %
2.053
A
Date: Fri, 01 May 2026 16:35:53 GMT
Location: https://netlify.ai/
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KQJ6B34NCB4P05FM7REJ0TGP
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• https://www.netlify.ai/
15.197.167.90
301
https://netlify.ai/
Html is minified: 100.00 %
2.103
A
Date: Fri, 01 May 2026 16:35:50 GMT
Location: https://netlify.ai/
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KQJ6B04423KFJA2CXH7EHHZV
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• https://netlify.ai/
3.33.186.135 br used - 3732 / 11719 - 68.15 %
Inline-JavaScript (∑/total): 1/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 102.80 %
Other inline scripts (∑/total): 0/0
2.160
A
Accept-Ranges: bytes
Age: 45283
Cache-Control: public, must-revalidate, max-age=0
Cache-Status: "Netlify Edge"; hit,"Netlify Edge"; hit;detail=p1
Date: Fri, 01 May 2026 16:35:47 GMT
ETag: W/"4263e223876cdb1a0801690bfa72d493-ssl-df"
Server: Netlify
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding,Accept
X-Nf-Request-Id: 01KQJ6AWXGAVNH1YF76RWSKJG8
Transfer-Encoding: chunked
Content-Encoding: br
Content-Type: text/html; charset=UTF-8
Content-Length: 3732

• https://netlify.ai/
15.197.167.90 br used - 3732 / 11719 - 68.15 %
Inline-JavaScript (∑/total): 1/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 102.80 %
Other inline scripts (∑/total): 0/0
2.454
A
Accept-Ranges: bytes
Age: 45279
Cache-Control: public, must-revalidate, max-age=0
Cache-Status: "Netlify Edge"; hit,"Netlify Edge"; hit;detail=p1
Date: Fri, 01 May 2026 16:35:43 GMT
ETag: W/"4263e223876cdb1a0801690bfa72d493-ssl-df"
Server: Netlify
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding,Accept
X-Nf-Request-Id: 01KQJ6AS165CGJES7BA2ZVM0MD
Transfer-Encoding: chunked
Content-Encoding: br
Content-Type: text/html; charset=UTF-8
Content-Length: 3732

• http://netlify.ai/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
3.33.186.135
404


0.200
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Fri, 01 May 2026 16:35:56 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6B67TNNRDGHZ5XK5MQXTB
Content-Length: 0

• http://netlify.ai/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
15.197.167.90
404


0.127
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Fri, 01 May 2026 16:35:56 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6B62ZTCF0BYARRK23MBD6
Content-Length: 0

• http://www.netlify.ai/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
3.33.186.135
404


0.120
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Fri, 01 May 2026 16:35:57 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6B6PFVMQ6FZEXNZ92Z1G7
Content-Length: 0

• http://www.netlify.ai/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
15.197.167.90
404


0.197
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Fri, 01 May 2026 16:35:57 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6B6F7NA4W5V16GB40BYMX
Content-Length: 0

• https://3.33.186.135/
3.33.186.135
404


2.070
N
Not Found
Certificate error: RemoteCertificateNameMismatch
Date: Fri, 01 May 2026 16:36:00 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6BA0QGXCX74PRGNA7SYH6
Content-Length: 0

• https://15.197.167.90/
15.197.167.90
404


2.067
N
Not Found
Certificate error: RemoteCertificateNameMismatch
Date: Fri, 01 May 2026 16:35:57 GMT
Server: Netlify
X-Nf-Request-Id: 01KQJ6B70QQ5DEE239JHE6V2RM
Content-Length: 0

 

7. Comments


1. General Results, most used to calculate the result

Aname "netlify.ai" is domain, public suffix is ".ai", top-level-domain is ".ai", top-level-domain-type is "country-code", Country is Anguilla, tld-manager is "Government of Anguilla", num .ai-domains preloaded: 380 (complete: 276475)
AGood: All ip addresses are public addresses
AGood: Minimal 2 ip addresses per domain name found: netlify.ai has 2 different ip addresses (authoritative).
AGood: Minimal 2 ip addresses per domain name found: www.netlify.ai has 2 different ip addresses (authoritative).
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: netlify.ai has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.netlify.ai has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
AGood: destination is https
AGood - only one version with Http-Status 200
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
Ahttp://netlify.ai/ 3.33.186.135
301
https://netlify.ai/
Correct redirect http - https with the same domain name
Ahttp://netlify.ai/ 15.197.167.90
301
https://netlify.ai/
Correct redirect http - https with the same domain name
Ahttp://www.netlify.ai/ 3.33.186.135
301
https://www.netlify.ai/
Correct redirect http - https with the same domain name
Ahttp://www.netlify.ai/ 15.197.167.90
301
https://www.netlify.ai/
Correct redirect http - https with the same domain name
Mhttps://3.33.186.135/ 3.33.186.135
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://15.197.167.90/ 15.197.167.90
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://3.33.186.135/ 3.33.186.135
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://15.197.167.90/ 15.197.167.90
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
AGood: More then one ip address per domain name found, checking all ip addresses the same http status and the same certificate found: Domain netlify.ai, 2 ip addresses.
AGood: More then one ip address per domain name found, checking all ip addresses the same http status and the same certificate found: Domain www.netlify.ai, 2 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain netlify.ai, 2 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain www.netlify.ai, 2 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.netlify.ai

2. Header-Checks

Fnetlify.ai 3.33.186.135
Content-Security-Policy
Critical: Missing Header:
Fnetlify.ai 3.33.186.135
X-Content-Type-Options
Critical: Missing Header:
Fnetlify.ai 3.33.186.135
Referrer-Policy
Critical: Missing Header:
Fnetlify.ai 3.33.186.135
Permissions-Policy
Critical: Missing Header:
Bnetlify.ai 3.33.186.135
Cross-Origin-Embedder-Policy
Info: Missing Header
Bnetlify.ai 3.33.186.135
Cross-Origin-Opener-Policy
Info: Missing Header
Bnetlify.ai 3.33.186.135
Cross-Origin-Resource-Policy
Info: Missing Header
Fnetlify.ai 15.197.167.90
Content-Security-Policy
Critical: Missing Header:
Fnetlify.ai 15.197.167.90
X-Content-Type-Options
Critical: Missing Header:
Fnetlify.ai 15.197.167.90
Referrer-Policy
Critical: Missing Header:
Fnetlify.ai 15.197.167.90
Permissions-Policy
Critical: Missing Header:
Bnetlify.ai 15.197.167.90
Cross-Origin-Embedder-Policy
Info: Missing Header
Bnetlify.ai 15.197.167.90
Cross-Origin-Opener-Policy
Info: Missing Header
Bnetlify.ai 15.197.167.90
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 14 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 5 Name Servers.
AInfo:: 14 Queries complete, 14 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AGood: Some ip addresses of name servers found with the minimum of two DNS Queries. One to find the TLD-Zone, one to ask the TLD-Zone.dns1.p01.nsone.net (198.51.44.1, 2620:4d:4000:6259:7:1:0:1), dns1.p01.nsone.net (198.51.44.1, 2620:4d:4000:6259:7:1:0:1)
AGood (1 - 3.0):: An average of 2.8 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 5 different Name Servers found: dns1.p01.nsone.net, dns1.p07.nsone.net, dns2.p07.nsone.net, dns3.p07.nsone.net, dns4.p07.nsone.net, 4 Name Servers included in Delegation: dns1.p07.nsone.net, dns2.p07.nsone.net, dns3.p07.nsone.net, dns4.p07.nsone.net, 4 Name Servers included in 1 Zone definitions: dns1.p07.nsone.net, dns2.p07.nsone.net, dns3.p07.nsone.net, dns4.p07.nsone.net, 1 Name Servers listed in SOA.Primary: dns1.p01.nsone.net.
AGood: Only one SOA.Primary Name Server found.: dns1.p01.nsone.net.
Error: SOA.Primary Name Server not included in the delegation set.: dns1.p01.nsone.net.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: dns1.p07.nsone.net, dns2.p07.nsone.net, dns3.p07.nsone.net, dns4.p07.nsone.net
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 5 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 5 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 5 Name Servers, 1 Top Level Domain: net
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: nsone.net
AGood: Name servers with different Country locations found: 5 Name Servers, 2 Countries: NL, US
AInfo: Ipv4-Subnet-list: 5 Name Servers, 1 different subnets (first Byte): 198., 1 different subnets (first two Bytes): 198.51., 2 different subnets (first three Bytes): 198.51.44., 198.51.45.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 5 Name Servers with IPv6, 2 different subnets (first block): 2620:, 2a00:, 2 different subnets (first two blocks): 2620:004d:, 2a00:edc0:, 2 different subnets (first three blocks): 2620:004d:4000:, 2a00:edc0:6259:, 2 different subnets (first four blocks): 2620:004d:4000:6259:, 2a00:edc0:6259:0007:
AGood: Name Server IPv6 addresses from different subnets found.
AInfo: Nameserver mit different domain names found. May be a problem with DNS-Updates
AGood: Nameserver supports TCP connections: 10 good Nameserver
AGood: Nameserver supports Echo Capitalization: 10 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 10 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 10 good Nameserver
Nameserver doesn't pass all EDNS-Checks: dns1.p01.nsone.net: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: v2n1.nic.ai: OP100: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. FLAGS: ok. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. V1DNSSEC: ok. NSID: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found (FRA4). COOKIE: ok. CLIENTSUBNET: ok.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
https://netlify.ai/ 3.33.186.135
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://netlify.ai/ 15.197.167.90
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
AGood: All CSS / JavaScript files are sent compressed (gzip, deflate, br checked). That reduces the content of the files. 4 external CSS / JavaScript files found
AGood: All svg-Images greater 1024 Bytes without internal compression are compressed. Svg is an Xml-Application, so Compression reduces the size of the file. 2 images (type image/svg+xml, image/x-icon, image/vnd.microsoft.icon) found with compression.
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 0 external CSS / JavaScript files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 4 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 4 complete.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 0 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 2 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 2 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: All img-elements have a valid alt-attribute.: 2 img-elements found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://3.33.186.135/ 3.33.186.135
404
2.070 seconds
Warning: 404 needs more then one second
https://15.197.167.90/ 15.197.167.90
404
2.067 seconds
Warning: 404 needs more then one second
ADuration: 258327 milliseconds, 258.327 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
netlify.ai
3.33.186.135
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
netlify.ai
3.33.186.135
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=netlify.ai


2CN=E7, O=Let's Encrypt, C=US


netlify.ai
15.197.167.90
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

netlify.ai
15.197.167.90
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=netlify.ai


2CN=E7, O=Let's Encrypt, C=US


www.netlify.ai
3.33.186.135
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.netlify.ai
3.33.186.135
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=netlify.ai


2CN=E7, O=Let's Encrypt, C=US


www.netlify.ai
15.197.167.90
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.netlify.ai
15.197.167.90
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=netlify.ai


2CN=E7, O=Let's Encrypt, C=US


3.33.186.135
3.33.186.135
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

3.33.186.135
3.33.186.135
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US


15.197.167.90
15.197.167.90
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

15.197.167.90
15.197.167.90
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US

 

9. Certificates

1.
1.
CN=netlify.ai
20.04.2026
19.07.2026 22:39:32
2 days expired
*.netlify.ai, netlify.ai - 2 entries
1.
1.
CN=netlify.ai
20.04.2026

19.07.2026
2 days expired


*.netlify.ai, netlify.ai - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:ECDSA SHA384
Serial Number:055029330AC1408457DC019B215406971A80
Thumbprint:F65C79CD0D1261D91C803FDA69C2F8EE4BE4F2BA
SHA256 / Certificate:WAU/lPlfmeLgj96GleIEwmu4oBuYPTbeKBSvhKh7V/E=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):89b9bdecb08ece224d8fe2020abadd6f56221e27f0a98487fc29cd669468c0a6
SHA256 hex / Subject Public Key Information (SPKI):89b9bdecb08ece224d8fe2020abadd6f56221e27f0a98487fc29cd669468c0a6 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




2.
CN=E7, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 235 days


2.
CN=E7, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 235 days




KeyalgorithmEC Public Key (384 bit, secp384r1)
Signatur:SHA256 With RSA-Encryption
Serial Number:00AA75F1E62B8F0A220966D38BBFD4BAA1
Thumbprint:3B73C17E3DF87CF3AA77F1389219EB5EDD519E7F
SHA256 / Certificate:rrH9dBDoO8lvXaPGp8LBu4NtH6XLhucIUViQ5Ciodws=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):cbbc559b44d524d6a132bdac672744da3407f12aae5d5f722c5f6c7913871c75
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3240 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3240 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
16.02.2026
20.03.2027
expires in 242 days
*.netlify.app, netlify.app - 2 entries
2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
16.02.2026

20.03.2027
expires in 242 days


*.netlify.app, netlify.app - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CD5D0AFB0611B5BD9D692535C0CA7C4
Thumbprint:34CFA16924C8272403C77CE7F2A18C864AEB8BFA
SHA256 / Certificate:vDqBNMIahC5k6jTUiIJt0rpQ9Zo7y67R5rcaQkLeFHg=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb
SHA256 hex / Subject Public Key Information (SPKI):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




2.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
16.02.2026
20.03.2027
expires in 242 days
*.netlify.app, netlify.app - 2 entries

2.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
16.02.2026

20.03.2027
expires in 242 days


*.netlify.app, netlify.app - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CD5D0AFB0611B5BD9D692535C0CA7C4
Thumbprint:34CFA16924C8272403C77CE7F2A18C864AEB8BFA
SHA256 / Certificate:vDqBNMIahC5k6jTUiIJt0rpQ9Zo7y67R5rcaQkLeFHg=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb
SHA256 hex / Subject Public Key Information (SPKI):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021
30.03.2031
expires in 1713 days


3.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021

30.03.2031
expires in 1713 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CF5BD062B5602F47AB8502C23CCF066
Thumbprint:1B511ABEAD59C6CE207077C0BF0E0043B1382612
SHA256 / Certificate:yAJfn8Zf38lbPKjMeGe5pYe1J3lzlXkXRj/IE9C2Jak=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):59e738e674221702af1edb87c5200c1a4b75f64fae3d2c3d265124c61bd83c79
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021
30.03.2031
expires in 1713 days


4.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021

30.03.2031
expires in 1713 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CF5BD062B5602F47AB8502C23CCF066
Thumbprint:1B511ABEAD59C6CE207077C0BF0E0043B1382612
SHA256 / Certificate:yAJfn8Zf38lbPKjMeGe5pYe1J3lzlXkXRj/IE9C2Jak=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):59e738e674221702af1edb87c5200c1a4b75f64fae3d2c3d265124c61bd83c79
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
29.10.2024
09.11.2031
expires in 1937 days


5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
29.10.2024

09.11.2031
expires in 1937 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0E7D75235CA83761577F4CCD24CD6D1D
Thumbprint:B7402517EEAAC80AB04681186E8247BD7851CD0A
SHA256 / Certificate:oNYJp+PENOh4qaHBvQZbjc8zqn7+4bEbx1zOXloEIIA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.cn
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013
15.01.2038
expires in 4196 days


6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013

15.01.2038
expires in 4196 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:033AF1E6A711A9A0BB2864B11D09FAE5
Thumbprint:DF3C24F9BFD666761B268073FE06D1CC8D4F82A4
SHA256 / Certificate:yzzLt2Ax5eATj43TmiP53kf/w15DwRRM6ifUalqxy18=
SHA256 hex / Cert (DANE * 0 1):cb3ccbb76031e5e0138f8dd39a23f9de47ffc35e43c1144cea27d46a5ab1cb5f
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





7.
CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006
10.11.2031
expires in 1938 days


7.
CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006

10.11.2031
expires in 1938 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:02AC5C266A0B409B8F0B79F2AE462577
Thumbprint:5FB7EE0633E259DBAD0C4C9AE6D38F1A61C7DC25
SHA256 / Certificate:dDHl9MPBzkaQd08LYeBUQIg7qaAe0Aumq9eAbtOxGM8=
SHA256 hex / Cert (DANE * 0 1):7431e5f4c3c1ce4690774f0b61e05440883ba9a01ed00ba6abd7806ed3b118cf
SHA256 hex / PublicKey (DANE * 1 1):5a889647220e54d6bd8a16817224520bb5c78e58984bd570506388b9de0f075f
SHA256 hex / Subject Public Key Information (SPKI):5a889647220e54d6bd8a16817224520bb5c78e58984bd570506388b9de0f075f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=E7, O=Let's Encrypt, C=US
0
0
1
CN=R12, O=Let's Encrypt, C=US
0
0
1
CN=R13, O=Let's Encrypt, C=US
0
0
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
14591209001
leaf cert
CN=E7, O=Let's Encrypt, C=US
2026-04-20 20:39:33
2026-07-19 20:39:32
*.netlify.ai, netlify.ai - 2 entries


14040157319
leaf cert
CN=R12, O=Let's Encrypt, C=US
2026-03-06 14:56:32
2026-06-04 14:56:31
*.netlify.ai, netlify.ai - 2 entries


14031242890
leaf cert
CN=R13, O=Let's Encrypt, C=US
2026-03-05 18:52:38
2026-06-03 18:52:37
netlify.ai - 1 entries


 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://netlify.ai/
3.33.186.135
a

5

0


0
0
0


link
stylesheet
2
8,268 Bytes
0
1
1
1
0
0
-1

link
other
6
2,916 Bytes
0
3
0
0
0
0


meta
og
7
608,447 Bytes
0
2
0
0
0
0


meta
twitter
5
604,715 Bytes
0
1
0
0
0
0


meta
other
3

0


0
0
0


picture

1

0


0
0
0

https://netlify.ai/
15.197.167.90
a

5

0


0
0
0


link
stylesheet
2
8,268 Bytes
0
1
1
1
0
0
-1

link
other
6
2,916 Bytes
0
3
0
0
0
0


meta
og
7
608,447 Bytes
0
2
0
0
0
0


meta
twitter
5
604,715 Bytes
0
1
0
0
0
0


meta
other
3

0


0
0
0


picture

1

0


0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
3.33.186.135
a

/


1
ok















a

https://app.netlify.com/signup


1
ok















a

https://docs.netlify.com/


1
ok















a

https://docs.netlify.com/llms.txt


1
ok















a

https://www.netlify.com/privacy/


1
ok















link
apple-touch-icon
/favicon/apple-touch-icon.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 1417 Bytes






ETag: "576ea5968abd201e58dd095f66a7b741-ssl"



link
canonical
https://netlify.ai


1
ok















link
icon
/favicon/favicon.ico
200

1
ok
image/vnd.microsoft.icon
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 960/15086 Bytes






ETag: "f9d41dfe5c7e0365e0cb6cd184f9835d-ssl-df"



link
icon
/favicon/icon.svg
200

1
ok
image/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 539/1377 Bytes






ETag: "4d1aa2c3041559abf9a6103ccc2801fd-ssl-df"



link
modulepreload
/assets/index-CU4SVCHc.js


1
ok















link
modulepreload
/assets/main-VU2ojAWb.js


1
ok















link
stylesheet
/assets/styles-CZrjolp8.css
200

1
ok
text/css; charset=UTF-8
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 7332/45529 Bytes






ETag: "8ec88a3bb102327ef411354d7d5a72d6-ssl-df"

local SRI possible, possible hash-values:

 

sha256-clI+kNXNZ6yjB5LNVukJQKm/3x/TcOGFDObn6l1lnuY=
sha384-/mt6yLefs9wNty2+CWEPX0GgN4hZ3m6i26EcOLWGuyNDho1r6qRdY8Nk9NF+XsWf
sha512-SFOV2rpwXxrRqcggROAtW4Q7NAmHXqFkZmRAfAdR2t1h2HqZV//vIwEqN2TlbLI2O6aQcV8mx/IK8oJ+FMq+KA==

 

<link rel="stylesheet" href="/assets/styles-CZrjolp8.css" crossorigin="anonymous" integrity="sha256-clI+kNXNZ6yjB5LNVukJQKm/3x/TcOGFDObn6l1lnuY=" />



link
stylesheet
https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700&family=JetBrains+Mono:wght@400;500&display=swap
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Compression (gzip): 936/15080 Bytes






Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

missing crossorigin=anonymous|use-credentials and integrity - attribute, possible hash-values:

 

sha256-8PtHLu2OXVPaxLlH2xhCXMUMd/n3zyUigInfWUUDpow=
sha384-farPt6zBil1XPkhOp92qZIu1SZ4bRv/8ZYkTFe/7ryAwvpQ4uutFZOPt20LSuWDm
sha512-0dhUzZOkyy2JUm7cN43ScBisfZuDv26eGKg/wGXFIqmFRozdq3RfpaYS1p5T2wS8oUTjMjcKBrupV95UHPNBRw==

 

<link rel="stylesheet" href="https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700&family=JetBrains+Mono:wght@400;500&display=swap" crossorigin="anonymous" integrity="sha256-8PtHLu2OXVPaxLlH2xhCXMUMd/n3zyUigInfWUUDpow=" />



meta
charset
utf-8


1
ok















meta
og:description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
og:image
https://netlify.ai/og-image.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 604715 Bytes






ETag: "b8d21659b6010fa6a5be15739cf082d0-ssl"



meta
og:image:alt
Netlify.ai command prompt preview with "fetch https://netlify.ai to start deploying".


1
ok















meta
og:site_name
Netlify


1
ok















meta
og:title
Let Your AI Deploy — Netlify


1
ok















meta
og:type
website


1
ok















meta
og:url
https://netlify.ai
200

1
ok
text/html; charset=UTF-8
missing X-Content-Type-Options nosniff





3732 Bytes






ETag: W/"4263e223876cdb1a0801690bfa72d493-ssl-df"



meta
description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
twitter:image
https://netlify.ai/og-image.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 604715 Bytes






ETag: "b8d21659b6010fa6a5be15739cf082d0-ssl"



meta
twitter:image:alt
Netlify.ai command prompt preview with "fetch https://netlify.ai to start deploying".


1
ok















meta
twitter:title
Let Your AI Deploy — Netlify


1
ok















meta
viewport
width=device-width, initial-scale=1


1
ok















picture


• source
media: (prefers-color-scheme: dark)




1
ok














srcset
/logo-netlify-monogram-fullcolor-darkmode.png


1
ok







/logo-netlify-monogram-fullcolor-darkmode.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 2098 Bytes






ETag: "90d116075647eb2ddb8c5fd7bed2a8d0-ssl"

• img




/logo-netlify-monogram-fullcolor-lightmode.svg
200

1
ok
alt: Netlifyimage/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 603/1418 Bytes






ETag: "35441b7ff655ba56b04aede6cdc0220b-ssl-df"


https://netlify.ai/
15.197.167.90
a

/


1
ok















a

https://app.netlify.com/signup


1
ok















a

https://docs.netlify.com/


1
ok















a

https://docs.netlify.com/llms.txt


1
ok















a

https://www.netlify.com/privacy/


1
ok















link
apple-touch-icon
/favicon/apple-touch-icon.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 1417 Bytes






ETag: "576ea5968abd201e58dd095f66a7b741-ssl"



link
canonical
https://netlify.ai


1
ok















link
icon
/favicon/favicon.ico
200

1
ok
image/vnd.microsoft.icon
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 960/15086 Bytes






ETag: "f9d41dfe5c7e0365e0cb6cd184f9835d-ssl-df"



link
icon
/favicon/icon.svg
200

1
ok
image/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 539/1377 Bytes






ETag: "4d1aa2c3041559abf9a6103ccc2801fd-ssl-df"



link
modulepreload
/assets/index-CU4SVCHc.js


1
ok















link
modulepreload
/assets/main-VU2ojAWb.js


1
ok















link
stylesheet
/assets/styles-CZrjolp8.css
200

1
ok
text/css; charset=UTF-8
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 7332/45529 Bytes






ETag: "8ec88a3bb102327ef411354d7d5a72d6-ssl-df"

local SRI possible, possible hash-values:

 

sha256-clI+kNXNZ6yjB5LNVukJQKm/3x/TcOGFDObn6l1lnuY=
sha384-/mt6yLefs9wNty2+CWEPX0GgN4hZ3m6i26EcOLWGuyNDho1r6qRdY8Nk9NF+XsWf
sha512-SFOV2rpwXxrRqcggROAtW4Q7NAmHXqFkZmRAfAdR2t1h2HqZV//vIwEqN2TlbLI2O6aQcV8mx/IK8oJ+FMq+KA==

 

<link rel="stylesheet" href="/assets/styles-CZrjolp8.css" crossorigin="anonymous" integrity="sha256-clI+kNXNZ6yjB5LNVukJQKm/3x/TcOGFDObn6l1lnuY=" />



link
stylesheet
https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700&family=JetBrains+Mono:wght@400;500&display=swap
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Compression (gzip): 936/15080 Bytes






Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

missing crossorigin=anonymous|use-credentials and integrity - attribute, possible hash-values:

 

sha256-8PtHLu2OXVPaxLlH2xhCXMUMd/n3zyUigInfWUUDpow=
sha384-farPt6zBil1XPkhOp92qZIu1SZ4bRv/8ZYkTFe/7ryAwvpQ4uutFZOPt20LSuWDm
sha512-0dhUzZOkyy2JUm7cN43ScBisfZuDv26eGKg/wGXFIqmFRozdq3RfpaYS1p5T2wS8oUTjMjcKBrupV95UHPNBRw==

 

<link rel="stylesheet" href="https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700&family=JetBrains+Mono:wght@400;500&display=swap" crossorigin="anonymous" integrity="sha256-8PtHLu2OXVPaxLlH2xhCXMUMd/n3zyUigInfWUUDpow=" />



meta
charset
utf-8


1
ok















meta
og:description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
og:image
https://netlify.ai/og-image.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 604715 Bytes






ETag: "b8d21659b6010fa6a5be15739cf082d0-ssl"



meta
og:image:alt
Netlify.ai command prompt preview with "fetch https://netlify.ai to start deploying".


1
ok















meta
og:site_name
Netlify


1
ok















meta
og:title
Let Your AI Deploy — Netlify


1
ok















meta
og:type
website


1
ok















meta
og:url
https://netlify.ai
200

1
ok
text/html; charset=UTF-8
missing X-Content-Type-Options nosniff





3732 Bytes






ETag: W/"4263e223876cdb1a0801690bfa72d493-ssl-df"



meta
description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:description
Deploy to the web with a single command. Netlify for AI agents — instant hosting, serverless functions, and edge computing.


1
ok















meta
twitter:image
https://netlify.ai/og-image.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 604715 Bytes






ETag: "b8d21659b6010fa6a5be15739cf082d0-ssl"



meta
twitter:image:alt
Netlify.ai command prompt preview with "fetch https://netlify.ai to start deploying".


1
ok















meta
twitter:title
Let Your AI Deploy — Netlify


1
ok















meta
viewport
width=device-width, initial-scale=1


1
ok















picture


• source
media: (prefers-color-scheme: dark)




1
ok














srcset
/logo-netlify-monogram-fullcolor-darkmode.png


1
ok







/logo-netlify-monogram-fullcolor-darkmode.png
200

1
ok
image/png
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 2098 Bytes






ETag: "90d116075647eb2ddb8c5fd7bed2a8d0-ssl"

• img




/logo-netlify-monogram-fullcolor-lightmode.svg
200

1
ok
alt: Netlifyimage/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 603/1418 Bytes






ETag: "35441b7ff655ba56b04aede6cdc0220b-ssl-df"


 

12. Html-Parsing via https://validator.w3.org/nu/

Url used (first standard-https-result with http status 200): https://netlify.ai/

Summary

Good: No non-document-errors
2 errors
0 warnings

TypeMessagenum found
1.errorUnclosed element script.1
2.errorEnd of file seen when expecting text or an end tag.1

Details


TypeMessage + Sample
1errorUnclosed element script.

From line 44, column 7014 to line 44, column 7059

><!--/$--><script class="$tsr" id="$tsr-stream-barrier">(self.
2errorEnd of file seen when expecting text or an end tag.

From line 45, column 332 to line 45, column 332

i:"__root__

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: dns1.p01.nsone.net, dns1.p07.nsone.net, dns2.p07.nsone.net, dns3.p07.nsone.net, dns4.p07.nsone.net

 

QNr.DomainTypeNS used
1
net
NS
f.root-servers.net (2001:500:2f::f)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
dns1.p01.nsone.net: 198.51.44.1, 2620:4d:4000:6259:7:1:0:1
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4
3
dns1.p07.nsone.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net

Answer: dns1.p01.nsone.net
198.51.44.1, 2620:4d:4000:6259:7:1:0:1

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4
4
dns2.p07.nsone.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net

Answer: dns1.p01.nsone.net
198.51.44.1, 2620:4d:4000:6259:7:1:0:1

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4
5
dns3.p07.nsone.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net

Answer: dns1.p01.nsone.net
198.51.44.1, 2620:4d:4000:6259:7:1:0:1

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4
6
dns4.p07.nsone.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net

Answer: dns1.p01.nsone.net
198.51.44.1, 2620:4d:4000:6259:7:1:0:1

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4
7
dns1.p07.nsone.net: 198.51.44.7
A
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
8
dns1.p07.nsone.net: 2620:4d:4000:6259:7:7:0:1
AAAA
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
9
dns2.p07.nsone.net: 198.51.45.7
A
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
10
dns2.p07.nsone.net: 2a00:edc0:6259:7:7::2
AAAA
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
11
dns3.p07.nsone.net: 198.51.44.71
A
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
12
dns3.p07.nsone.net: 2620:4d:4000:6259:7:7:0:3
AAAA
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
13
dns4.p07.nsone.net: 198.51.45.71
A
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)
14
dns4.p07.nsone.net: 2a00:edc0:6259:7:7::4
AAAA
dns1.p01.nsone.net (2620:4d:4000:6259:7:1:0:1)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.netlify.ai
0

no CAA entry found
1
0
netlify.ai
0

no CAA entry found
1
0
ai
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
netlify.ai

ok
1
0
www.netlify.ai

ok
1
0
_acme-challenge.netlify.ai

Name Error - The domain name does not exist
1
0
_acme-challenge.www.netlify.ai

Name Error - The domain name does not exist
1
0
_acme-challenge.netlify.ai.netlify.ai

Name Error - The domain name does not exist
1
0
_acme-challenge.www.netlify.ai.netlify.ai

Name Error - The domain name does not exist
1
0
_acme-challenge.www.netlify.ai.www.netlify.ai

Name Error - The domain name does not exist
1
0

 

16. DomainService - Entries

No DomainServiceEntries entries found

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
netlify.ai
3.33.186.135
443
3 Ciphers28.05 sec
0 without, 3 FS
100.00 %
netlify.ai
15.197.167.90
443
3 Ciphers28.08 sec
0 without, 3 FS
100.00 %
www.netlify.ai
3.33.186.135
443
3 Ciphers27.83 sec
0 without, 3 FS
100.00 %
www.netlify.ai
15.197.167.90
443
3 Ciphers28.16 sec
0 without, 3 FS
100.00 %
Complete

4
12 Ciphers
3.00 Ciphers/Check
112.11 sec28.03 sec/Check
0 without, 12 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
netlify.ai
3.33.186.135
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.05 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


15.197.167.90
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.08 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

www.netlify.ai
3.33.186.135
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 27.83 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


15.197.167.90
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.16 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=aa5ce7f0-21f2-4eb4-a546-25240e79e938

 

Last Result: https://check-your-website.server-daten.de/?q=netlify.ai - 2026-05-01 18:34:30

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=netlify.ai" target="_blank">Check this Site: netlify.ai</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=netlify.ai