Skip to content
Audit Complete

Results for https://news.ycombinator.com

Visit site
Netherlands Netherlands · Amsterdam Completed: Apr 23, 2026 09:49 UTC
Download Markdown Report

Your site declined by 13 points (C → D)

Compared to scan from 5 days ago

View previous audit
D66

Site Health

Score: 66 / 100 13

Based on 4 categories, 27 sections

Good foundation, but a few gaps could be exploited.

Major barriers for users with disabilities — up to 15% of your audience.

Solid infrastructure — fast server responses across the board.

Several regulatory requirements are not yet met.

How is this calculated?

The overall score is a weighted average of individual category scores. Categories with more impact on user experience and security carry more weight.

Security 25%Accessibility 15%Infrastructure 10%Compliance 8%

Weights reflect general web best practices. Individual needs may differ.

How the composite score is calculated

How you compare

HSTS · 2221 peers
You 66
·
Avg 74
-8 below average
0 50 100
Nginx · 871 peers
You 66
·
Avg 73
-7 below average
0 50 100
Better than 1% of Nginx sites See full Nginx benchmark →

Top Priorities (5)

1

'unsafe-inline' found in script source

Security gaps expose your site and users to attacks, eroding trust.

Security › Content Security Policy
2

Cross-Origin-Embedder-Policy header is missing

Security gaps expose your site and users to attacks, eroding trust.

Security › Security Headers
3

Cross-Origin-Opener-Policy header is missing

Security gaps expose your site and users to attacks, eroding trust.

Security › Security Headers
4

HSTS is missing includeSubDomains

Security gaps expose your site and users to attacks, eroding trust.

Security › Security Headers
5

No DMARC record found

Without DMARC, anyone can send phishing emails using your domain name.

Security › Email Security
View fix priority matrix

Fix Priority Matrix

5 findings

Quick Wins

4

High impact, low effort — start here.

Strategic

1

High impact, requires investment.

Easy Improvements

0

Small gains, minimal effort.

Nothing in this quadrant — good news.

Deprioritize

0

Low impact, high effort — do last.

Nothing in this quadrant — good news.

← Low effort High effort →
BeaverCheck badge
Embed this badge
[![BeaverCheck](https://beavercheck.com/badge?url=https%3A%2F%2Fnews.ycombinator.com)](https://beavercheck.com/results/eb79a9ed-2966-45e7-933e-4ee4fdebb1d7)
<a href="https://beavercheck.com/results/eb79a9ed-2966-45e7-933e-4ee4fdebb1d7"><img src="https://beavercheck.com/badge?url=https%3A%2F%2Fnews.ycombinator.com" alt="BeaverCheck Score"></a>
https://beavercheck.com/badge?url=https%3A%2F%2Fnews.ycombinator.com

This badge auto-updates with your latest scan result.

What fixing these means

Your site has several issues that may be affecting user experience and business outcomes. Addressing the critical issues below would have the most immediate impact on your user trust.

5 security gaps detected — browsers may warn visitors about your site.

Conversion Barriers

1 critical 2 warning

3 barrier(s) likely increasing bounce by ~22%.

Trust (2)

No HSTS header

+1% bounce

Returning visitors are briefly exposed to downgrade attacks on first request

Fix: Set Strict-Transport-Security: max-age=31536000; includeSubDomains

No Content-Security-Policy header

+1% bounce

Higher XSS blast radius — one compromised script can exfiltrate the checkout form

Fix: Ship a reporting-only CSP first, then enforce once violations are clean

Usability (1)

No viewport meta tag

+15% bounce

Mobile browsers render at desktop width and shrink — text unreadable, tap targets miniature

Fix: Add <meta name="viewport" content="width=device-width, initial-scale=1">

Preliminary CRO audit — each barrier links to the tab with detailed analysis.

Return on Investment

$300 investment → $0.00/month returns + USD 7,500 risk avoided

First-year ROI: -100%

Investment

$300

3h · 5 findings

Monthly returns

$0.00 /mo

~$0.00 / year

    Regulatory risk avoided

    USD 7,500

    if kept compliant

    • CCPA/CPRA USD 7,500

    $200 — in quick wins — start here for the fastest payback

    Figures combine localized regulatory fine ceilings, search/conversion value priced against local CPC, and bandwidth waste estimates. Results depend on implementation quality and audience composition. Not legal or financial advice.

    Full methodology & sources

    Estimated Remediation Cost

    $300

    3.0 developer hours at $100/hr

    Based on United States rates ($100/hr)

    Quick wins
    $200 4 fixes in ~120 minutes

    Start here for the best return on investment

    Cost by category

    Cost by effort level

    Adjust assumptions
    $ /hr

    Rates reflect fully-loaded developer cost including overhead

    How developer rates are sourced

    What Inaction Is Costing You

    $625 / month at risk

    ~$7,500 / year if left unfixed

    Compliance Risk

    $7,500

    CCPA/CPRA
    • No privacy policy link detected
      CCPA/CPRA: USD 2,500 – USD 7,500

    Compliance figures represent the statutory maximum fine for the most severe triggered category, capped per regulation — not the sum of per-finding penalties. Based on published regulatory fine ranges. This is not legal advice.

    Compliance methodology · SEO assumptions · Bandwidth model

    Was this report useful?

    Thanks for your feedback!

    Global Performance 6/6 locations
    NL Amsterdam
    Full audit
    587ms
    DNS 4ms · TLS 293ms
    US Santa Clara
    101ms
    DNS 31ms · TLS 36ms
    UN New York
    262ms
    DNS 5ms · TLS 128ms
    ES Madrid
    672ms
    DNS 39ms · TLS 317ms
    SG Singapore
    912ms
    DNS 200ms · TLS 357ms
    BR Sao Paulo
    714ms
    DNS 41ms · TLS 338ms
    CDN: No CDN · Avg TTFB: 542ms · Cache: private; max-age=0
    Recent Trends
    Performance stable →
    100
    TTFB stable →
    587ms
    FCP stable →
    857ms
    LCP stable →
    934ms

    We'll use a cached audit if available, or offer to scan.

    Checking for existing audit...

    Lighthouse Scores

    Industry-standard audits powered by Google Lighthouse.

    Core Web Vitals

    Key metrics that affect user experience.

    Desktop audit not available for this result.

    Send Feedback