Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

A

 

Top config

 

Checked:
08.07.2025 19:53:32

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
veilid.com
A
35.157.26.135
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
Hostname: ec2-35-157-26-135.eu-central-1.compute.amazonaws.com
yes
1
0

A
63.176.8.218
Frankfurt am Main/Hesse/Germany (DE) - Amazon.com
Hostname: ec2-63-176-8-218.eu-central-1.compute.amazonaws.com
yes
1
0

AAAA

yes


www.veilid.com
A
35.157.26.135
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
Hostname: ec2-35-157-26-135.eu-central-1.compute.amazonaws.com
yes
1
0

A
63.176.8.218
Frankfurt am Main/Hesse/Germany (DE) - Amazon.com
Hostname: ec2-63-176-8-218.eu-central-1.compute.amazonaws.com
yes
1
0

AAAA

yes


*.veilid.com
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






4 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 46441, Flags 256






Public Key with Algorithm 8, KeyTag 53148, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 22.07.2025, 00:00:00 +, Signature-Inception: 01.07.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: com

com
1 DS RR in the parent zone found






DS with Algorithm 13, KeyTag 19718, DigestType 2 and Digest isuwzSj0ElCoCkkTiUJNNBUi2Uaw2gwCkfLT13HXgFo=






1 RRSIG RR to validate DS RR found






RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 21.07.2025, 17:00:00 +, Signature-Inception: 08.07.2025, 16:00:00 +, KeyTag 46441, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 46441 used to validate the DS RRSet in the parent zone






2 DNSKEY RR found






Public Key with Algorithm 13, KeyTag 19718, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 13, KeyTag 40097, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner com., Algorithm: 13, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.07.2025, 14:02:35 +, Signature-Inception: 01.07.2025, 13:57:35 +, KeyTag 19718, Signer-Name: com






Status: Good - Algorithmus 13 and DNSKEY with KeyTag 19718 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 19718, DigestType 2 and Digest "isuwzSj0ElCoCkkTiUJNNBUi2Uaw2gwCkfLT13HXgFo=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: veilid.com

veilid.com
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "0v5f1gevkc9u0r1ctudnnms98v84dgd1" between the hashed NSEC3-owner "0v5ev0hqnab6gdma6rem3nmoavlamcct" and the hashed NextOwner "0v5f4891ll5p9asvbsc12r9jgfal0l3o". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 0v5ev0hqnab6gdma6rem3nmoavlamcct.com., Algorithm: 13, 2 Labels, original TTL: 900 sec, Signature-expiration: 12.07.2025, 01:03:33 +, Signature-Inception: 04.07.2025, 23:53:33 +, KeyTag 40097, Signer-Name: com






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q3udg8cekkae7rukpgct1dvssh8ll". So that domain name is the Closest Encloser of "veilid.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 13, 2 Labels, original TTL: 900 sec, Signature-expiration: 14.07.2025, 00:25:22 +, Signature-Inception: 06.07.2025, 23:15:22 +, KeyTag 40097, Signer-Name: com






0 DNSKEY RR found









Zone: www.veilid.com

www.veilid.com
0 DS RR in the parent zone found

 

3. Name Servers

DomainNameserverNS-IP
www.veilid.com
  dns1.p01.nsone.net / ns1dns-mrs01-11129-5317-0

veilid.com
  dns1.p01.nsone.net / ns1dns-mrs01-1269-5312-0
198.51.44.1
Toronto/Ohio/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:1
New York/United States (US) - NSONE Inc


  dns2.p01.nsone.net / ns1dns-fra03-bf1fd282-884c-4d17-bb8c-105fa5fa9850-5314-0
198.51.45.1
Kimball/Nebraska/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:1::2
Amsterdam/North Holland/The Netherlands (NL) - NS1


  dns3.p01.nsone.net / ns1dns-mrs01-1269-5315-0
198.51.44.65
Toronto/Ohio/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:3
New York/United States (US) - NSONE Inc


  dns4.p01.nsone.net / ns1dns-fra03-d166bc23-3639-4869-ba28-ba5cfb012fa2-5313-0
198.51.45.65
Kimball/Nebraska/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:1::4
Amsterdam/North Holland/The Netherlands (NL) - NS1

com
  a.gtld-servers.net / nnn1-par6


  b.gtld-servers.net / nnn1-eltxl1


  c.gtld-servers.net / nnn1-par6


  d.gtld-servers.net / nnn1-par6


  e.gtld-servers.net / nnn1-par6


  f.gtld-servers.net / nnn1-defra-4


  g.gtld-servers.net / nnn1-defra-4


  h.gtld-servers.net / nnn1-defra-4


  i.gtld-servers.net / nnn1-defra-4


  j.gtld-servers.net / nnn1-frmrs-2


  k.gtld-servers.net / nnn1-frmrs-2


  l.gtld-servers.net / nnn1-frmrs-2


  m.gtld-servers.net / nnn1-frmrs-2

 

4. SOA-Entries


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1751997193
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:12


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1751997208
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:1


Domain:veilid.com
Zone-Name:veilid.com
Primary:dns1.p01.nsone.net
Mail:domains+netlify.netlify.com
Serial:1667321616
Refresh:43200
Retry:7200
Expire:1209600
TTL:3600
num Entries:8


Domain:www.veilid.com
Zone-Name:veilid.com
Primary:dns1.p01.nsone.net
Mail:domains+netlify.netlify.com
Serial:1667321616
Refresh:43200
Retry:7200
Expire:1209600
TTL:3600
num Entries:1


5. Screenshots

Startaddress: https://veilid.com/, address used: https://veilid.com/, Screenshot created 2025-07-08 19:58:01 +00:0

 

Mobil (412px x 732px)

 

1086 milliseconds

 

Screenshot mobile - https://veilid.com/
Mobil + Landscape (732px x 412px)

 

1102 milliseconds

 

Screenshot mobile landscape - https://veilid.com/
Screen (1280px x 1680px)

 

1186 milliseconds

 

Screenshot Desktop - https://veilid.com/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport396732
content Size3961703

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://veilid.com/
35.157.26.135
301
https://veilid.com/
Html is minified: 100.00 %
0.047
A
Date: Tue, 08 Jul 2025 17:54:24 GMT
Location: https://veilid.com/
Server: Netlify
X-Nf-Request-Id: 01JZNJSCETMNF6W92BHW4R6F3Z
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• http://veilid.com/
63.176.8.218
301
https://veilid.com/
Html is minified: 100.00 %
0.033
A
Date: Tue, 08 Jul 2025 17:54:24 GMT
Location: https://veilid.com/
Server: Netlify
X-Nf-Request-Id: 01JZNJSCG5TYQ0ABBNGYRGC8SX
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• http://www.veilid.com/
35.157.26.135
301
https://www.veilid.com/
Html is minified: 100.00 %
0.017
A
Date: Tue, 08 Jul 2025 17:54:24 GMT
Location: https://www.veilid.com/
Server: Netlify
X-Nf-Request-Id: 01JZNJSCHK3S19ECEJQJ07TS0T
Content-Type: text/plain; charset=utf-8
Content-Length: 38

• http://www.veilid.com/
63.176.8.218
301
https://www.veilid.com/
Html is minified: 100.00 %
0.187
A
Date: Tue, 08 Jul 2025 17:54:24 GMT
Location: https://www.veilid.com/
Server: Netlify
X-Nf-Request-Id: 01JZNJSCJBYFJZMG1Z215X2GXY
Content-Type: text/plain; charset=utf-8
Content-Length: 38

• https://www.veilid.com/
35.157.26.135
301
https://veilid.com/
Html is minified: 100.00 %
2.247
A
Date: Tue, 08 Jul 2025 17:54:34 GMT
Location: https://veilid.com/
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01JZNJSPF33PX27Y9HVY4830C0
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• https://www.veilid.com/
63.176.8.218
301
https://veilid.com/
Html is minified: 100.00 %
2.236
A
Date: Tue, 08 Jul 2025 17:54:38 GMT
Location: https://veilid.com/
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01JZNJST898Z0NX1NPF8KWHK6C
Content-Type: text/plain; charset=utf-8
Content-Length: 34

• https://veilid.com/
35.157.26.135 br used - 1590 / 7178 - 77.85 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 136.59 %
Other inline scripts (∑/total): 0/0
2.403
A
Accept-Ranges: bytes
Age: 6068
Cache-Control: public, must-revalidate, max-age=0
Cache-Status: "Netlify Edge"; hit
Content-Security-Policy: default-src 'self'; script-src 'self'
Date: Tue, 08 Jul 2025 17:54:24 GMT
ETag: "100fdec4435728d62a902ac353d8824f-ssl-df"
Server: Netlify
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding
X-Clacks-Overhead: GNU Terry Pratchett
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Nf-Request-Id: 01JZNJSCTB4823YVYSPR6N5Y20
X-XSS-Protection: 0
Content-Encoding: br
Content-Length: 1590
Content-Type: text/html; charset=UTF-8

• https://veilid.com/
63.176.8.218 br used - 1544 / 7178 - 78.49 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 136.59 %
Other inline scripts (∑/total): 0/0
2.060
A
Accept-Ranges: bytes
Age: 96
Cache-Control: public, must-revalidate, max-age=0
Cache-Status: "Netlify Edge"; hit
Content-Security-Policy: default-src 'self'; script-src 'self'
Date: Tue, 08 Jul 2025 17:54:29 GMT
ETag: "100fdec4435728d62a902ac353d8824f-ssl-df"
Server: Netlify
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding
X-Clacks-Overhead: GNU Terry Pratchett
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Nf-Request-Id: 01JZNJSHQENBAKC2H2MV1DC6F3
X-XSS-Protection: 0
Content-Encoding: br
Content-Length: 1544
Content-Type: text/html; charset=UTF-8

• http://veilid.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
35.157.26.135
404


0.140
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Tue, 08 Jul 2025 17:54:42 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJSY4CPC4HFFJDE2QR62T0
Content-Length: 0

• http://veilid.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
63.176.8.218
404


0.123
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Tue, 08 Jul 2025 17:54:43 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJSZ221GV8JPB9R3BG6TW2
Content-Length: 0

• http://www.veilid.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
35.157.26.135
404


0.143
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Tue, 08 Jul 2025 17:54:44 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJT03K1QN15JSQ25AKFJ87
Content-Length: 0

• http://www.veilid.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
63.176.8.218
404


0.140
A
Not Found
Visible Content:
Age: 0
Cache-Control: no-store
Cache-Status: "Netlify Edge"; fwd=miss
Date: Tue, 08 Jul 2025 17:54:45 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJT12NPB49JJG33GSB6XFM
Content-Length: 0

• https://63.176.8.218/
63.176.8.218
404


2.060
N
Not Found
Certificate error: RemoteCertificateNameMismatch
Date: Tue, 08 Jul 2025 17:54:51 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJT6T18W4NS2RJ3PHDR71P
Content-Length: 0

• https://35.157.26.135/
35.157.26.135
404


2.060
N
Not Found
Certificate error: RemoteCertificateNameMismatch
Date: Tue, 08 Jul 2025 17:54:46 GMT
Server: Netlify
X-Nf-Request-Id: 01JZNJT28ZCCFJ160QRXTXQJN2
Content-Length: 0

 

7. Comments


1. General Results, most used to calculate the result

Aname "veilid.com" is domain, public suffix is ".com", top-level-domain is ".com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services", num .com-domains preloaded: 105960 (complete: 271405)
AGood: All ip addresses are public addresses
AGood: Minimal 2 ip addresses per domain name found: veilid.com has 2 different ip addresses (authoritative).
AGood: Minimal 2 ip addresses per domain name found: www.veilid.com has 2 different ip addresses (authoritative).
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: veilid.com has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.veilid.com has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
AGood: destination is https
AGood - only one version with Http-Status 200
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
Ahttp://veilid.com/ 35.157.26.135
301
https://veilid.com/
Correct redirect http - https with the same domain name
Ahttp://veilid.com/ 63.176.8.218
301
https://veilid.com/
Correct redirect http - https with the same domain name
Ahttp://www.veilid.com/ 35.157.26.135
301
https://www.veilid.com/
Correct redirect http - https with the same domain name
Ahttp://www.veilid.com/ 63.176.8.218
301
https://www.veilid.com/
Correct redirect http - https with the same domain name
Mhttps://35.157.26.135/ 35.157.26.135
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://63.176.8.218/ 63.176.8.218
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://35.157.26.135/ 35.157.26.135
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://63.176.8.218/ 63.176.8.218
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
AGood: More then one ip address per domain name found, checking all ip addresses the same http status and the same certificate found: Domain veilid.com, 2 ip addresses.
AGood: More then one ip address per domain name found, checking all ip addresses the same http status and the same certificate found: Domain www.veilid.com, 2 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain veilid.com, 2 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain www.veilid.com, 2 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.veilid.com

2. Header-Checks

Aveilid.com 35.157.26.135
Content-Security-Policy
Ok: Header without syntax errors found: default-src 'self'; script-src 'self'
A

Good: default-src directive only with 'none' or 'self', additional sources are blocked. script-src
A

Good: default-src without 'unsafe-inline' or 'unsave-eval'. script-src
E

Bad: No form-action directive found. Use one to limit the form - action - destinations. form-action is a navigation-directive, so default-src isn't used.
E

Bad: No frame-ancestors directive found. Use one to limit the pages allowed to use this page in frame / iframe / object / embed / applet. frame-ancestors is a navigation-directive, so default-src isn't used.
E

Bad: No base-uri directive found. Use one to limit the URLs which can be used in a document's <base> element. Because it's a document directive, default-src isn't used, so an own directive is required.
A

Good: No object-src found, but the default-src used as fallback is defined and restricted.
A

Good: script-src without 'unsafe-inline' and 'unsafe-eval' found. That's the recommended configuration.
A

Good: script-src without * and a scheme found.
A

Good: script-src without data: schema found. Why is this important? The data: schema allows hidden code injection. Insert <script src='data:application/javascript;base64,YWxlcnQoJ1hTUycpOw=='></script> in your page and see what happens.
A

Good: frame-src without data: defined or frame-src missing and the default-src used as fallback not allows the data: schema. That blocks hidden code injection. Insert <iframe src="data:text/html;charset=utf-8;base64,PCFET0NUWVBFIGh0bWw+PGh0bWw+PGJvZHk+PHA+YmVmb3JlPHNjcmlwdCB0eXBlPSJ0ZXh0L2phdmFzY3JpcHQiPmFsZXJ0KCdYU1MnKTwvc2NyaXB0PjxwPmFmdGVyPC9ib2R5PjwvaHRtbD4="></iframe> in your page and see what happens.
C

Info: default-src and some other fetch directives have the same list of values. Remove the other fetch directive, default-src is used as fallback. Directives to remove: script-src
A
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 0
B

Info: Header is deprecated. May not longer work in modern browsers. 0
Aveilid.com 63.176.8.218
Content-Security-Policy
Ok: Header without syntax errors found: default-src 'self'; script-src 'self'
A

Good: default-src directive only with 'none' or 'self', additional sources are blocked. script-src
A

Good: default-src without 'unsafe-inline' or 'unsave-eval'. script-src
E

Bad: No form-action directive found. Use one to limit the form - action - destinations. form-action is a navigation-directive, so default-src isn't used.
E

Bad: No frame-ancestors directive found. Use one to limit the pages allowed to use this page in frame / iframe / object / embed / applet. frame-ancestors is a navigation-directive, so default-src isn't used.
E

Bad: No base-uri directive found. Use one to limit the URLs which can be used in a document's <base> element. Because it's a document directive, default-src isn't used, so an own directive is required.
A

Good: No object-src found, but the default-src used as fallback is defined and restricted.
A

Good: script-src without 'unsafe-inline' and 'unsafe-eval' found. That's the recommended configuration.
A

Good: script-src without * and a scheme found.
A

Good: script-src without data: schema found. Why is this important? The data: schema allows hidden code injection. Insert <script src='data:application/javascript;base64,YWxlcnQoJ1hTUycpOw=='></script> in your page and see what happens.
A

Good: frame-src without data: defined or frame-src missing and the default-src used as fallback not allows the data: schema. That blocks hidden code injection. Insert <iframe src="data:text/html;charset=utf-8;base64,PCFET0NUWVBFIGh0bWw+PGh0bWw+PGJvZHk+PHA+YmVmb3JlPHNjcmlwdCB0eXBlPSJ0ZXh0L2phdmFzY3JpcHQiPmFsZXJ0KCdYU1MnKTwvc2NyaXB0PjxwPmFmdGVyPC9ib2R5PjwvaHRtbD4="></iframe> in your page and see what happens.
C

Info: default-src and some other fetch directives have the same list of values. Remove the other fetch directive, default-src is used as fallback. Directives to remove: script-src
A
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 0
B

Info: Header is deprecated. May not longer work in modern browsers. 0
Fveilid.com 35.157.26.135
Referrer-Policy
Critical: Missing Header:
Fveilid.com 35.157.26.135
Permissions-Policy
Critical: Missing Header:
Bveilid.com 35.157.26.135
Cross-Origin-Embedder-Policy
Info: Missing Header
Bveilid.com 35.157.26.135
Cross-Origin-Opener-Policy
Info: Missing Header
Bveilid.com 35.157.26.135
Cross-Origin-Resource-Policy
Info: Missing Header
Fveilid.com 63.176.8.218
Referrer-Policy
Critical: Missing Header:
Fveilid.com 63.176.8.218
Permissions-Policy
Critical: Missing Header:
Bveilid.com 63.176.8.218
Cross-Origin-Embedder-Policy
Info: Missing Header
Bveilid.com 63.176.8.218
Cross-Origin-Opener-Policy
Info: Missing Header
Bveilid.com 63.176.8.218
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 2 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 4 Name Servers.
AInfo:: 2 Queries complete, 2 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AGood: Some ip addresses of name servers found with the minimum of two DNS Queries. One to find the TLD-Zone, one to ask the TLD-Zone.dns1.p01.nsone.net (198.51.44.1, 2620:4d:4000:6259:7:1:0:1), dns2.p01.nsone.net (198.51.45.1, 2a00:edc0:6259:7:1::2), dns3.p01.nsone.net (198.51.44.65, 2620:4d:4000:6259:7:1:0:3), dns4.p01.nsone.net (198.51.45.65, 2a00:edc0:6259:7:1::4)
AGood (1 - 3.0):: An average of 0.5 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 4 different Name Servers found: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net, 4 Name Servers included in Delegation: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net, 4 Name Servers included in 1 Zone definitions: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net, 1 Name Servers listed in SOA.Primary: dns1.p01.nsone.net.
AGood: Only one SOA.Primary Name Server found.: dns1.p01.nsone.net.
AGood: SOA.Primary Name Server included in the delegation set.: dns1.p01.nsone.net.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 4 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 4 Name Servers, 1 Top Level Domain: net
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: nsone.net
AGood: Name servers with different Country locations found: 4 Name Servers, 2 Countries: NL, US
AInfo: Ipv4-Subnet-list: 4 Name Servers, 1 different subnets (first Byte): 198., 1 different subnets (first two Bytes): 198.51., 2 different subnets (first three Bytes): 198.51.44., 198.51.45.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 2 different subnets (first block): 2620:, 2a00:, 2 different subnets (first two blocks): 2620:004d:, 2a00:edc0:, 2 different subnets (first three blocks): 2620:004d:4000:, 2a00:edc0:6259:, 2 different subnets (first four blocks): 2620:004d:4000:6259:, 2a00:edc0:6259:0007:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports TCP connections: 8 good Nameserver
AGood: Nameserver supports Echo Capitalization: 8 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 8 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 8 good Nameserver
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
AGood: No https + http status 200 with inline CSS / JavaScript found
https://veilid.com/ 35.157.26.135
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://veilid.com/ 63.176.8.218
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
AGood: All CSS / JavaScript files are sent compressed (gzip, deflate, br checked). That reduces the content of the files. 2 external CSS / JavaScript files found
AGood: All svg-Images greater 1024 Bytes without internal compression are compressed. Svg is an Xml-Application, so Compression reduces the size of the file. 4 images (type image/svg+xml, image/x-icon, image/vnd.microsoft.icon) found with compression.
AGood: All CSS / JavaScript files are sent with a long Cache-Control header (minimum 7 days). So the browser can re-use these files, no download is required. 2 external CSS / JavaScript files with long Cache-Control max-age found
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 0 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 8 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 8 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: Some img-elements have a valid alt-attribute.: 8 img-elements found, 6 img-elements with correct alt-attributes (defined, not an empty value).
Wrong: img-elements without alt-attribute or empty alt-attribute found. The alt-attribute ("alternative") is required and should describe the img. So Screenreader and search engines are able to use these informations.: 2 img-elements without alt-attribute, 0 img-elements with empty alt-attribute found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://35.157.26.135/ 35.157.26.135
404
2.060 seconds
Warning: 404 needs more then one second
https://63.176.8.218/ 63.176.8.218
404
2.060 seconds
Warning: 404 needs more then one second
ADuration: 275874 milliseconds, 275.874 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
veilid.com
35.157.26.135
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
veilid.com
35.157.26.135
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=veilid.com


2CN=E5, O=Let's Encrypt, C=US


veilid.com
63.176.8.218
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

veilid.com
63.176.8.218
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=veilid.com


2CN=E5, O=Let's Encrypt, C=US


www.veilid.com
35.157.26.135
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.veilid.com
35.157.26.135
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=veilid.com


2CN=E5, O=Let's Encrypt, C=US


www.veilid.com
63.176.8.218
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.veilid.com
63.176.8.218
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=veilid.com


2CN=E5, O=Let's Encrypt, C=US


63.176.8.218
63.176.8.218
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

63.176.8.218
63.176.8.218
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US


35.157.26.135
35.157.26.135
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

35.157.26.135
35.157.26.135
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US

 

9. Certificates

1.
1.
CN=veilid.com
18.06.2025
16.09.2025
308 days expired
*.veilid.com, veilid.com - 2 entries
1.
1.
CN=veilid.com
18.06.2025

16.09.2025
308 days expired


*.veilid.com, veilid.com - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:ECDSA SHA384
Serial Number:0535875F75FE426BCB2A7211107956176117
Thumbprint:30796E2BC27801C10A8CA873E1FB44F8A73136D6
SHA256 / Certificate:S/gVi5YU0XI3Urbj5AcWrEM1MNtpyW7Yj1DqKdrF7es=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8af4f8826c933d052f02857855378e98905e67a1fcbf0f8ea73149a52efb70c3
SHA256 hex / Subject Public Key Information (SPKI):8af4f8826c933d052f02857855378e98905e67a1fcbf0f8ea73149a52efb70c3 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=E5, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 235 days


2.
CN=E5, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 235 days




KeyalgorithmEC Public Key (384 bit, secp384r1)
Signatur:SHA256 With RSA-Encryption
Serial Number:00838F6C63CEB1398C6206628315C9FDDE
Thumbprint:5F28D9C589EE4BF31A11B78C72B8D13F079DDC45
SHA256 / Certificate:Xf2zzzGybyPYfAnzoM72QvZAaan7fP4pJwu13A8eFrs=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):3586d4ecf070578cbd27aedce20b964e48bc149faeb9dad72f46b857869172b8
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3240 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3240 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
31.01.2025
04.03.2026
139 days expired
*.netlify.app, netlify.app - 2 entries
2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
31.01.2025

04.03.2026
139 days expired


*.netlify.app, netlify.app - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:SHA256 With RSA-Encryption
Serial Number:04E8761C314B519E75E93581A84A383A
Thumbprint:0428C9A3BC06509C6B0B67728227C63D991B5B71
SHA256 / Certificate:+jRqoBz1nMcwylUjE6E+DyGMOgu1zOVnCf5k7JdOjXU=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb
SHA256 hex / Subject Public Key Information (SPKI):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
31.01.2025
04.03.2026
139 days expired
*.netlify.app, netlify.app - 2 entries

2.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
31.01.2025

04.03.2026
139 days expired


*.netlify.app, netlify.app - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:SHA256 With RSA-Encryption
Serial Number:04E8761C314B519E75E93581A84A383A
Thumbprint:0428C9A3BC06509C6B0B67728227C63D991B5B71
SHA256 / Certificate:+jRqoBz1nMcwylUjE6E+DyGMOgu1zOVnCf5k7JdOjXU=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb
SHA256 hex / Subject Public Key Information (SPKI):0c5bf4acf22686578bcc8bdcb6f12eb016b9c27cd0ffe692ab25b5f32dba2feb (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021
30.03.2031
expires in 1713 days


3.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021

30.03.2031
expires in 1713 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CF5BD062B5602F47AB8502C23CCF066
Thumbprint:1B511ABEAD59C6CE207077C0BF0E0043B1382612
SHA256 / Certificate:yAJfn8Zf38lbPKjMeGe5pYe1J3lzlXkXRj/IE9C2Jak=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):59e738e674221702af1edb87c5200c1a4b75f64fae3d2c3d265124c61bd83c79
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021
30.03.2031
expires in 1713 days


4.
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
30.03.2021

30.03.2031
expires in 1713 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0CF5BD062B5602F47AB8502C23CCF066
Thumbprint:1B511ABEAD59C6CE207077C0BF0E0043B1382612
SHA256 / Certificate:yAJfn8Zf38lbPKjMeGe5pYe1J3lzlXkXRj/IE9C2Jak=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):59e738e674221702af1edb87c5200c1a4b75f64fae3d2c3d265124c61bd83c79
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
29.10.2024
09.11.2031
expires in 1937 days


5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
29.10.2024

09.11.2031
expires in 1937 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0E7D75235CA83761577F4CCD24CD6D1D
Thumbprint:B7402517EEAAC80AB04681186E8247BD7851CD0A
SHA256 / Certificate:oNYJp+PENOh4qaHBvQZbjc8zqn7+4bEbx1zOXloEIIA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.cn
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013
15.01.2038
expires in 4196 days


6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013

15.01.2038
expires in 4196 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:033AF1E6A711A9A0BB2864B11D09FAE5
Thumbprint:DF3C24F9BFD666761B268073FE06D1CC8D4F82A4
SHA256 / Certificate:yzzLt2Ax5eATj43TmiP53kf/w15DwRRM6ifUalqxy18=
SHA256 hex / Cert (DANE * 0 1):cb3ccbb76031e5e0138f8dd39a23f9de47ffc35e43c1144cea27d46a5ab1cb5f
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





7.
CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006
10.11.2031
expires in 1938 days


7.
CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006

10.11.2031
expires in 1938 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:02AC5C266A0B409B8F0B79F2AE462577
Thumbprint:5FB7EE0633E259DBAD0C4C9AE6D38F1A61C7DC25
SHA256 / Certificate:dDHl9MPBzkaQd08LYeBUQIg7qaAe0Aumq9eAbtOxGM8=
SHA256 hex / Cert (DANE * 0 1):7431e5f4c3c1ce4690774f0b61e05440883ba9a01ed00ba6abd7806ed3b118cf
SHA256 hex / PublicKey (DANE * 1 1):5a889647220e54d6bd8a16817224520bb5c78e58984bd570506388b9de0f075f
SHA256 hex / Subject Public Key Information (SPKI):5a889647220e54d6bd8a16817224520bb5c78e58984bd570506388b9de0f075f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=E5, O=Let's Encrypt, C=US
0
0
2

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
10795674371
leaf cert
CN=E5, O=Let's Encrypt, C=US
2025-06-18 03:46:10
2025-09-16 03:46:09
*.veilid.com, veilid.com - 2 entries


10153843168
leaf cert
CN=E5, O=Let's Encrypt, C=US
2025-04-19 04:34:42
2025-07-18 04:34:41
*.veilid.com, veilid.com - 2 entries


 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

Issuerlast 7 daysactivenum Certs
CN=E5, O=Let's Encrypt, C=US
0
0
2
CN=E6, O=Let's Encrypt, C=US
0
0
1

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
19088846214
precert
CN=E5, O=Let's Encrypt, C=US
2025-06-18 01:46:10
2025-09-16 01:46:09
*.veilid.com, veilid.com
2 entries


17935038548
precert
CN=E5, O=Let's Encrypt, C=US
2025-04-19 02:34:42
2025-07-18 02:34:41
*.veilid.com, veilid.com
2 entries


17252088531
leaf cert
CN=E6, O=Let's Encrypt, C=US
2025-02-18 04:24:02
2025-05-19 03:24:01
*.veilid.com, veilid.com
2 entries


 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://veilid.com/
35.157.26.135
a

20

0


0
0
0


img

4
6,141 Bytes
0
4
0
0
0
0


link
alternate
3

0


0
0
0


link
stylesheet
1
21,528 Bytes
0
1
0
0
0
0


link
other
3
540,796 Bytes
0
2
0
0
0
0


meta
twitter
6
80,228 Bytes
0
1
0
0
0
0


meta
og
11
81,772 Bytes
0
2
0
0
0
0


meta
other
6

0


0
0
0


video

1

0


0
0
0

https://veilid.com/
63.176.8.218
a

20

0


0
0
0


img

4
6,097 Bytes
0
4
0
0
0
0


link
alternate
3

0


0
0
0


link
stylesheet
1
21,393 Bytes
0
1
0
0
0
0


link
other
3
540,796 Bytes
0
2
0
0
0
0


meta
og
11
81,772 Bytes
0
2
0
0
0
0


meta
twitter
6
80,228 Bytes
0
1
0
0
0
0


meta
other
6

0


0
0
0


video

1

0


0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://veilid.com/
35.157.26.135
a

#content


1
ok















a

/accessibility/


1
ok















a

/accessibility/translations/


1
ok















a

/accessibility/web-text/


1
ok















a

/chat/


1
ok















a

/community/


1
ok















a

/contribute/


1
ok















a

/donate/


1
ok















a

/events/


1
ok















a

/faq/


1
ok















a

/how-it-works/


1
ok















a

/press/


1
ok















a

/who-built-veilid/


1
ok















a

/why-use-veilid/


1
ok















a

https://bsky.app/profile/cultdeadcow.bsky.social


1
ok















a

https://bsky.app/profile/veilid.com


1
ok















a

https://hackers.town/@veilidnetwork


1
ok















a

https://twitter.com/cdc_pulpit


1
ok















a

https://twitter.com/VeilidNetwork


1
ok















a

mailto:support@veilid.com


1
ok















img
src
/img/fonts.svg
200

1
ok
alt: Icon for Font Sizeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
357 Bytes






ETag: "8e85f15fd770ba8011a1e69bbf72c9e6-ssl"



img
src
/img/translate.svg
200

1
ok
alt: Icon for Translationsimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
801 Bytes






ETag: "6606c0b7d8e0a04e1bcaf42b5798ff1c-ssl"



img
src
/img/Veilid.svg
200

1
ok
alt: Veilid Logoimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 3155/9622 Bytes






ETag: "15caa874cdf4676dc528cfbf6ba22157-ssl-df"



img
src
/img/Veilid-V-Outlined.svg
200

1
ok
no alt-Attributeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 1828/6604 Bytes






ETag: "525b1d39928484744f4cf3822b5f4fc2-ssl-df"



link
alternate
https://veilid.com/


1
ok















link
alternate
https://veilid.com/atom.xml


1
ok















link
alternate
https://veilid.com/de/


1
ok















link
canonical
https://veilid.com/


1
ok















link
icon
https://veilid.com/favicon.06d10b70d275c50e015f690b947549c4.ico
200

1
ok
image/vnd.microsoft.icon
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 with long duration found.
No Compression - 270398 Bytes






ETag: "b36e6d75103f234de9664571f1ed500a-ssl"



link
shortcut icon
https://veilid.com/favicon.06d10b70d275c50e015f690b947549c4.ico
200

1
ok
image/vnd.microsoft.icon
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 with long duration found.
No Compression - 270398 Bytes






ETag: "b36e6d75103f234de9664571f1ed500a-ssl"



link
stylesheet
/css/style.d29ab5054f583c9ff8cd3191bcb4856f.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 - with long duration found.
Compression (br): 21528/175623 Bytes






ETag: "077730d6b697564dbeeb47938524ef2d-ssl-df"

local SRI possible, possible hash-values:

 

sha256-zpx7CGri1yY+I7dncybgYl7T8Th4FPkcj1oFsQNoJdI=
sha384-B39KX2EF9cmAh0pICRt0c8KrHluIQDYf/2Act/hejMQRzF5YE2d/Z7yEJ5SPChbb
sha512-0x+5mFb8OVZoaHGQw65foX8H/koHPkpw3xzDZG4G3P8C0TMQU9ipk00ZVwtnSQzO7nj9njS9V2g2mK2s2LUfDg==

 

<link rel="stylesheet" href="/css/style.d29ab5054f583c9ff8cd3191bcb4856f.css" crossorigin="anonymous" integrity="sha256-zpx7CGri1yY+I7dncybgYl7T8Th4FPkcj1oFsQNoJdI=" />



meta
charset
UTF-8


1
ok















meta
og:description
Veilid is an open-source, distributed application framework.


1
ok















meta
og:image
https://veilid.com/thumbnails/1200/img/Veilid-Framework-Cover.e54684450769dd3a4a9766f80082b3df.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 80228 Bytes






ETag: "e7a31f0310e13b2d4701fb0051ef3e33-ssl"



meta
og:image:alt
Veilid


1
ok















meta
og:image:height
675


1
ok















meta
og:image:type
image/png


1
ok















meta
og:image:width
1200


1
ok















meta
og:locale
en_EN


1
ok















meta
og:site_name
Veilid


1
ok















meta
og:title
Veilid


1
ok















meta
og:type
website


1
ok















meta
og:url
https://veilid.com/
200

1
ok
text/html; charset=UTF-8
X-Content-Type-Options nosniff found





1544 Bytes






ETag: "100fdec4435728d62a902ac353d8824f-ssl-df"



meta
author
Cecil


1
ok















meta
description
Veilid is an open-source, distributed application framework.


1
ok















meta
generator
Cecil 8.42.2


1
ok















meta
robots
index,follow


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:description
Veilid is an open-source, distributed application framework.


1
ok















meta
twitter:image
https://veilid.com/thumbnails/1200/img/Veilid-Framework-Cover.e54684450769dd3a4a9766f80082b3df.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 80228 Bytes






ETag: "e7a31f0310e13b2d4701fb0051ef3e33-ssl"



meta
twitter:image:alt
Veilid


1
ok















meta
twitter:site
@veilidnetwork


1
ok















meta
twitter:title
Veilid


1
ok















meta
viewport
width=device-width, initial-scale=1.0


1
ok















video




1
ok
















• source
/Ellet-intro.mp4
video/mp4
200

1
ok
video/mp4
X-Content-Type-Options nosniff found





27243509 Bytes






ETag: "4ffef970553942aceb1924a327a397ce-ssl"


63.176.8.218
a

#content


1
ok















a

/accessibility/


1
ok















a

/accessibility/translations/


1
ok















a

/accessibility/web-text/


1
ok















a

/chat/


1
ok















a

/community/


1
ok















a

/contribute/


1
ok















a

/donate/


1
ok















a

/events/


1
ok















a

/faq/


1
ok















a

/how-it-works/


1
ok















a

/press/


1
ok















a

/who-built-veilid/


1
ok















a

/why-use-veilid/


1
ok















a

https://bsky.app/profile/cultdeadcow.bsky.social


1
ok















a

https://bsky.app/profile/veilid.com


1
ok















a

https://hackers.town/@veilidnetwork


1
ok















a

https://twitter.com/cdc_pulpit


1
ok















a

https://twitter.com/VeilidNetwork


1
ok















a

mailto:support@veilid.com


1
ok















img
src
/img/fonts.svg
200

1
ok
alt: Icon for Font Sizeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
357 Bytes






ETag: "8e85f15fd770ba8011a1e69bbf72c9e6-ssl"



img
src
/img/translate.svg
200

1
ok
alt: Icon for Translationsimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
801 Bytes






ETag: "6606c0b7d8e0a04e1bcaf42b5798ff1c-ssl"



img
src
/img/Veilid.svg
200

1
ok
alt: Veilid Logoimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 3144/9622 Bytes






ETag: "15caa874cdf4676dc528cfbf6ba22157-ssl-df"



img
src
/img/Veilid-V-Outlined.svg
200

1
ok
no alt-Attributeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
Compression (br): 1795/6604 Bytes






ETag: "525b1d39928484744f4cf3822b5f4fc2-ssl-df"



link
alternate
https://veilid.com/


1
ok















link
alternate
https://veilid.com/atom.xml


1
ok















link
alternate
https://veilid.com/de/


1
ok















link
canonical
https://veilid.com/


1
ok















link
icon
https://veilid.com/favicon.06d10b70d275c50e015f690b947549c4.ico
200

1
ok
image/vnd.microsoft.icon
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 with long duration found.
No Compression - 270398 Bytes






ETag: "b36e6d75103f234de9664571f1ed500a-ssl"



link
shortcut icon
https://veilid.com/favicon.06d10b70d275c50e015f690b947549c4.ico
200

1
ok
image/vnd.microsoft.icon
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 with long duration found.
No Compression - 270398 Bytes






ETag: "b36e6d75103f234de9664571f1ed500a-ssl"



link
stylesheet
/css/style.d29ab5054f583c9ff8cd3191bcb4856f.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31536000 - with long duration found.
Compression (br): 21393/175623 Bytes






ETag: "077730d6b697564dbeeb47938524ef2d-ssl-df"

local SRI possible, possible hash-values:

 

sha256-zpx7CGri1yY+I7dncybgYl7T8Th4FPkcj1oFsQNoJdI=
sha384-B39KX2EF9cmAh0pICRt0c8KrHluIQDYf/2Act/hejMQRzF5YE2d/Z7yEJ5SPChbb
sha512-0x+5mFb8OVZoaHGQw65foX8H/koHPkpw3xzDZG4G3P8C0TMQU9ipk00ZVwtnSQzO7nj9njS9V2g2mK2s2LUfDg==

 

<link rel="stylesheet" href="/css/style.d29ab5054f583c9ff8cd3191bcb4856f.css" crossorigin="anonymous" integrity="sha256-zpx7CGri1yY+I7dncybgYl7T8Th4FPkcj1oFsQNoJdI=" />



meta
charset
UTF-8


1
ok















meta
og:description
Veilid is an open-source, distributed application framework.


1
ok















meta
og:image
https://veilid.com/thumbnails/1200/img/Veilid-Framework-Cover.e54684450769dd3a4a9766f80082b3df.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 80228 Bytes






ETag: "e7a31f0310e13b2d4701fb0051ef3e33-ssl"



meta
og:image:alt
Veilid


1
ok















meta
og:image:height
675


1
ok















meta
og:image:type
image/png


1
ok















meta
og:image:width
1200


1
ok















meta
og:locale
en_EN


1
ok















meta
og:site_name
Veilid


1
ok















meta
og:title
Veilid


1
ok















meta
og:type
website


1
ok















meta
og:url
https://veilid.com/
200

1
ok
text/html; charset=UTF-8
X-Content-Type-Options nosniff found





1544 Bytes






ETag: "100fdec4435728d62a902ac353d8824f-ssl-df"



meta
author
Cecil


1
ok















meta
description
Veilid is an open-source, distributed application framework.


1
ok















meta
generator
Cecil 8.42.2


1
ok















meta
robots
index,follow


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:description
Veilid is an open-source, distributed application framework.


1
ok















meta
twitter:image
https://veilid.com/thumbnails/1200/img/Veilid-Framework-Cover.e54684450769dd3a4a9766f80082b3df.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, must-revalidate, max-age=0 - max-age too short.
No Compression - 80228 Bytes






ETag: "e7a31f0310e13b2d4701fb0051ef3e33-ssl"



meta
twitter:image:alt
Veilid


1
ok















meta
twitter:site
@veilidnetwork


1
ok















meta
twitter:title
Veilid


1
ok















meta
viewport
width=device-width, initial-scale=1.0


1
ok















video




1
ok
















• source
/Ellet-intro.mp4
video/mp4
200

1
ok
video/mp4
X-Content-Type-Options nosniff found





27243509 Bytes






ETag: "4ffef970553942aceb1924a327a397ce-ssl"


 

12. Html-Parsing via https://validator.w3.org/nu/

Url used (first standard-https-result with http status 200): https://veilid.com/

Summary

Good: No non-document-errors
2 errors
0 warnings

TypeMessagenum found
1.errorStray end tag source.1
2.errorAn img element must have an alt attribute, except under certain conditions. For details, consult guidance on providing text alternatives for images.1

Details


TypeMessage + Sample
1errorStray end tag source.

From line 60, column 5 to line 60, column 13

tag. </source></vide
2errorAn img element must have an alt attribute, except under certain conditions. For details, consult guidance on providing text alternatives for images.

From line 150, column 16 to line 150, column 70

<p><img src="/img/Veilid-V-Outlined.svg" id="footer-logo"></p>

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: dns1.p01.nsone.net, dns2.p01.nsone.net, dns3.p01.nsone.net, dns4.p01.nsone.net

 

QNr.DomainTypeNS used
1
net
NS
f.root-servers.net (2001:500:2f::f)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
dns1.p01.nsone.net: 198.51.44.1, 2620:4d:4000:6259:7:1:0:1
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns2.p01.nsone.net
198.51.45.1, 2a00:edc0:6259:7:1::2

Answer: dns3.p01.nsone.net
198.51.44.65, 2620:4d:4000:6259:7:1:0:3

Answer: dns4.p01.nsone.net
198.51.45.65, 2a00:edc0:6259:7:1::4

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.veilid.com
0

no CAA entry found
1
0
veilid.com
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
veilid.com
google-site-verification=0MukvKRecLTmiUHdVRNeVUMJruJvsOQaNW-OYzek8lg
ok
1
0
veilid.com
v=spf1 include:_mailcust.gandi.net ?all
ok
1
0
www.veilid.com

ok
1
0
_acme-challenge.veilid.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.veilid.com

Name Error - The domain name does not exist
1
0
_acme-challenge.veilid.com.veilid.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.veilid.com.veilid.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.veilid.com.www.veilid.com

Name Error - The domain name does not exist
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

veilid.com
10
spool.mail.gandi.net
02ok

A


217.70.178.1
01ok

AAAA


2001:4b98:e00::1
01ok

CNAME


00ok
MX

veilid.com
50
fb.mail.gandi.net
02ok

A


217.70.178.216
03ok

A


217.70.178.217
03ok

A


217.70.178.215
03ok

AAAA


2001:4b98:dc4:8::216
03ok

AAAA


2001:4b98:dc4:8::215
03ok

AAAA


2001:4b98:dc4:8::217
03ok

CNAME


00ok
SPF
TXT
veilid.com

v=spf1 include:_mailcust.gandi.net ?all
ok

TXT
_mailcust.gandi.net

v=spf1 include:_nblcust.gandi.net ?all
ok

TXT
_nblcust.gandi.net

v=spf1 ip4:217.70.178.192/26 ip6:2001:4b98:dc4:8::/64 ip4:217.70.183.192/28 ip4:217.70.182.72/32 ip4:217.70.182.74/32 ?all
ok
_dmarc
TXT
_dmarc.veilid.com

v=DMARC1; p=none;
ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
veilid.com
35.157.26.135
443
3 Ciphers28.81 sec
0 without, 3 FS
100.00 %
veilid.com
63.176.8.218
443
3 Ciphers27.90 sec
0 without, 3 FS
100.00 %
www.veilid.com
35.157.26.135
443
3 Ciphers28.46 sec
0 without, 3 FS
100.00 %
www.veilid.com
63.176.8.218
443
3 Ciphers28.86 sec
0 without, 3 FS
100.00 %
Complete

4
12 Ciphers
3.00 Ciphers/Check
114.04 sec28.51 sec/Check
0 without, 12 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
veilid.com
35.157.26.135
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.81 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


63.176.8.218
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 27.90 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

www.veilid.com
35.157.26.135
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.46 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


63.176.8.218
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 28.86 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=c07e2154-809d-430a-8c17-d97fa128b61f

 

Last Result: https://check-your-website.server-daten.de/?q=veilid.com - 2025-07-08 19:53:32

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=veilid.com" target="_blank">Check this Site: veilid.com</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=veilid.com