ABC Trainerize · Domain Security

Trainerize Domain Security

Domain security

Domain security posture for ABC Trainerize, probed live across 4 host(s) and 1 registrable domain(s). 4 host(s) serve HTTPS (up to TLSv1.3); 3 advertise HSTS. Email/DNS controls: DNSSEC absent, SPF present, DMARC present (p=none).

FitnessPersonal TrainingCoachingFitness SoftwareClient ManagementSaaS

Transport & Host Security

www.trainerize.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: yes · cert expires: Oct 6 21:06:58 2026 GMT
trainerize.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: yes · cert expires: Jan 15 23:59:59 2027 GMT
api.trainerize.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: no · cert expires: Jan 15 23:59:59 2027 GMT
help.trainerize.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: yes · cert expires: Sep 23 23:39:36 2026 GMT

Domain (DNS/Email) Security

trainerize.com
DNSSEC: no · SPF: yes · DMARC: yes (p=none) · CAA: none

Source

Domain Security

Raw ↑
generated: '2026-07-12'
method: probed
source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts
hosts:
- host: www.trainerize.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Oct  6 21:06:58 2026 GMT
  hsts: true
  hsts_max_age: 31536000
  server: Cloudflare (fronting)
  note: Marketing / app site. Fronted by Cloudflare.
- host: trainerize.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Jan 15 23:59:59 2027 GMT
  hsts: true
  hsts_max_age: 31536000
  note: Apex redirects (301) to www.
- host: api.trainerize.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Jan 15 23:59:59 2027 GMT
  hsts: false
  server: Microsoft-IIS/10.0 (ASP.NET Web API, behind Cloudflare + AWS ELB)
  note: >-
    Live API host. Root returns 403 Forbidden; the /v03 version prefix responds
    200. No HSTS header observed on the API host. Requires provisioned
    credentials (Studio/Enterprise).
- host: help.trainerize.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Sep 23 23:39:36 2026 GMT
  hsts: true
  hsts_max_age: 259200
  note: Zendesk-hosted help center (CNAME to trainerize.zendesk.com). Returns 403 to automated fetchers.
domains:
- domain: trainerize.com
  dnssec: false
  caa: []
  spf: true
  spf_policy: '-all'
  spf_record: 'v=spf1 include:spf.recurly.com include:spf.mandrillapp.com include:mail.zendesk.com include:_spf.google.com include:us._netblocks.mimecast.com include:spf.protection.outlook.com ip4:192.54.252.0/24 ip4:168.215.168.0/24 -all'
  dmarc: true
  dmarc_policy: none
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com