76/100

Website check complete

Nearly ready

3 important improvements deserve attention.

Checked Sep 15, 2026 · 52 public signals · light scan · methodology 2026.09.1
0Fix first
3Important
5Improve
4Verified

Start here

What needs your attention.

8 total

View 4 more findings
Improve
Contact information is hard to findTrust & safety

Add a clearly linked contact page before launch so visitors can verify who is behind the product and what they agree to.

Improve
MIME sniffing protection is missingTechnical reliability

Return X-Content-Type-Options: nosniff on public responses.

Improve
Framing protection is not visibleTechnical reliability

Use CSP frame-ancestors or X-Frame-Options unless embedding the product is intentional.

Improve
The static document structure is difficult to navigateTechnical reliability

Use a main landmark and sequential headings so browsers, assistive technology, and agents can understand the page outline.

Foundmain present; max heading skip 2

The overview

Results by category.

Product clarityPassed100/100 historical
Trust & safety4 issues35/100 historical
Technical reliability4 issues70/100 historical
Search & AI discoveryPassed100/100 historical
View all checks and evidence 38 passed · 6 need review
fail
Security header quality · diagnostic

Evaluate CSP scope and HSTS duration instead of header presence alone.

CSP 0 directives · wildcard no · HSTS 63072000s
fail
Trust anchor pages · diagnostic

About, contact, privacy, and terms pages let visitors verify who operates the product.

about: no · privacy: no · terms: no · contact: no
partial
Agent when-to-use guidance · diagnostic

Tell agents which jobs the product is appropriate for and where to begin.

No explicit guidance detected
partial
DMARC email policy · diagnostic

DMARC quarantine or reject policies reduce spoofing once mail sources are aligned.

p=none · reporting no
partial
Heading structure · diagnostic

Use one H1 and avoid skipping heading levels so readers and agents can follow the document outline.

H1 1 · H2 4 · H3 9 · max skip 2
partial
Sitemap freshness metadata · diagnostic

Accurate lastmod values help crawlers prioritize changed pages.

2% of entries include lastmod
pass
A2A agent card · diagnostic

Products offering an A2A agent can publish a machine-readable agent card.

Valid JSON card found
pass
Accessible control names · diagnostic

Interactive elements need a text or ARIA-derived name.

71/71 statically nameable
pass
Accessible document landmarks · diagnostic

Semantic landmarks make the page structure understandable without visual layout.

3/4 common landmarks; main present
pass
Agent authentication document · diagnostic

Products with authentication can expose concise public setup and recovery guidance in auth.md.

Valid auth.md found
pass
Agent Skills index · diagnostic

A published Agent Skills index should be valid JSON and enumerate usable skill artifacts.

Valid JSON index found
pass
AI crawler reachability · diagnostic

The homepage is requested with common crawler and user-fetch agent identifiers.

3/3 user-agents received readable content
pass
Canonical URL · diagnostic

Declare the preferred public URL so crawlers consolidate duplicate variants.

https://ora.ai
pass
Content in initial HTML · diagnostic

Meaningful copy should be available without JavaScript execution.

481 words · 2488 characters · 3.3% content ratio
pass
Developer portal · diagnostic

Products with developer interfaces should expose a predictable developer entry point.

https://ora.ai/leaderboard?category=Developer%20Tools#top
pass
Document language · diagnostic

Declare the content language with a valid html lang attribute.

en
pass
Form control labels · diagnostic

Inputs, selects, and textareas should have associated labels.

3/3 labelled
pass
Helpful 404 response · diagnostic

A missing page should give a reader a recovery path such as home, docs, search, or sitemap.

368 readable characters
pass
Homepage indexing directives · diagnostic

The public homepage should not accidentally declare noindex.

No noindex directive
pass
HTTPS delivery · diagnostic

The public product should finish on an encrypted HTTPS origin.

https://ora.ai
pass
llms.txt · diagnostic

A useful llms.txt provides a concise product summary and links to canonical resources.

8186 characters · 16 links
pass
llms.txt link health · diagnostic

Links declared for agents should resolve to real public content.

2/2 sampled links healthy
pass
llms.txt structure · diagnostic

Use a title, summary, and described sections so the file works as a navigation index.

title yes · summary yes · sections yes
pass
Markdown code fences · diagnostic

Unbalanced code fences can hide the remainder of a Markdown document from parsers.

Balanced
pass
MCP server card · diagnostic

A server card lets clients understand an MCP server before connecting.

fields: name, description, version, tools
pass
Meta description · diagnostic

Summarize the product, audience, and value clearly for search and link previews.

168 characters
pass
Metadata completeness · diagnostic

Canonical URL, language, Open Graph image, and Open Graph type improve attribution and previews.

canonical yes · lang en · og:image yes · og:type website
pass
Mixed-content references · diagnostic

HTTPS pages should not reference insecure HTTP assets.

None detected
pass
Mobile viewport · diagnostic

A responsive viewport lets the page render at the correct width on mobile devices.

width=device-width, initial-scale=1
pass
Native interactive controls · diagnostic

Prefer native links, buttons, and form controls over clickable generic elements.

11 native · 0 non-native patterns
pass
No challenge or login wall · diagnostic

The public homepage should not require a challenge or sign-in before its content can be read.

No challenge/login language detected
pass
Open Graph metadata · diagnostic

Provide a title, description, type, and image for reliable launch-link previews.

title/description yes · image yes
pass
Page context budget · diagnostic

Keep extracted page content within a practical agent context budget.

2 pages sampled · largest 2,488 characters
pass
Page title · diagnostic

Use a concise, specific title that identifies the product and page.

36 characters · Ora | Make your site work for agents
pass
Primary product action · diagnostic

Make the next step explicit with clear action language and a valid destination.

Action language detected
pass
Public documentation · diagnostic

Link public documentation from a page visitors and agents already reach.

https://ora.ai/docs
pass
Redirect hygiene · diagnostic

Use HTTP redirects and avoid meta-refresh or JavaScript-only redirect stubs.

1 HTTP redirect(s)
pass
robots.txt agent policy · diagnostic

Crawler policies should intentionally distinguish training, search indexing, and user-requested retrieval.

ChatGPT-User: allowed · GPTBot: allowed · ClaudeBot: allowed · Claude-User: allowed · PerplexityBot: allowed · Google-Extended: allowed
pass
Sitemap validity · diagnostic

Publish a valid sitemap or sitemap index for canonical public URLs.

430 locations
pass
SPF email policy · diagnostic

A valid SPF policy helps recipients identify authorized senders; excessive DNS lookups can invalidate it.

~all · 2 lookup mechanism(s)
pass
Structured-data identity links · diagnostic

sameAs links help disambiguate the brand across authoritative profiles.

3 sameAs link(s)
pass
Structured-data quality · diagnostic

Use relevant JSON-LD types with enough identity fields to resolve the organization or product.

SoftwareApplication, Offer, Organization, ContactPoint, PostalAddress, WebSite, SearchAction, EntryPoint, Service, WebPage, SpeakableSpecification, ItemList, ListItem, FAQPage, Question, Answer · organization fields: name, url, logo, contactPoint, address
pass
Substantive sampled pages · diagnostic

Public pages should expose substantive content without a login or challenge wall.

2/2 sampled pages
pass
Unknown-path HTTP contract · diagnostic

Missing pages should return 404 or 410 instead of a successful app shell.

HTTP 404
info
Agent resource catalogs · diagnostic

Emerging catalogs can advertise APIs, agents, skills, and MCP surfaces from a well-known location.

ARD not found · API catalog not found
info
Domain contact email · diagnostic

A contact address on the product domain can strengthen operator identity and support trust.

Not observed
info
Markdown alternate discovery · diagnostic

Advertise a Markdown representation through content negotiation or an alternate link.

Not advertised
info
Markdown content negotiation · diagnostic

Canonical pages can optionally serve Markdown when requested and must vary caches by Accept.

HTML served for a Markdown request
info
OAuth discovery metadata · diagnostic

Products using delegated authorization should publish standard discovery metadata.

authorization server not found · protected resource not found
info
OpenAPI publication · diagnostic

Products with a public API should publish a machine-readable OpenAPI document.

Not discovered
info
Pricing discoverability · diagnostic

Products with public pricing should make it easy to find from the homepage.

Not discovered
info
Security contact · diagnostic

A security.txt file gives researchers a supported disclosure route.

Not found