Website profiles · Technology insights · Alternatives

speed.cloudflare.com No paid content found Multilingual

Categories: Security & Privacy

Test your Internet connection. Check your network performance with our Internet speed test. Powered by Cloudflare's global edge network.

Visit website

Updated: 2026-09-23 14:00 Language: English (default) Access: Normal

Profile views 1 Outbound visits 0
Internet Speed Test - Measure Network Performance | Cloudflare Full homepage screenshot

Related questions

More questions →
Cybersecurity Basics: What It Protects and How to Apply It to Your Website

Cybersecurity is the practice of keeping your data, accounts, and services from being accessed, stolen, altered, or knocked offline by someone who shouldn't have them. For a personal site or small online presence, that reduces to a short list of concrete jobs: protect your login credentials, keep your software current, serve traffic over HTTPS, and lock down the domain and DNS layer that everything else depends on. You don't need an enterprise security team to cover the basics — but you do need to treat your registrar account and your hosting account as the two most valuable things you own, because whoever controls those controls the site.

What cybersecurity actually protects

It helps to separate the assets from the threats, because most small-site incidents come from a handful of causes.

Asset What can go wrong Primary protection
Accounts (registrar, hosting, email, CMS admin) Credential theft, password reuse, session hijacking Unique passwords + multi-factor authentication (MFA)
Data in transit Eavesdropping, tampering, browser warnings HTTPS/TLS certificate
Software (CMS, plugins, themes) Malware, backdoors, defacement Timely updates, minimal plugins
Domain and DNS records Unauthorized transfer, DNS hijacking, spoofed email Registrar account protection, registrar lock, DNSSEC
Availability DDoS, resource exhaustion Hosting/CDN/WAF layer

The pattern: each asset has one or two controls that remove most of the risk. You don't need all of them on day one, but skipping the account and domain layers is the mistake that's hardest to undo.

The threat categories a small site actually faces

  • Credential theft — reused or weak passwords, or credentials leaked from another breached service. This is the most common way small sites fall.
  • Phishing — fake login pages or "your domain is expiring" emails designed to capture your registrar or hosting password.
  • Malware and backdoors — usually arriving through an outdated CMS, plugin, or theme.
  • DDoS — flooding a site until it's unreachable; often handled by your host or a CDN rather than by you.
  • Misconfiguration — an open admin panel, directory listing, or default credentials left in place.

Notice that four of the five are about access, not exotic exploits. That's why the basics work.

Core protections to apply first

Use strong, unique passwords and a password manager

Every account tied to your site — registrar, host, CMS, email — should have a different password. A password manager makes this practical. The goal is that one leaked password can't be replayed anywhere else.

Turn on multi-factor authentication

MFA is the single highest-value control for your registrar and hosting accounts. Even if a password is stolen, an attacker without the second factor can't log in. Prefer an authenticator app or hardware key over SMS where the service supports it.

Serve everything over HTTPS

An HTTPS/TLS certificate encrypts traffic between visitors and your site and prevents browser "not secure" warnings. Most hosts and registrars offer a free certificate; the important part is that it's installed and that HTTP redirects to HTTPS.

Update promptly and keep the surface small

Apply CMS, plugin, and theme updates as they're released, and delete anything you're not using. Fewer components means fewer places for a known vulnerability to sit unpatched.

Apply least privilege

Give each person (and each integration) only the access they need. Don't run your site day-to-day from an administrator account, and don't hand out admin rights for tasks that don't require them.

Secure the domain and DNS layer

This layer is easy to overlook and expensive to lose, because a hijacked domain can point anywhere.

  • Protect the registrar account with a unique password and MFA. Your registrar account is the root of control over the domain.
  • Enable the registrar lock (often called a transfer lock or clientTransferProhibited) so the domain can't be moved without your action.
  • Keep registrant contact email secure — that inbox is often the recovery path for the domain.
  • Enable DNSSEC where your registrar and DNS provider support it, so responses can be cryptographically validated and spoofing is harder.
  • Watch for unauthorized DNS changes — if records you didn't touch appear, treat it as a compromise.

Porkbun is an ICANN-accredited domain registrar, which means it operates under ICANN's registrar rules — relevant here because those rules govern transfers, locks, and registrant contact requirements. Its site lists Stripe among its payment platforms. Beyond that, check your specific registrar's and DNS provider's current feature set for lock and DNSSEC support, since availability varies.

Warning signs and first steps if something looks wrong

Watch for: unexpected DNS records, visitors reporting malware warnings, unexplained admin accounts, a sudden traffic drop, or emails about transfers you didn't request.

If you suspect a compromise:

  1. Change passwords on registrar, hosting, and CMS accounts, starting with the registrar.
  2. Revoke active sessions and reset MFA where possible.
  3. Check DNS records against what you expect and revert unauthorized changes.
  4. Restore from a known-good backup if files were altered.
  5. Re-scan and update the software before reopening the site.

Containment first, then recovery — don't try to clean a live, still-compromised site.

What to outsource vs. manage yourself

Decide based on Manage yourself Outsource
Site size Small static or low-traffic site Growing or high-traffic site
Risk tolerance Low-stakes personal project Anything handling user data or payments
Time You can patch and monitor regularly You can't commit to ongoing upkeep
Threats Basic credential and update hygiene DDoS, WAF, and 24/7 monitoring needs

Hosting-level security, CDN, and WAF are usually worth outsourcing because they require scale and constant attention. Account hygiene, MFA, updates, and domain/DNS protection are things you should keep in your own hands regardless of size — they're cheap to do and costly to skip.

Website Overview

An established domain and managed infrastructure suggest continuity of operations and may support dependable delivery, although neither guarantees service quality. Page metadata, canonical configuration and social previews work together to provide more consistent search and sharing presentation.

Domain and Registration

Registered in 2009, this domain has about 17 years of history. That suggests continuity, although ownership and purpose may have changed. Transfer-protection status is present, helping reduce the risk of unauthorized domain transfers. The registrar is Cloudflare, Inc., a widely used domain service provider. The domain uses the common .com extension, which is not an independent safety signal.

DNS and Email

The lowest TTL is 46 seconds, supporting rapid record changes at the cost of more frequent lookups. Nameservers are provided by Cloudflare, indicating managed DNS hosting. MX records point to the Cloudflare Email Routing email service. DNSSEC is enabled, allowing validating resolvers to authenticate signed DNS data. CAA records restrict which certificate authorities are authorized to issue certificates.

TLS and Certificates

The public key uses EC with 256 bits. The server supplied a complete certificate chain. No organization name is present in the certificate; the available fields are consistent with domain validation. The certificate was issued within the Google Trust Services cloud or CDN ecosystem. The certificate's total validity is about 90 days, consistent with a short renewal cycle.

HTTP and Browser Security

The response lacks these common security headers: HSTS, CSP, X-Content-Type-Options, Referrer-Policy, Permissions-Policy. No X-Powered-By header was found, reducing one common source of backend fingerprinting information. The cf-ray response header indicates a CDN or caching proxy in the delivery path. No obvious internal addresses or debug information were found in the headers. The Server header identifies cloudflare without an exact version.

Technology Stack Analysis

The public page identifies Cloudflare without precise versions, leaving fewer clues for version-specific scanning.

Search and Social Sharing

Twitter Card metadata is configured. The page declares 15 language or regional alternatives using hreflang. The title has 62 characters, within a common display range. A meta description is present, with 136 characters. The observed directives allow indexing and link following.

Hosting and Email

DNSCloudflare
HostingCloudflare
EmailCloudflare Email Routing
Location United States flagUnited States 162.159.140.220

User reviews (0)

  • No reviews yet.

Pages, Search and Sharing

Meta descriptionTest your Internet connection. Check your network performance with our Internet speed test. Powered by Cloudflare's global edge network.
Canonical URLhttps://speed.cloudflare.com/
LanguageEnglish (default) · Multilingual
Twitter Cardsummary_large_image
All bots 0 allowed · 7 disallowed
  • Disallow/__down
  • Disallow/__up
  • Disallow/__log
  • Disallow/__results
  • Disallow/__preview
  • Disallow/__preview_card
  • Disallow/i18n/

Registration details RDAP / WHOIS

RegistrarCloudflare, Inc.
Registered2009-02-17
Expires2033-02-17
Domain statusclient delete prohibited、client transfer prohibited、client update prohibited、server delete prohibited、server transfer prohibited、server update prohibited
Nameserversns3.cloudflare.com、ns4.cloudflare.com、ns5.cloudflare.com、ns6.cloudflare.com、ns7.cloudflare.com
DNSSECsigned

DNS records

TypeNameValueTTLPriority
Aspeed.cloudflare.com162.159.140.22046
Aspeed.cloudflare.com172.66.0.21846
AAAAspeed.cloudflare.com2606:4700:7::da300
AAAAspeed.cloudflare.com2a06:98c1:58::da300
MXcloudflare.commxa-canary.global.inbound.cf-emailsecurity.net3415
MXcloudflare.commxb-canary.global.inbound.cf-emailsecurity.net3415
MXcloudflare.commxa.global.inbound.cf-emailsecurity.net34110
MXcloudflare.commxb.global.inbound.cf-emailsecurity.net34110
NScloudflare.comns3.cloudflare.com86400
NScloudflare.comns4.cloudflare.com86400
NScloudflare.comns5.cloudflare.com86400
NScloudflare.comns6.cloudflare.com86400
NScloudflare.comns7.cloudflare.com86400
TXTcloudflare.comDirectFedAuthUrl=https://cloudflare-security.cloudflareaccess.com/cdn-cgi/access/sso/saml/dba6756ad312fc13c45f705cf7f5e87f4d658be016c41f950329aa4085b3abc1300
TXTcloudflare.comDirectFedAuthUrl=https://cloudflare-security.cloudflareaccess.com/cdn-cgi/access/sso/saml/ebec933773c69c93420d13e6776adb8c4a190f6281f9d132bcebd7dcb0967bdd300
TXTcloudflare.comMS=ms70274184300
TXTcloudflare.comZOOM_verify_7LFBvOO9SIigypFG2xRlMA300
TXTcloudflare.com_neqmkgaq1lq9it5s8qmetrhbnu121wb300
TXTcloudflare.com_saml-domain-challenge.2dc00405-79cd-457b-b288-a119c6f0c7b7.71996d53-d178-4ba9-bef4-7f7e46edab74.cloudflare.com=1c8736fd-84b2-4197-985f-3fb2852f2457300
TXTcloudflare.com_wkjc0fot0d7qrvrdt78bxkj2e2o67d2300
TXTcloudflare.comapple-domain-verification=DNnWJoArJobFJKhJ300
TXTcloudflare.comasv=894f6d1f9f83bcf44e4b1bc40bc1c4aa300
TXTcloudflare.comatlassian-domain-verification=WxxKyN9aLnjEsoOjUYI6T0bb5vcqmKzaIkC9Rx2QkNb751G3LL/cus8/ZDOgh8xB300
TXTcloudflare.comcanva-site-verification=oOyaVnHC-OiFoR1BPvetNA300
TXTcloudflare.comcisco-ci-domain-verification=27e926884619804ef987ae4aa1c4168f6b152ada84f4c8bfc74eb2bd2912ad72300
TXTcloudflare.comcreatopy-domain-verification=97d2ca50-9b6f-4a21-9bdb-fbb630e4cec7300
TXTcloudflare.comdatabank-domain-verification-hkehd2=fzgu4kmbZwMoW99zENgO4u8NL300
TXTcloudflare.comdocker-verification=c578e21c-34fb-4474-9b90-d55ee4cba10c300
TXTcloudflare.comdrift-domain-verification=f037808a26ae8b25bc13b1f1f2b4c3e0f78c03e67f24cefdd4ec520efa8e719f300
TXTcloudflare.comfacebook-domain-verification=h9mm6zopj6p2po54woa16m5bskm6oo300
TXTcloudflare.comgoogle-site-verification=C7thfNeXVahkVhniiqTI1iSVnElKR_kBBtnEHkeGDlo300
TXTcloudflare.comgoogle-site-verification=ZdlQZLBBAPkxeFTCM1rpiB_ibtGff_JF5KllNKwDR9I300
TXTcloudflare.comjamf-site-verification=c-eUvHBbhgFxMulFSY-QJQ300
TXTcloudflare.comliveramp-site-verification=EhH1MqgwbndTWl1AN64hOTKz7hc1s80yUpchLbgpfY0300
TXTcloudflare.comlogmein-verification-code=b3433c86-3823-4808-8a7e-58042469f654300
TXTcloudflare.commiro-verification=bdd7dfa0a49adfb43ad6ddfaf797633246c07356300
TXTcloudflare.comonetrust-domain-verification=bd5cd08a1e9644799fdb98ed7d60c9cb300
TXTcloudflare.comstatus-page-domain-verification=r14frwljwbxs300
TXTcloudflare.comstripe-verification=5096d01ff2cf194285dd51cae18f24fa9c26dc928cebac3636d462b4c6925623300
TXTcloudflare.comstripe-verification=bf1a94e6b16ace2502a4a7fff574a25c8a45291054960c883c59be39d1788db9300
TXTcloudflare.comuber-domain-verification=58086039-150a-42a4-a4be-b4032921aa0f300
TXTcloudflare.comv=spf1 ip4:199.15.212.0/22 ip4:173.245.48.0/20 include:_spf.google.com include:spf1.mcsv.net include:spf.mandrillapp.com include:mail.zendesk.com include:stspg-customer.com include:_spf.salesforce.com -all300
CAAcloudflare.com0 iodef "mailto:[email protected]"300
CAAcloudflare.com0 issue "comodoca.com"300
CAAcloudflare.com0 issue "digicert.com; cansignhttpexchanges=yes"300
CAAcloudflare.com0 issue "letsencrypt.org"300
CAAcloudflare.com0 issue "pki.goog; cansignhttpexchanges=yes"300
CAAcloudflare.com0 issue "ssl.com"300
CAAcloudflare.com0 issuewild "comodoca.com"300
CAAcloudflare.com0 issuewild "digicert.com; cansignhttpexchanges=yes"300
CAAcloudflare.com0 issuewild "letsencrypt.org"300
CAAcloudflare.com0 issuewild "pki.goog; cansignhttpexchanges=yes"300
CAAcloudflare.com0 issuewild "ssl.com"300
DScloudflare.com2371 13 2 32996839a6d808afe3eb4a795a0e6a7a39a76fc52ff228b22b76f6d63826f2b986400
DMARC_dmarc.cloudflare.comv=DMARC1; p=reject; sp=reject; adkim=r; aspf=r; pct=100; rua=mailto:[email protected],mailto:[email protected]300

TLS and certificates

AssessmentNormal configuration
Supported protocolsTLSv1.2、TLSv1.3
Negotiated protocolTLSv1.3
Certificate subjectspeed.cloudflare.com
IssuerGoogle Trust Services
Valid until2026-11-22T09:29 · Remaining when checked: 59 days
Verification detailsCertificate trust: Passed · Hostname match: Passed

HTTP response headers

HeaderValue
content-typetext/html
servercloudflare
x-frame-optionsDENY

Identified technologies

Cloudflare