Scanned sites / valokino.com

SEO report for valokino.com

The latest Site Spider scan of valokino.com, with 1 scan on record. Each scan is at its own address, for example /domain/valokino-com/2026-10-03-0310.

Latest scan

Scanned 10/3/2026, 3:10:35 AM, finished 10/3/2026, 8:05:09 AM

Site: https://valokino.com/

Download SQLite databaseEvery page and asset from this scan, with the crawl events, in one file.

76/ 100Good

On October 3, 2026 the Site Spider crawled 1071 pages and 362 assets of valokino.com, starting from https://valokino.com/. It scored 76 out of 100, a good result. 10 of 23 checks found something to fix, led by title tags (1,024), meta descriptions (1,019), headings (971); 6 checks passed. Most of the points went to title tags (−9.6), meta descriptions (−7.7), headings (−5.5). 7 checks found something the score does not count, listed as noted. The list below shows each check's result, the fix plan, when present, explains what to do first, and the security review at the end of the page covers headers, transport, libraries and exposed files.

Security review: Medium3 medium and 1 low findings. See the security findings ↓

Pages crawled
1071
Assets fetched
362
Status
Completed
Checks with issues
10 of 23
CoverageComplete crawl

1,433 of 1,433 discovered URLs were fetched. The crawl reached everything it found. HTML only: nothing here ran JavaScript. 95 link destinations on other sites were checked.

  • Title tags1,024 issues
    1024 of 1057 pages have title issues. 7 noindex or canonicalized pages excluded.
    −9.6 points
  • Meta descriptions1,019 issues
    1019 of 1057 pages have meta description issues. 7 noindex or canonicalized pages excluded.
    −7.7 points
  • Headings971 issues
    971 of 1057 pages have heading issues. 7 noindex or canonicalized pages excluded.
    −5.5 points
  • Broken links4 issues
    2115 internal links point at 4 broken URLs.
    −0.1 points
  • Links to other sites3,168 noted
    0 destinations answered with an error, 3 could not be determined (timeouts, rate limits or refusals), of 95 destinations checked.
  • RedirectsOK
    0 redirecting URLs, 0 of them chained.
  • Non-200 responses7 issues
    17 URLs did not return a 2xx response. 7 of them are pages, 7 with an error status; the rest are assets or redirects.
    −0.1 points
  • Rate limitedOK
    The site did not rate limit the crawler.
  • Indexability5 issues
    5 of 1064 indexable pages have indexability warnings.
  • Image alt text462 issues
    462 of 45266 image references have no alt attribute. 39055 use an empty alt (decorative), which is fine.
    −0.1 points
  • Heavy assetsOK
    0 assets larger than 500 KB among 362 fetched assets.
  • Orphan pages20 issues
    20 pages have no internal links pointing at them.
    −0.1 points
  • Sitemap coverage138 issues
    1 sitemap listing 949 URLs: 113 crawled pages missing, 5 listed URLs broken or redirecting, 20 reachable only via the sitemap.
    −0.8 points
  • Internal link counts500 noted
    Internal link counts for 500 pages; 500 worth a look.
  • Thin content5 issues
    5 of 1057 pages have fewer than 200 words. 7 noindex or canonicalized pages excluded.
  • Duplicate contentOK
    0 groups of pages with identical HTML.
  • URL format25 noted
    25 of 1071 page URLs are harder to read, share or cache than they need to be.
  • Canonicals12 noted
    12 of 1064 pages have a canonical worth checking.
  • Robots directivesOK
    No page carries a robots directive; all 1064 pages are open to search engines.
  • Anchor text91 noted
    91 destinations are linked without useful anchor text, or with nofollow.
  • Title and heading structure971 noted
    971 of 1057 pages could use the title, heading and snippet space better. 7 noindex or canonicalized pages excluded.
  • Image weight and alt length47 noted
    47 images over 100 KB; 0 with alt text over 100 characters.
  • Response anomaliesOK
    No redirect loops, header redirects or pages served as something other than HTML.

Where this site sits among all scanned sites

2071 sites, median 79%, average 78%

valokino.com scores 76%, higher than 34% of the 2071 scanned sites. See the full ranking.

0521030%: 0 sites1%: 0 sites2%: 0 sites3%: 0 sites4%: 0 sites5%: 0 sites6%: 0 sites7%: 0 sites8%: 0 sites9%: 0 sites10%: 0 sites11%: 0 sites12%: 0 sites13%: 0 sites14%: 0 sites15%: 0 sites16%: 0 sites17%: 0 sites18%: 0 sites19%: 0 sites20%: 0 sites21%: 1 site22%: 0 sites23%: 0 sites24%: 0 sites25%: 0 sites26%: 0 sites27%: 1 site28%: 0 sites29%: 0 sites30%: 0 sites31%: 0 sites32%: 0 sites33%: 1 site34%: 0 sites35%: 1 site36%: 2 sites37%: 2 sites38%: 3 sites39%: 2 sites40%: 2 sites41%: 1 site42%: 0 sites43%: 0 sites44%: 1 site45%: 4 sites46%: 5 sites47%: 4 sites48%: 4 sites49%: 3 sites50%: 5 sites51%: 6 sites52%: 9 sites53%: 6 sites54%: 7 sites55%: 7 sites56%: 5 sites57%: 11 sites58%: 15 sites59%: 7 sites60%: 12 sites61%: 9 sites62%: 18 sites63%: 19 sites64%: 18 sites65%: 36 sites66%: 24 sites67%: 39 sites68%: 34 sites69%: 31 sites70%: 36 sites71%: 63 sites72%: 67 sites73%: 58 sites74%: 58 sites75%: 76 sites76%: 76 sites77%: 87 sites78%: 95 sites79%: 83 sites80%: 97 sites81%: 103 sites82%: 100 sites83%: 93 sites84%: 90 sites85%: 69 sites86%: 70 sites87%: 62 sites88%: 68 sites89%: 47 sites90%: 37 sites91%: 43 sites92%: 24 sites93%: 19 sites94%: 14 sites95%: 7 sites96%: 5 sites97%: 9 sites98%: 2 sites99%: 1 site100%: 57 sites76% here100%90%80%70%60%50%40%30%20%10%0%

Green 90% and up (Excellent), lime 75 to 89 (Good), amber 50 to 74 (Needs work), red below 50 (Poor).

Internal link map

Loading the link map...

Start page (centre)OKRedirectErrorOrphanLinked from most pagesOne inbound link or noneRings = clicks from the start page. Size = inbound links. Drag to pan, scroll to zoom, click a page to see only its links.

Fix plan

Written by gpt-4o-mini from the scan findings

Written from an earlier version of the analysis (rules v4). The findings on this page have been recomputed since, so counts and labels here may differ from what the plan describes. The advice still points at the same checks.

Several important SEO issues need addressing, particularly broken links and missing meta descriptions. Focus on fixing these for better user experience and visibility.

  1. 1

    Fix Broken Links

    Why: Eliminating broken links improves user experience and site credibility.

    How: Identify and remove or update the links pointing to broken URLs.

    Checks: broken-links

  2. 2

    Resolve Non-200 Responses

    Why: Correcting error responses can enhance accessibility and search engine crawling.

    How: Review and fix the listed URLs that returned errors (404, 503).

    Checks: status-codes

  3. 3

    Improve Title Tags

    Why: Optimized title tags boost SEO rankings and click-through rates.

    How: Create unique and informative titles for the affected pages.

    Evidence: 6 pages share the title "Page", which usually means one template writes it for all of them.

    6 pages affected

    Depends on: If these pages really are the same content, the duplicate title is a symptom: canonicalise them to one URL instead.

    Checks: titles

  4. 4

    Enhance Meta Descriptions

    Why: Effective meta descriptions increase click-through rates from search results.

    How: Write engaging meta descriptions for the pages lacking them.

    Checks: meta-descriptions

  5. 5

    Add Missing Headings

    Why: Headings improve structure and readability, which is beneficial for SEO.

    How: Add a clear H1 to the pages lacking it.

    Checks: headings

  6. 6

    Address Orphan Pages

    Why: Linking orphan pages increases their discoverability and indexability.

    How: Add internal links to the orphan pages from relevant content.

    Checks: orphan-pages

Generated automatically; verify each change against your own site before relying on it.

Security review

Written by gpt-4o-mini from 16 checks over the crawl

The website valokino.com has several security issues, including missing security headers and vulnerable JavaScript libraries. Implementing recommended fixes will strengthen the site's defenses against potential attacks.

  • 0 high
  • 3 medium
  • 1 low
  • 0 info
  1. 1

    Missing Content Security PolicyMedium

    Why it matters: No Content-Security-Policy header is set, allowing unrestricted loading of resources, which increases the risk of cross-site scripting attacks.

    Fix: Add a Content-Security-Policy header with a restrictive policy, e.g., "default-src 'self'; script-src 'self'".

    Evidence: Content Security Policy

  2. 2

    Missing Secure and HttpOnly Cookie FlagsMedium

    Why it matters: Cookies lacking HttpOnly and Secure flags are vulnerable to theft and exposure during transmission over non-secure connections.

    Fix: Set the HttpOnly flag for the XSRF-TOKEN cookie: `Set-Cookie: XSRF-TOKEN=value; HttpOnly; Secure; SameSite=Strict`.

    Evidence: Cookie flags

  3. 3

    Outdated jQuery Libraries with VulnerabilitiesMedium

    Why it matters: Using outdated libraries can lead to known security vulnerabilities being exploited.

    Fix: Upgrade jQuery to version 3.5.0 and jQuery UI to version 1.13.2 to patch known vulnerabilities.

    Evidence: Vulnerable JavaScript libraries

  4. 4

    Exposing Software Version InformationLow

    Why it matters: The server and PHP version are revealed, which can help attackers exploit known vulnerabilities.

    Fix: Remove the `X-Powered-By` header by updating the server configuration. Consider using a CDN without revealing server details.

    Evidence: Software version disclosure

What the checks found

  • FoundContent Security PolicyMedium

    None of the 1064 HTML pages send a Content-Security-Policy header or meta tag, so the browser has no restriction on where scripts, styles and frames may load from.

    • https://valokino.com/ → no content-security-policy
    • https://valokino.com/category/home-lifestyle → no content-security-policy
    • https://valokino.com/subcategory/cat-22-bedding-and-bath → no content-security-policy
    • https://valokino.com/products/sub-229-bath-accessories → no content-security-policy
    • https://valokino.com/products/sub-229-bedsheet → no content-security-policy
    • https://valokino.com/products/sub-229-blanket-and-comforter → no content-security-policy
    • https://valokino.com/products/sub-229-mattress → no content-security-policy
    • https://valokino.com/products/sub-229-pillow → no content-security-policy
    • https://valokino.com/products/sub-229-towel → no content-security-policy
    • https://valokino.com/subcategory/cat-22-cleaning-and-laundry → no content-security-policy
    • https://valokino.com/products/sub-230-cleaning-tools → no content-security-policy
    • https://valokino.com/products/sub-230-dustbins → no content-security-policy
  • FoundSoftware version disclosureLow

    Responses reveal the exact server or framework version, which lets an attacker look up known vulnerabilities for it without guessing.

    • server: cloudflare (1433 responses)
    • x-powered-by: PHP/8.3.35 (630 responses)
    • x-powered-by: PHP/8.3.33 (451 responses)
  • FoundCookie flagsMedium

    1 of 2 cookies are missing protective flags. Without HttpOnly a script can read the cookie; without Secure it travels over plain HTTP; without SameSite it is sent on cross-site requests.

    • XSRF-TOKEN (set by https://valokino.com/) lacks HttpOnly
  • FoundVulnerable JavaScript librariesMedium

    2 libraries with published vulnerabilities: jQuery 2.1.3, jQuery UI 1.11.2. Whether they are exploitable depends on how the site uses them, but each has a fixed release.

    • jQuery 2.1.3 in https://cdnjs.cloudflare.com/ajax/libs/jquery/2.1.3/jquery.min.js: CVE-2015-9251 (XSS via cross-domain AJAX), CVE-2019-11358 (prototype pollution), CVE-2020-11022, CVE-2020-11023 (XSS via HTML passed to DOM methods); fixed in 3.5.0
    • jQuery UI 1.11.2 in https://ajax.googleapis.com/ajax/libs/jqueryui/1.11.2/jquery-ui.min.js: CVE-2016-7103, CVE-2021-41182, CVE-2021-41183, CVE-2021-41184, CVE-2022-31160 (XSS through widget options); fixed in 1.13.2
12 checks passed
  • OKHTTPS

    All 1064 crawled pages were served over HTTPS.

  • OKHTTP Strict Transport Security

    strict-transport-security is set on all 1064 HTML pages.

  • OKClickjacking protection

    x-frame-options is set on all 1064 HTML pages.

  • OKMIME sniffing protection

    x-content-type-options is set on all 1064 HTML pages.

  • OKReferrer policy

    referrer-policy is set on all 1064 HTML pages.

  • OKPermissions policy

    permissions-policy is set on all 1064 HTML pages.

  • OKMixed content

    No HTTPS page loads a script, stylesheet, font or image over plain HTTP.

  • OKForms over HTTPS

    80 forms found, all on HTTPS pages posting to HTTPS addresses.

  • OKKeys and secrets in page code

    No API keys, tokens or private keys were found in the sampled HTML and scripts.

  • OKExposed files and listings

    None of the crawled URLs is a configuration file, backup, dump, repository folder or directory listing.

  • OKThird-party scripts

    The sampled pages load no scripts from other domains.

  • OKSensitive paths in robots.txt

    robots.txt does not point at admin, backup or private paths.

A passive review of what the crawl recorded: response headers, page and script contents and the URLs it found. It does not probe the site, test TLS settings or look for files that were not linked. Generated automatically; verify each finding against your own site before acting on it.

Earlier scans of valokino.com

No other scans of this site yet.

Sites scoring near valokino.com

Their neighbours in the SEO rank table, which orders every scanned site by health score.

This report was produced by the DIY SEO Hub Site Spider crawling valokino.com from its pages as published, the way a search engine does. It shows summary figures only.

Own valokino.com?

valokino.com SEO report | DIY SEO Hub