biztechra.site

Scanned:

Redirects to www.biztechra.site. Page checks were measured there; the certificate, DNS and reputation checks are for this domain.

Want one of these looked at properly?

This scan is broad and passive — it reads what your site shows everyone, across all five areas. A deep audit takes one of those areas and goes all the way down on your site specifically.

No email, no sign-up. Pick the one you care about.

Watch this site's security

We'll email you if its security slips: a new vulnerability, an expiring certificate, a blacklisting. No account needed.

Security alerts only. Nothing else, and no email unless something is wrong. Unsubscribe anytime.

Want more than security alerts?

Coming soon

Monitor: daily re-scans across all five axes, instant alerts on new and cert expiry, Telegram & web push, and full history.

Fix what matters first

  1. 1
    Core Web Vitals (PageSpeed)

    Improve Core Web Vitals — see the PageSpeed Insights report for specifics.

    +8
  2. 2
    Time to First Byte

    Reduce with caching, a CDN, or faster backend responses.

    +4
  3. 3
    IPv6 (AAAA record)

    Add an AAAA record to serve visitors over IPv6.

    +1

Recommendations are ranked by their impact on your score.

All checks

Security

100/ 100
  • Pass

    HTTPS & HTTP→HTTPS redirect

    HTTPS available; HTTP redirects to HTTPS

  • Pass

    TLS certificate validity

    Valid; expires in 37 days

    expires 2026-09-20 · YR1

    Good: valid certificate with 30 days or more to expiry

  • Pass

    HSTS (Strict-Transport-Security)

    Present

    max-age=63072000; includeSubDomains; preload
  • Pass

    Content-Security-Policy

    Present

    default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.…
  • Pass

    Core security headers

    All present

    present: X-Content-Type-Options, X-Frame-Options, Referrer-Policy
  • Pass

    Mixed content (HTTP on HTTPS)

    No insecure (http://) subresources

  • Pass

    SPF email anti-spoofing

    record present

    v=spf1 include:spf.privateemail.com ~all
  • Pass

    DMARC email anti-spoofing

    record present

    v=DMARC1; p=none;
  • N/A

    Vulnerable front-end libraries

    No recognizable front-end library versions detected

  • N/A

    CMS known vulnerabilities

    Next.js detected, but no reliable version — no vulnerability claim

Performance

45/ 100
  • Warn

    Time to First Byte

    Moderate

    827 ms

    Fast: under 800 ms · Moderate: 800–1800 ms · Slow: over 1800 ms

    Reduce with caching, a CDN, or faster backend responses.

  • Pass

    Text compression

    Enabled

    br
  • Pass

    HTTP/2 or HTTP/3

    Modern

    HTTP/2.0

    Modern: HTTP/2 or HTTP/3 · Outdated: HTTP/1.1 or older

  • Pass

    Cache-Control

    Present

    public, max-age=3600, stale-while-revalidate=59
  • Fail

    Core Web Vitals (PageSpeed)

    perf 78/100, 4.5 s, 0.00 (lab)

    Good: 2.5 s or less

    Improve Core Web Vitals — see the PageSpeed Insights report for specifics.

SEO

100/ 100
  • Pass

    Page title

    55 characters

    Digital Growth Agency for Startups & SMEs | BizTech

    Good: 10–70 characters

  • Pass

    Meta description

    122 characters

    AI-powered digital growth agency helping US startups and SMEs scale through SEO, HR outsourcing, consulting, and branding.

    Good: 50–160 characters

  • Pass

    Canonical URL

    Present

    https://www.biztechra.site
  • Pass

    robots.txt

    Present and not blocking

    https://www.biztechra.site/robots.txt
  • Pass
  • Pass

    Single H1

    1 H1 tag(s)

    You built the foundation. Now scale with a proven digital growth agency
  • N/A

    Image alt text

    No images on the page

  • Pass

    Structured data (JSON-LD)

    present

    WebPage, ReadAction, Country, PostalAddress, OpeningHoursSpecification, OfferCatalog

This page is clean. What about the rest of the site?

A clean page is a good sign and not a verdict on the site. The faults that cost the most traffic only exist between pages, so a single-page check cannot see them at all.

A full audit crawls up to 100 pages and checks

  • Indexability and crawling
  • On-page and content
  • Technical
  • Structured data and social previews
  • Links
  • Site-wide configuration

Free while in beta ($19 after launch). No domain verification — we only read pages your site already shows everyone.

Infrastructure

86/ 100
  • Pass

    CMS detection

    Detected

    Next.js
  • Pass

    Web server

    Identified

    Vercel
  • Pass

    CDN detection

    Detected

    Vercel
  • Pass

    TLS version

    Up to date

    TLS 1.3

    Up to date: TLS 1.2 or 1.3 · Deprecated: TLS 1.0 or 1.1

  • Warn

    IPv6 (AAAA record)

    No AAAA record

    Add an AAAA record to serve visitors over IPv6.

Reputation

100/ 100
  • Pass

    Google Safe Browsing

    Not flagged

    checked: Google Safe Browsing
  • Pass

    Domain blacklist status

    Not on major blocklists

    checked: Spamhaus DBL, SURBL
  • Pass

    Domain age

    Registered ~4 months ago

    2026-04-13

    Good: 90 days or more since registration

  • Pass

    Domain expiry

    Expires in 242 days

    2027-04-13

    Good: 30 days or more to expiry

Want one of these looked at properly?

This scan is broad and passive — it reads what your site shows everyone, across all five areas. A deep audit takes one of those areas and goes all the way down on your site specifically.

No email, no sign-up. Pick the one you care about.

Go deeper

This scan is passive. An attacker won't be.

The free scan reads what your site shows everyone. A Deep Audit does what an attacker does: it actively probes your verified site for what's really exposed.

This free scan (passive)

  • Security score
  • Known-CVE counts
  • Security headers
  • TLS & certificate
  • Blacklist & Safe Browsing

Deep Audit: active scan of your verified site

  • Per-CVE breakdown: IDs, severity, exploit availability, fix version
  • Exposed files (.git, .env, backups)
  • Directory listing
  • Open admin panels
  • Open ports
  • Subdomain exposure
  • Prioritized fix plan
  • Full PDF report

What we can't check without your permission

These need active probing of your site: exposed .git/.env/backups, open admin panels, open ports, forgotten subdomains. Verify your domain and we'll show you what an attacker would find.

How it works

  1. Verify your domain: a file or DNS record, about 2 minutes.
  2. We actively scan it: a few minutes; we email you when it's ready.
  3. Get your full report + PDF.

The deep scan is live and free while we're in beta. Verify your domain and run it now.

Active checks run only on a domain you've verified as yours, with your consent. We detect, never exploit. Free in beta; $39 one-time after launch, no subscription, and early adopters keep the deep scan free.

Run a free deep scan

Share this report

Request removal of this report

Recently checked

See all reports →