InfrastructureHeuristic — passive only3 checks
DDoS Protection Scanner
Evaluate your site's resilience against distributed denial-of-service attacks.
How this scan works
- Fingerprint CDN/WAF presence via headers (cf-ray, x-akamai-*, x-amz-cf-id, x-sucuri-id)
- Check whether DNS resolves straight to an origin IP (no proxy) vs. a CDN edge IP range
- Check for a challenge-page signature (JS challenge / CAPTCHA) on suspicious request patterns
- Passive only — this scanner never sends volumetric traffic, it only reads existing protection signals
