CMS
Blogger Website Audit
Blogger / Blogspot: a template, a custom domain, and almost no header UI
· Configuration notes, not a newsroom.
SiteRune fingerprints blogspot.com / blogger.com. Custom domains still miss HSTS unless a proxy sends it. AEO is possible if posts are public HTML.
BLWhat SiteRune checks on this stack
- CMS / framework fingerprint from HTML, headers, cookies, and generator tags — fingerprint-based, not a plugin inventory
- Titles, meta descriptions, canonicals, H1, and robots on the homepage and walked interiors
- Security headers a crawler can see: HTTPS, HSTS, CSP, framing, nosniff, Referrer-Policy, Permissions-Policy
- HTML TTFB, compression, and Cache-Control on the document — not a Lighthouse filmstrip
- AI-bot robots policy, llms.txt, and Organization / FAQ / Article JSON-LD
Common problems
- Marketing homepage looks finished; interior templates ship empty titles or leftover noindex
- Hosted CMS cannot set HSTS/CSP, so the brief tells you to put a proxy in front instead of inventing an admin UI
- A security plugin's 'block AI' preset Disallows GPTBot on a site that wanted citations
- Session cookies or no-store on every anonymous GET, so the CDN never caches HTML
Google-hosted, crawler-visible
Public posts are HTML. Use that. Titles, dates, an About page with an entity. llms.txt is awkward on blogspot — a custom domain with a mapped file or a reverse proxy is the adult path.
Headers
You will not set CSP in the Blogger dashboard. Cloudflare in front of the custom domain is the usual move. We still score the miss. That is honest, not a shakedown.
FAQ
How do you know this is my stack?
Fingerprints in HTML, headers, cookies, and generator tags. Confidence is a score, not a certificate. Unknown stacks stay generic — we will not invent a CMS.
Do I need an account?
Three guest scans, no card. Create a free account when you want history and more interiors.
Run it on a live URL
Same scan engine. Guest scans stay free.