Scanned sites / www.sheyenneconstructionllc.com / 2026-09-17-1500
www.sheyenneconstructionllc.com scan from 9/17/2026, 3:00:02 PM
Scan 2026-09-17-1500
Scanned 9/17/2026, 3:00:02 PM, finished 9/17/2026, 3:01:06 PM. Found on page 1 of chatgpt for browser (api usage) results
Site: https://www.sheyenneconstructionllc.com/about
Download SQLite databaseEvery page and asset from this scan, with the crawl events, in one file.
On September 17, 2026 the Site Spider crawled 19 pages and 2 assets of www.sheyenneconstructionllc.com, starting from https://www.sheyenneconstructionllc.com/about. It scored 82 out of 100, a good result. 8 of 14 checks found something to fix, led by meta descriptions (15), thin content (10), title tags (5); 6 checks passed. The list below shows each check's result, the fix plan, when present, explains what to do first, and the security review at the end of the page covers headers, transport, libraries and exposed files.
Security review: Medium3 medium and 2 low findings. See the security findings ↓
- Pages crawled
- 19
- Assets fetched
- 2
- Status
- Completed
- Checks with issues
- 8 of 14
- Title tags5 issues5 of 16 pages have title issues. 2 noindex or canonicalized pages excluded.
- Meta descriptions15 issues15 of 16 pages have meta description issues. 2 noindex or canonicalized pages excluded.
- Headings5 issues5 of 16 pages have heading issues. 2 noindex or canonicalized pages excluded.
- Broken linksOK0 internal links point at 0 broken URLs.
- Redirects1 issue1 redirecting URL, 0 of them chained.
- Non-200 responsesOK1 URL did not return a 2xx response.
- Rate limitedOKThe site did not rate limit the crawler.
- Indexability1 issue1 of 17 indexable pages have indexability warnings. 1 page noindex by design.
- Image alt textOK0 of 106 image references have no alt attribute. 36 use an empty alt (decorative), which is fine.
- Heavy assetsOK0 assets larger than 500 KB among the 2 heaviest.
- Orphan pages3 issues3 pages have no internal links pointing at them.
- Sitemap coverage4 issues1 sitemap listing 16 URLs: 1 crawled page missing, 0 listed URLs broken or redirecting, 3 reachable only via the sitemap.
- Thin content10 issues10 of 16 pages have fewer than 200 words. 2 noindex or canonicalized pages excluded.
- Duplicate contentOK0 groups of pages with identical HTML.
Where this scan sits among all scanned sites
1065 sites, median 82%, average 80%
www.sheyenneconstructionllc.com scores 82%, higher than 48% of the 1065 scanned sites. See the full ranking.
Green 90% and up (Excellent), lime 75 to 89 (Good), amber 50 to 74 (Needs work), red below 50 (Poor).
Internal link map
Loading the link map...
Fix plan
Written by gpt-4o-mini from the scan findingsYour site has a good health score but several issues need addressing for better SEO performance. Focus on optimizing title tags, meta descriptions, and heading structures first.
- 1
Fix Redirects and Non-200 Responses
Why: Redirects and non-200 responses can affect user experience and indexing.
How: Update the URL to the final destination and change the 302 redirect to a 301 if permanent.
Checks: redirects, status-codes
- 2
Optimize Title Tags
Why: Shortened title tags improve clarity and relevance for search engines.
How: Revise all title tags to be under 60 characters, focusing on keywords.
Checks: titles
- 3
Improve Meta Descriptions
Why: Meta descriptions that meet length requirements can enhance click-through rates.
How: Write unique meta descriptions under 160 characters that accurately describe each page.
Checks: meta-descriptions
- 4
Correct Heading Structures
Why: Proper heading use enhances content structure and SEO.
How: Ensure each page has one H1 and appropriate H2/H3 headings for content hierarchy.
Checks: headings
- 5
Address Orphan Pages
Why: Orphan pages are hard to find for users and search engines.
How: Add internal links to orphan pages from relevant existing pages to improve visibility.
Checks: orphan-pages
- 6
Enhance Thin Content
Why: Increasing content length improves SEO ranking potential.
How: Add relevant, quality content to pages with fewer than 200 words.
Checks: thin-content
Generated automatically; verify each change against your own site before relying on it.
Security review
Written by gpt-4o-mini from 16 checks over the crawlThe site has multiple security issues mainly related to response headers that could expose users to risks. Key concerns include the absence of a Content Security Policy and clickjacking protection, as well as missing secure cookie flags. Mitigating these findings is essential to enhance the website's security posture.
- 0 high
- 3 medium
- 2 low
- 0 info
- 1
Missing Content Security Policy (CSP)Medium
Why it matters: Without a CSP, the site is vulnerable to attacks like cross-site scripting (XSS).
Fix: Implement a CSP header: `Content-Security-Policy: default-src 'self';`
Evidence: Content Security Policy
- 2
Missing Clickjacking ProtectionMedium
Why it matters: The absence of X-Frame-Options allows the site to be framed, risking clickjacking attacks.
Fix: Add this header: `X-Frame-Options: DENY` or `SAMEORIGIN`.
Evidence: Clickjacking protection
- 3
Missing Secure Cookie FlagsMedium
Why it matters: Cookies without HttpOnly, Secure, and SameSite flags are susceptible to theft and CSRF attacks.
Fix: Set cookie flags: `HttpOnly`, `Secure`, `SameSite=Lax`.
Evidence: Cookie flags
- 4
Missing Referrer PolicyLow
Why it matters: Not having a referrer policy can expose users' full URLs when navigating away.
Fix: Add this header: `Referrer-Policy: no-referrer-when-downgrade`.
Evidence: Referrer policy
- 5
Mixed Content IssuesLow
Why it matters: Loading resources over HTTP on HTTPS pages can lead to eavesdropping or tampering.
Fix: Update resource URLs to HTTPS or host them securely.
Evidence: Mixed content
What the checks found
- FoundContent Security PolicyMedium
None of the 18 HTML pages send a Content-Security-Policy header or meta tag, so the browser has no restriction on where scripts, styles and frames may load from.
- https://www.sheyenneconstructionllc.com/about → no content-security-policy
- https://www.sheyenneconstructionllc.com/cart → no content-security-policy
- https://www.sheyenneconstructionllc.com/ → no content-security-policy
- https://www.sheyenneconstructionllc.com/services → no content-security-policy
- https://www.sheyenneconstructionllc.com/gallery → no content-security-policy
- https://www.sheyenneconstructionllc.com/contact → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1 → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/why-fall-home-renovations-delaware-tmkwp → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/contractor → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovation → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovations → no content-security-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/delaware+construction → no content-security-policy
- FoundClickjacking protectionMedium
17 of 18 HTML pages send x-frame-options. Without X-Frame-Options (or a CSP frame-ancestors directive) the pages can be embedded in a frame on another site and overlaid with invisible controls.
- https://www.sheyenneconstructionllc.com/cart → no x-frame-options
- FoundReferrer policyLow
No HTML page sends referrer-policy. Without a Referrer-Policy the full page address, including any query string, is sent to every site a visitor clicks through to.
- https://www.sheyenneconstructionllc.com/about → no referrer-policy
- https://www.sheyenneconstructionllc.com/cart → no referrer-policy
- https://www.sheyenneconstructionllc.com/ → no referrer-policy
- https://www.sheyenneconstructionllc.com/services → no referrer-policy
- https://www.sheyenneconstructionllc.com/gallery → no referrer-policy
- https://www.sheyenneconstructionllc.com/contact → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1 → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/why-fall-home-renovations-delaware-tmkwp → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/contractor → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovation → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovations → no referrer-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/delaware+construction → no referrer-policy
- FoundPermissions policyInfo
No HTML page sends permissions-policy. A Permissions-Policy header turns off browser features the site does not use (camera, microphone, geolocation), limiting what an injected script could do.
- https://www.sheyenneconstructionllc.com/about → no permissions-policy
- https://www.sheyenneconstructionllc.com/cart → no permissions-policy
- https://www.sheyenneconstructionllc.com/ → no permissions-policy
- https://www.sheyenneconstructionllc.com/services → no permissions-policy
- https://www.sheyenneconstructionllc.com/gallery → no permissions-policy
- https://www.sheyenneconstructionllc.com/contact → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1 → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/why-fall-home-renovations-delaware-tmkwp → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/contractor → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovation → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/renovations → no permissions-policy
- https://www.sheyenneconstructionllc.com/blog-2-1/tag/delaware+construction → no permissions-policy
- FoundCookie flagsMedium
1 of 1 cookie are missing protective flags. Without HttpOnly a script can read the cookie; without Secure it travels over plain HTTP; without SameSite it is sent on cross-site requests.
- crumb (set by https://www.sheyenneconstructionllc.com/about) lacks HttpOnly, SameSite
- FoundMixed contentLow
4 resources on HTTPS pages are loaded over plain HTTP.
- https://www.sheyenneconstructionllc.com/cart loads image http://images.squarespace-cdn.com/content/v1/679ac46aaec58c6ad899e378/d822d2f3-b23d-451b-…
- https://www.sheyenneconstructionllc.com/ loads image http://static1.squarespace.com/static/679ac46aaec58c6ad899e378/t/679c44970867b207e8c64b52…
- https://www.sheyenneconstructionllc.com/blog-2-1/why-fall-home-renova… loads image http://static1.squarespace.com/static/679ac46aaec58c6ad899e378/688526fe41a7fe01602c4fbc/6…
- https://www.sheyenneconstructionllc.com/home loads image http://static1.squarespace.com/static/679ac46aaec58c6ad899e378/t/679c44970867b207e8c64b52…
- NoteThird-party scripts
Scripts run from 3 other domains without Subresource Integrity, so a compromise of any of them changes what runs on this site. (Tag managers and analytics rarely support SRI; a Content-Security-Policy that names these hosts is the usual control.)
- assets.squarespace.com (198 script tags)
- definitions.sqspcdn.com (247 script tags)
- static1.squarespace.com (17 script tags)
- NoteSensitive paths in robots.txt
robots.txt lists 1 path that look private. robots.txt is public and does not restrict access, so it doubles as a map for anyone probing the site; those paths need real access control.
- Disallow: /config
6 checks passed, 2 not applicable
- OKHTTPS
All 18 crawled pages were served over HTTPS.
- OKHTTP Strict Transport Security
strict-transport-security is set on all 18 HTML pages.
- OKMIME sniffing protection
x-content-type-options is set on all 18 HTML pages.
- OKSoftware version disclosure
The Server header names a product without a version, and there is no X-Powered-By header.
- OKKeys and secrets in page code
No API keys, tokens or private keys were found in the sampled HTML and scripts.
- OKExposed files and listings
None of the crawled URLs is a configuration file, backup, dump, repository folder or directory listing.
- Not applicableForms over HTTPS
No forms were found on the sampled pages.
- Not applicableVulnerable JavaScript libraries
No recognisable library versions were found in the sampled scripts.
A passive review of what the crawl recorded: response headers, page and script contents and the URLs it found. It does not probe the site, test TLS settings or look for files that were not linked. Generated automatically; verify each finding against your own site before acting on it.
This report was produced by the DIY SEO Hub Site Spider crawling www.sheyenneconstructionllc.com from its public pages. Anyone can run a scan of any site they own or are authorised to check. Is this your site? Claim it to manage the listing, or ask for removal through the support form.