Changes
| Category | Previous | Current | Change |
|---|---|---|---|
| Composite | B (86) | A (93) | +7.000 |
| Performance | A (94) | A (94) | — |
| Security | B (87) | A (96) | +9.000 |
| Accessibility | B (83) | A (90) | +7.000 |
| SEO | B (85) | A (91) | +6.000 |
| Infrastructure | A (92) | A (92) | — |
| Compliance | D (66) | B (88) | +22.000 |
| Content | C (75) | A+ (98) | +23.000 |
| Sustainability | A+ (98) | A+ (98) | — |
| Metric | Previous | Current | Change |
|---|---|---|---|
| Performance | 8800 | 7900 | -900 |
| Accessibility | 10000 | 10000 | — |
| Best Practices | 7300 | 7300 | — |
| SEO | 10000 | 10000 | — |
| PWA | 0 | 0 | — |
| Desktop Performance | 9200 | 9200 | — |
| Desktop Accessibility | 10000 | 10000 | — |
| Desktop Best Practices | 7300 | 7300 | — |
| Desktop SEO | 10000 | 10000 | — |
| FCP | 2.76 s | 2.78 s | — |
| LCP | 3.16 s | 3.40 s | +249 ms |
| TBT | 36 ms | 54 ms | +18 ms |
| CLS | 0.000 | 0.142 | +0.142 |
| Desktop FCP | 881 ms | 934 ms | +53 ms |
| Desktop LCP | 1.57 s | 1.56 s | — |
| Desktop TBT | 0 ms | 0 ms | — |
| Desktop CLS | 0.050 | 0.052 | +0.002 |
| TTFB | 702 ms | 707 ms | — |
| DNS † | 48 ms | 39 ms | -9 ms |
| TLS † | 22 ms | 22 ms | +1 ms |
| Connect | 17 ms | 17 ms | — |
| Total | 702 ms | 708 ms | — |
† Timing metrics may vary by worker location and do not necessarily indicate site changes.
content-security-policy default-src 'self'; script-src 'self' 'unsafe-inline' https://unpkg.com https... → default-src 'self'; script-src 'self' 'unsafe-inline' https://unpkg.com https...set-cookie sl-session=LMI+ROxwGWpjRlcObVBTRw==; SameSite=None; Secure; Path=/; Max-Age=8... → sl-session=BllkEZ5zGWpm9j4b2/2s7A==; SameSite=None; Secure; Path=/; Max-Age=8...17 headers unchanged
3 technologies unchanged
Looking ahead
+6 ptsEstimate — actual results may vary (16 issues to fix)
Website improvement report — Nu11cyber
May 28, 2026 → May 28, 2026
22
Resolved
10
New issues
6
Still remaining
Financial summary
Investment delivered
¥8,400 in development time
Investment remaining
¥11,638 to complete the remaining items
Ongoing risk
¥1/month in ongoing exposure
Figures are estimates based on local developer hourly rate, industry CPC, and regulatory fine ranges.
Performance by category
| Metric | Before | After | Change |
|---|---|---|---|
| Overall score | 86 (B) | 93 (A) | +7 |
| Performance | 94 (A) | 94 (A) | 0 |
| Security | 87 (B) | 96 (A) | +9 |
| Accessibility | 83 (B) | 90 (A) | +7 |
| SEO | 85 (B) | 91 (A) | +6 |
| Infrastructure | 92 (A) | 92 (A) | 0 |
| Compliance | 66 (D) | 88 (B) | +22 |
| Content | 75 (C) | 98 (A+) | +23 |
| Sustainability | 98 (A+) | 98 (A+) | 0 |
Resolved (22)
No meta description tag found (SEO)
→ Better search engine visibility
Dead-end page — no outgoing internal links (SEO)
→ Better search engine visibility
1 images missing explicit width/height (Content)
→ Stronger social sharing and on-page quality
https://nu11cyber.com/: 503ms CPU time (Performance)
→ Page loads faster for users
Unattributable: 386ms CPU time (Performance)
→ Page loads faster for users
https://nu11cyber.com/cdn-cgi/challenge-platform/s...: 250ms CPU time (Performance)
→ Page loads faster for users
Page has only 47 words — nearly empty (SEO)
→ Better search engine visibility
Thin content — only 47 words (SEO)
→ Better search engine visibility
No internal links found (SEO)
→ Better search engine visibility
No accessibility statement detected (Compliance)
→ Reduced regulatory exposure
frame-ancestors directive is missing (Security)
→ Reduced attack surface for visitors
SRI adoption: 0/1 third-party resources protected (0%) (Security)
→ Reduced attack surface for visitors
External script from challenges.cloudflare.com lacks integrity attribute (Security)
→ Reduced attack surface for visitors
GDPR Article 13 disclosure coverage: 0 / 8 categories (Compliance)
→ Reduced regulatory exposure
No Open Graph meta tags found (Content)
→ Stronger social sharing and on-page quality
…and 7 more resolved issue(s)
Recommended next steps (16)
- Sprint 3
Page has only 41 words — nearly empty (SEO)
- Sprint 2
1 non-essential cookie(s) set without consent banner (Compliance)
- Sprint 3
'unsafe-inline' found in script source (Security)
- Sprint 1
Soft 404: server returns HTTP 200 for non-existent pages (Accessibility)
- Sprint 3
Thin content — only 41 words (SEO)
- Sprint 1
https://nu11cyber.com/: 476ms CPU time (Performance)
- Sprint 2
2 render-blocking <script src> tag(s) without async/defer (Performance)
- Sprint 1
https://nu11cyber.com/assets/index-BLLxKUmE.js: 3106ms CPU time (Performance)
- Sprint 2
Total JS execution time is 4.4 s -- over the 3.5s budget (Performance)
- Sprint 2
All 3 images use legacy formats (JPEG/PNG/GIF) (Content)
- Sprint 1
<iframe> missing title attribute (src="") (Accessibility)
- Sprint 1
Unattributable: 373ms CPU time (Performance)
- Sprint 1
https://nu11cyber.com/cdn-cgi/challenge-platform/s...: 325ms CPU time (Performance)
- Sprint 1
Registrar lock is NOT enabled (Infrastructure)
- Sprint 1
Skip navigation link is missing (WCAG 2.4.1) (Accessibility)
…and 1 more recommended item(s)