Skip to content

Changes

https://compaq-mtv-progressive-surgeons.trycloudflare.com
Compared to previous audit · 29 minutes ago View previous audit
5
New issues
8
Resolved
15
score changes
CategoryPreviousCurrentChange
CompositeB (83)B (85) +2.000
PerformanceA (92)A (92)—
SecurityB (81)B (87) +6.000
AccessibilityB (80)B (80)—
SEOB (89)B (89)—
InfrastructureB (86)B (86)—
ComplianceD (62)D (62)—
ContentB (80)B (80)—
SustainabilityB (85)B (88) +3.000
MetricPreviousCurrentChange
Performance 96009900 +300
Accessibility 89008900—
Best Practices 92009200—
SEO 66006600—
PWA 00—
Desktop Performance 99009900—
Desktop Accessibility 95009500—
Desktop Best Practices 92009200—
Desktop SEO 66006600—
FCP 2.09 s1.45 s -646 ms
LCP 2.09 s1.45 s -646 ms
TBT 89 ms58 ms -31 ms
CLS 0.0000.061 +0.061
Desktop FCP 672 ms684 ms +12 ms
Desktop LCP 672 ms684 ms +12 ms
Desktop TBT 0 ms12 ms +12 ms
Desktop CLS 0.0000.005 +0.005
TTFB †664 ms713 ms +49 ms
DNS 30 ms30 ms—
TLS †25 ms22 ms -3 ms
Connect 17 ms17 ms—
Total †667 ms714 ms +47 ms

† Timing metrics may vary by worker location and do not necessarily indicate site changes.

WARNING 12 text node(s) render below 12 CSS pixels on mobile accessibility
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: 267ms CPU time performance
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: 2118ms CPU time performance
WARNING Unattributable: 252ms CPU time performance
WARNING Transfer efficiency: 54% sustainability
CRITICAL Transfer efficiency: 45% sustainability
CRITICAL 'unsafe-inline' found in script source security
CRITICAL Cookie 'XSRF-TOKEN' is missing the Secure flag security
WARNING External link from fonts.bunny.net lacks integrity attribute security
WARNING SRI adoption: 0/1 third-party resources protected (0%) security
WARNING Cross-Origin-Opener-Policy header is missing security
WARNING Cross-Origin-Embedder-Policy header is missing security
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: 2319ms CPU time performance
CRITICAL 'unsafe-eval' found in script source security
CRITICAL HTTP version does not redirect to HTTPS infrastructure
WARNING Permissions-Policy header is missing security
WARNING No SPF record found security
WARNING 1 above-fold image(s) marked loading="lazy" (LCP anti-pattern) content
WARNING No favicon.ico at site root accessibility
WARNING GDPR Article 13 disclosure coverage: 0 / 8 categories compliance
WARNING Referrer-Policy header is missing security
WARNING No privacy policy found (page links and common paths checked) compliance
WARNING Terms of Service not detected compliance
WARNING 9 images missing explicit width/height content
WARNING X-Powered-By header reveals technology stack security
WARNING No Permissions-Policy header security
WARNING Skip navigation link is missing (WCAG 2.4.1) accessibility
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: 29 KB unused (94%) performance
WARNING X-Frame-Options header is missing security
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: unminified — 40 KB could be saved performance
WARNING No accessibility statement detected compliance
WARNING No <nav> landmark found accessibility
WARNING No canonical tag found seo
WARNING 100% of images have non-descriptive filenames seo
WARNING No DMARC record found security
WARNING 1 control(s) rely on placeholder only accessibility
WARNING 1 images significantly larger than display size content
WARNING All 9 images use legacy formats (JPEG/PNG/GIF) content
WARNING https://compaq-mtv-progressive-surgeons.trycloudfl...: 117 KB unused (80%) performance
WARNING 1 unclassified cookie(s) set before any consent step compliance
+ cross-origin-opener-policy same-origin
+ cross-origin-embedder-policy require-corp
content-security-policy
default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self... → default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self...
set-cookie
XSRF-TOKEN=eyJpdiI6Ilg3dGFHU2tuVS9HckdXSkIvK1hoVXc9PSIsInZhbHVlIjoia05mZ0RwL2... → XSRF-TOKEN=eyJpdiI6IkFtWFkraFZGa1lEMXJUODFjZVZESXc9PSIsInZhbHVlIjoiRE4wQ2lrZ1...

12 headers unchanged

− Bunny CDN
− Bunny Fonts Font scripts

8 technologies unchanged

Looking ahead

+11 pts
B (85) Could reach A (96)
Accessibility +16Compliance +16Content +13Security +13Infrastructure +10Performance +8SEO +8Sustainability +4

Estimate — actual results may vary (32 issues to fix)

Website improvement report — Compaq-mtv-progressive-surgeons.trycloudflare

September 25, 2026 → September 25, 2026

B B 83 → 85 +2 pts

8

Resolved

5

New issues

27

Still remaining

Financial summary

Investment delivered

$800 in development time

Investment remaining

$3,992 to complete the remaining items

Ongoing risk

$0/month in ongoing exposure

Figures are estimates based on local developer hourly rate, industry CPC, and regulatory fine ranges.

Performance by category

MetricBeforeAfterChange
Overall score83 (B)85 (B)+2
Performance92 (A)92 (A)0
Security81 (B)87 (B)+6
Accessibility80 (B)80 (B)0
SEO89 (B)89 (B)0
Infrastructure86 (B)86 (B)0
Compliance62 (D)62 (D)0
Content80 (B)80 (B)0
Sustainability85 (B)88 (B)+3

Resolved (8)

  • Transfer efficiency: 45% (Sustainability)

    → Lower carbon footprint per page view

  • External link from fonts.bunny.net lacks integrity attribute (Security)

    → Reduced attack surface for visitors

  • SRI adoption: 0/1 third-party resources protected (0%) (Security)

    → Reduced attack surface for visitors

  • Cross-Origin-Opener-Policy header is missing (Security)

    → Reduced attack surface for visitors

  • Cross-Origin-Embedder-Policy header is missing (Security)

    → Reduced attack surface for visitors

  • https://compaq-mtv-progressive-surgeons.trycloudfl...: 2319ms CPU time (Performance)

    → Page loads faster for users

  • 'unsafe-inline' found in script source (Security)

    → Reduced attack surface for visitors

  • Cookie 'XSRF-TOKEN' is missing the Secure flag (Security)

    → Reduced attack surface for visitors

Recommended next steps (32)

  • Sprint 3

    'unsafe-eval' found in script source (Security)

  • Sprint 1

    HTTP version does not redirect to HTTPS (Infrastructure)

  • Sprint 1

    12 text node(s) render below 12 CSS pixels on mobile (Accessibility)

  • Sprint 1

    https://compaq-mtv-progressive-surgeons.trycloudfl...: 267ms CPU time (Performance)

  • Sprint 1

    https://compaq-mtv-progressive-surgeons.trycloudfl...: 2118ms CPU time (Performance)

  • Sprint 1

    Unattributable: 252ms CPU time (Performance)

  • Sprint 1

    Transfer efficiency: 54% (Sustainability)

  • Sprint 1

    Permissions-Policy header is missing (Security)

  • Sprint 1

    No SPF record found (Security)

  • Sprint 1

    1 above-fold image(s) marked loading="lazy" (LCP anti-pattern) (Content)

  • Sprint 1

    No favicon.ico at site root (Accessibility)

  • Sprint 2

    GDPR Article 13 disclosure coverage: 0 / 8 categories (Compliance)

  • Sprint 1

    Referrer-Policy header is missing (Security)

  • Sprint 2

    No privacy policy found (page links and common paths checked) (Compliance)

  • Sprint 1

    Terms of Service not detected (Compliance)

…and 17 more recommended item(s)

Send Feedback