Scanned sites / www.manchesterdental.ca / 2026-09-19-1737

www.manchesterdental.ca scan from 9/19/2026, 5:37:41 PM

A newer scan exists. See the latest report for www.manchesterdental.ca.

Scan 2026-09-19-1737

Scanned 9/19/2026, 5:37:41 PM, finished 9/19/2026, 5:52:34 PM. Found with openstreetmap overpass

Site: https://www.manchesterdental.ca/

Download SQLite databaseEvery page and asset from this scan, with the crawl events, in one file.

89/ 100Good

On September 19, 2026 the Site Spider crawled 128 pages and 604 assets of www.manchesterdental.ca, starting from https://www.manchesterdental.ca/. It scored 89 out of 100, a good result. 5 of 14 checks found something to fix, led by meta descriptions (30), heavy assets (26), title tags (22); 9 checks passed. The list below shows each check's result, the fix plan, when present, explains what to do first, and the security review at the end of the page covers headers, transport, libraries and exposed files.

Security review: Medium4 medium, 2 low and 1 info findings. See the security findings ↓

Pages crawled
128
Assets fetched
604
Status
Completed
Checks with issues
5 of 14
  • Title tags22 issues
    22 of 110 pages have title issues.
  • Meta descriptions30 issues
    30 of 110 pages have meta description issues.
  • HeadingsOK
    0 of 110 pages have heading issues.
  • Broken linksOK
    0 internal links point at 0 broken URLs.
  • Redirects18 issues
    18 redirecting URLs, 1 of them chained.
  • Non-200 responsesOK
    18 URLs did not return a 2xx response.
  • Rate limitedOK
    The site did not rate limit the crawler.
  • IndexabilityOK
    0 of 110 indexable pages have indexability warnings.
  • Image alt textOK
    0 of 563 image references have no alt attribute.
  • Heavy assets26 issues
    26 assets larger than 500 KB among the 100 heaviest.
  • Orphan pagesOK
    0 pages have no internal links pointing at them.
  • Sitemap coverage6 issues
    1 sitemap listing 104 URLs: 6 crawled pages missing, 0 listed URLs broken or redirecting, 0 reachable only via the sitemap.
  • Thin contentOK
    0 of 110 pages have fewer than 200 words.
  • Duplicate contentOK
    0 groups of pages with identical HTML.

Where this scan sits among all scanned sites

1109 sites, median 82%, average 80%

www.manchesterdental.ca scores 89%, higher than 80% of the 1109 scanned sites. See the full ranking.

028560%: 0 sites1%: 0 sites2%: 0 sites3%: 0 sites4%: 0 sites5%: 0 sites6%: 0 sites7%: 0 sites8%: 0 sites9%: 0 sites10%: 0 sites11%: 0 sites12%: 0 sites13%: 0 sites14%: 0 sites15%: 0 sites16%: 0 sites17%: 0 sites18%: 0 sites19%: 0 sites20%: 0 sites21%: 1 site22%: 0 sites23%: 0 sites24%: 0 sites25%: 0 sites26%: 0 sites27%: 0 sites28%: 1 site29%: 0 sites30%: 0 sites31%: 0 sites32%: 0 sites33%: 0 sites34%: 0 sites35%: 1 site36%: 1 site37%: 0 sites38%: 0 sites39%: 0 sites40%: 0 sites41%: 0 sites42%: 0 sites43%: 0 sites44%: 0 sites45%: 2 sites46%: 1 site47%: 1 site48%: 0 sites49%: 0 sites50%: 3 sites51%: 4 sites52%: 1 site53%: 1 site54%: 2 sites55%: 1 site56%: 2 sites57%: 3 sites58%: 6 sites59%: 3 sites60%: 5 sites61%: 8 sites62%: 12 sites63%: 5 sites64%: 9 sites65%: 9 sites66%: 9 sites67%: 15 sites68%: 28 sites69%: 13 sites70%: 24 sites71%: 21 sites72%: 25 sites73%: 24 sites74%: 31 sites75%: 26 sites76%: 40 sites77%: 36 sites78%: 35 sites79%: 33 sites80%: 44 sites81%: 54 sites82%: 50 sites83%: 46 sites84%: 55 sites85%: 48 sites86%: 44 sites87%: 50 sites88%: 56 sites89%: 38 sites90%: 52 sites91%: 38 sites92%: 24 sites93%: 17 sites94%: 16 sites95%: 7 sites96%: 10 sites97%: 4 sites98%: 3 sites99%: 1 site100%: 10 sites89% here100%90%80%70%60%50%40%30%20%10%0%

Green 90% and up (Excellent), lime 75 to 89 (Good), amber 50 to 74 (Needs work), red below 50 (Poor).

Internal link map

Loading the link map...

Start page (centre)OKRedirectErrorOrphanLinked from most pagesOne inbound link or noneRings = clicks from the start page. Size = inbound links. Drag to pan, scroll to zoom, click a page to see only its links.

Fix plan

Written by gpt-4o-mini from the scan findings

Your website has good health but requires immediate attention to title tags, meta descriptions, redirects, and sitemap coverage. Fixing these issues will enhance user experience and SEO performance.

  1. 1

    Fix Redirects

    Why: Redirects can confuse both users and search engines, impacting SEO.

    How: Identify and remove unnecessary redirects, especially the chained redirect. Ensure URLs direct to the final destination.

    Checks: redirects

  2. 2

    Resolve Non-200 Responses

    Why: Non-200 responses can harm user experience and SEO rankings.

    How: Check the 18 URLs that return non-200 responses and ensure they return a 200 status or update links accordingly.

    Checks: status-codes

  3. 3

    Optimize Title Tags

    Why: Titles are crucial for search visibility and click-through rates.

    How: Revise the 22 problematic titles to be unique, between 30 and 60 characters, and relevant to the page content.

    Checks: titles

  4. 4

    Improve Meta Descriptions

    Why: Meta descriptions influence click-through rates from search results.

    How: Update the 30 pages with meta issues to have unique summaries between 70 and 160 characters.

    Checks: meta-descriptions

  5. 5

    Update Sitemap Coverage

    Why: A complete sitemap helps search engines crawl your website effectively.

    How: Add the missing blog pages (2-6) to your sitemap to ensure they are indexed.

    Checks: sitemap-coverage

  6. 6

    Compress Heavy Assets

    Why: Large files can slow down your site, affecting user experience and SEO.

    How: Optimize the 26 assets over 500 KB using image compression tools before uploading them again.

    Checks: heavy-assets

Generated automatically; verify each change against your own site before relying on it.

Security review

Written by gpt-4o-mini from 16 checks over the crawl

The website has multiple security issues that need addressing. Key missing protections include HTTP Strict Transport Security and Content Security Policy, which can lead to various vulnerabilities such as interception of traffic and script injection. Immediate updates to libraries are also necessary to prevent potential exploitation. Implementing these measures will strengthen the website's security posture.

  • 0 high
  • 4 medium
  • 2 low
  • 1 info
  1. 1

    Missing HTTP Strict Transport Security (HSTS)Medium

    Why it matters: HSTS prevents man-in-the-middle attacks by ensuring clients only connect via HTTPS.

    Fix: Add the header: Strict-Transport-Security: max-age=31536000; includeSubDomains.

    Evidence: HTTP Strict Transport Security

  2. 2

    Missing Content Security Policy (CSP)Medium

    Why it matters: A CSP would restrict where scripts and other resources can be loaded from, mitigating XSS risks.

    Fix: Add the header: Content-Security-Policy: default-src 'self'.

    Evidence: Content Security Policy

  3. 3

    Missing X-Frame-Options HeaderMedium

    Why it matters: Without this header, the site can be embedded in iframes, potentially allowing clickjacking.

    Fix: Add the header: X-Frame-Options: DENY.

    Evidence: Clickjacking protection

  4. 4

    Vulnerable JavaScript LibrariesMedium

    Why it matters: Using jQuery 1.9.1 and Bootstrap 4.0.0 exposes the site to known vulnerabilities.

    Fix: Upgrade jQuery to at least 3.5.0 and Bootstrap to at least 4.3.1.

    Evidence: Vulnerable JavaScript libraries

  5. 5

    Missing X-Content-Type-Options HeaderLow

    Why it matters: This header prevents browsers from interpreting files as different MIME types, enhancing security.

    Fix: Add the header: X-Content-Type-Options: nosniff.

    Evidence: MIME sniffing protection

  6. 6

    Missing Referrer-Policy HeaderLow

    Why it matters: Without this policy, sensitive URLs could be exposed through referrer information.

    Fix: Add the header: Referrer-Policy: no-referrer.

    Evidence: Referrer policy

  7. 7

    Missing Permissions-Policy HeaderInfo

    Why it matters: This policy can restrict potentially risky browser features not used by the website.

    Fix: Add the header: Permissions-Policy: geolocation=(), microphone=(), camera=().

    Evidence: Permissions policy

What the checks found

  • FoundHTTP Strict Transport SecurityMedium

    No HTML page sends strict-transport-security. Without it a visitor who types the address without https:// can be intercepted on the first request.

    • https://www.manchesterdental.ca/ → no strict-transport-security
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no strict-transport-security
    • https://www.manchesterdental.ca/our-team/ → no strict-transport-security
    • https://www.manchesterdental.ca/blog/ → no strict-transport-security
    • https://www.manchesterdental.ca/privacy-policy/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/all-services/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no strict-transport-security
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no strict-transport-security
  • FoundContent Security PolicyMedium

    None of the 110 HTML pages send a Content-Security-Policy header or meta tag, so the browser has no restriction on where scripts, styles and frames may load from.

    • https://www.manchesterdental.ca/ → no content-security-policy
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no content-security-policy
    • https://www.manchesterdental.ca/our-team/ → no content-security-policy
    • https://www.manchesterdental.ca/blog/ → no content-security-policy
    • https://www.manchesterdental.ca/privacy-policy/ → no content-security-policy
    • https://www.manchesterdental.ca/services/all-services/ → no content-security-policy
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no content-security-policy
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no content-security-policy
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no content-security-policy
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no content-security-policy
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no content-security-policy
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no content-security-policy
  • FoundClickjacking protectionMedium

    No HTML page sends x-frame-options. Without X-Frame-Options (or a CSP frame-ancestors directive) the pages can be embedded in a frame on another site and overlaid with invisible controls.

    • https://www.manchesterdental.ca/ → no x-frame-options
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no x-frame-options
    • https://www.manchesterdental.ca/our-team/ → no x-frame-options
    • https://www.manchesterdental.ca/blog/ → no x-frame-options
    • https://www.manchesterdental.ca/privacy-policy/ → no x-frame-options
    • https://www.manchesterdental.ca/services/all-services/ → no x-frame-options
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no x-frame-options
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no x-frame-options
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no x-frame-options
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no x-frame-options
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no x-frame-options
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no x-frame-options
  • FoundMIME sniffing protectionLow

    No HTML page sends x-content-type-options. Without X-Content-Type-Options: nosniff a browser may run a file as a script because of its contents rather than its declared type.

    • https://www.manchesterdental.ca/ → no x-content-type-options
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no x-content-type-options
    • https://www.manchesterdental.ca/our-team/ → no x-content-type-options
    • https://www.manchesterdental.ca/blog/ → no x-content-type-options
    • https://www.manchesterdental.ca/privacy-policy/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/all-services/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no x-content-type-options
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no x-content-type-options
  • FoundReferrer policyLow

    No HTML page sends referrer-policy. Without a Referrer-Policy the full page address, including any query string, is sent to every site a visitor clicks through to.

    • https://www.manchesterdental.ca/ → no referrer-policy
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no referrer-policy
    • https://www.manchesterdental.ca/our-team/ → no referrer-policy
    • https://www.manchesterdental.ca/blog/ → no referrer-policy
    • https://www.manchesterdental.ca/privacy-policy/ → no referrer-policy
    • https://www.manchesterdental.ca/services/all-services/ → no referrer-policy
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no referrer-policy
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no referrer-policy
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no referrer-policy
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no referrer-policy
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no referrer-policy
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no referrer-policy
  • FoundPermissions policyInfo

    No HTML page sends permissions-policy. A Permissions-Policy header turns off browser features the site does not use (camera, microphone, geolocation), limiting what an injected script could do.

    • https://www.manchesterdental.ca/ → no permissions-policy
    • https://www.manchesterdental.ca/canadian-dental-care-plan/ → no permissions-policy
    • https://www.manchesterdental.ca/our-team/ → no permissions-policy
    • https://www.manchesterdental.ca/blog/ → no permissions-policy
    • https://www.manchesterdental.ca/privacy-policy/ → no permissions-policy
    • https://www.manchesterdental.ca/services/all-services/ → no permissions-policy
    • https://www.manchesterdental.ca/services/general-dentistry-edmonton/ → no permissions-policy
    • https://www.manchesterdental.ca/services/invisalign-edmonton/ → no permissions-policy
    • https://www.manchesterdental.ca/services/dental-exams-cleanings-edmonton/ → no permissions-policy
    • https://www.manchesterdental.ca/services/root-canal-therapy-edmonton/ → no permissions-policy
    • https://www.manchesterdental.ca/services/tooth-extractions-edmonton/ → no permissions-policy
    • https://www.manchesterdental.ca/services/cosmetic-dentistry-edmonton/ → no permissions-policy
  • FoundVulnerable JavaScript librariesMedium

    2 libraries with published vulnerabilities: jQuery 1.9.1, Bootstrap 4.0.0. Whether they are exploitable depends on how the site uses them, but each has a fixed release.

    • jQuery 1.9.1 in https://www.manchesterdental.ca/wp-content/themes/dental/assets/js/bootstrap/bo…: CVE-2015-9251 (XSS via cross-domain AJAX), CVE-2019-11358 (prototype pollution), CVE-2020-11022, CVE-2020-11023 (XSS via HTML passed to DOM methods); fixed in 3.5.0
    • Bootstrap 4.0.0 in https://www.manchesterdental.ca/wp-content/themes/dental/assets/js/bootstrap/bo…: CVE-2018-14040, CVE-2018-14041, CVE-2018-14042, CVE-2019-8331 (XSS through data attributes in tooltip, popover, collapse and scrollspy); fixed in 4.3.1
  • NoteThird-party scripts

    Scripts run from 3 other domains without Subresource Integrity, so a compromise of any of them changes what runs on this site. (Tag managers and analytics rarely support SRI; a Content-Security-Policy that names these hosts is the usual control.)

    • connect.podium.com (40 script tags)
    • www.google.com (40 script tags)
    • form.jotform.com (2 script tags)
  • NoteSensitive paths in robots.txt

    robots.txt lists 1 path that look private. robots.txt is public and does not restrict access, so it doubles as a map for anyone probing the site; those paths need real access control.

    • Disallow: /wp-admin/
6 checks passed, 1 not applicable
  • OKHTTPS

    All 110 crawled pages were served over HTTPS.

  • OKSoftware version disclosure

    The Server header names a product without a version, and there is no X-Powered-By header.

  • OKMixed content

    No HTTPS page loads a script, stylesheet, font or image over plain HTTP.

  • OKForms over HTTPS

    43 forms found, all on HTTPS pages posting to HTTPS addresses.

  • OKKeys and secrets in page code

    No API keys, tokens or private keys were found in the sampled HTML and scripts.

  • OKExposed files and listings

    None of the crawled URLs is a configuration file, backup, dump, repository folder or directory listing.

  • Not applicableCookie flags

    The crawl set no cookies, so there are no cookie flags to check.

A passive review of what the crawl recorded: response headers, page and script contents and the URLs it found. It does not probe the site, test TLS settings or look for files that were not linked. Generated automatically; verify each finding against your own site before acting on it.

Sites scoring near www.manchesterdental.ca

Their neighbours in the SEO rank table, which orders every scanned site by health score.

This report was produced by the DIY SEO Hub Site Spider crawling www.manchesterdental.ca from its public pages. Anyone can run a scan of any site they own or are authorised to check. Is this your site? Claim it to manage the listing, or ask for removal through the support form.

www.manchesterdental.ca scan 2026-09-19-1737 | DIY SEO Hub