CMS
BigCommerce Website Audit
BigCommerce audit: stencil apps and headers the control panel skips
· Configuration notes, not a newsroom.
SiteRune fingerprints cdn11.bigcommerce.com. Like Shopify, arbitrary security headers usually need a CDN in front. We skip cart.
BIWhat SiteRune checks on this stack
- CMS / framework fingerprint from HTML, headers, cookies, and generator tags — fingerprint-based, not a plugin inventory
- Titles, meta descriptions, canonicals, H1, and robots on the homepage and walked interiors
- Security headers a crawler can see: HTTPS, HSTS, CSP, framing, nosniff, Referrer-Policy, Permissions-Policy
- HTML TTFB, compression, and Cache-Control on the document — not a Lighthouse filmstrip
- AI-bot robots policy, llms.txt, and Organization / FAQ / Article JSON-LD
Common problems
- Marketing homepage looks finished; interior templates ship empty titles or leftover noindex
- Hosted CMS cannot set HSTS/CSP, so the brief tells you to put a proxy in front instead of inventing an admin UI
- A security plugin's 'block AI' preset Disallows GPTBot on a site that wanted citations
- Session cookies or no-store on every anonymous GET, so the CDN never caches HTML
Storefront tax
Scripts from apps and a theme that serves unresized product images are the usual performance findings. Keep product schema. Do not treat the control panel as a header UI — it is not.
Proxy for the headers we score
HSTS, CSP, COOP: Cloudflare or equivalent in front. llms.txt and robots are still origin files you can host or map. SiteRune will not crawl checkout. Public category HTML still needs titles and indexability.
FAQ
How do you know this is my stack?
Fingerprints in HTML, headers, cookies, and generator tags. Confidence is a score, not a certificate. Unknown stacks stay generic — we will not invent a CMS.
Do I need an account?
Three guest scans, no card. Create a free account when you want history and more interiors.
Run it on a live URL
Same scan engine. Guest scans stay free.