Rankato

Full Website SEO Audit

Crawl your site, score every category, and get a prioritized fix list — free for up to 25 pages, no signup.

Live crawlerFree 25 pagesSSRF-guarded

We respect robots.txt, honor Crawl-delay, and follow redirects. Audits typically finish in 30–90 seconds.

Crawlability
On-page SEO
Structured data
Lighthouse (lab)
Security
Internal links
The Website SEO Audit crawls your site the way search engines do — respecting robots.txt, following redirects, discovering pages via your sitemap and internal links — then runs a suite of technical, on-page, structured-data, link, media, security, and performance (Lighthouse lab) checks. You get an SEO score per category, a prioritized list of findings by severity, and the exact affected URLs for every issue.

What is the Website SEO Audit?

The Website SEO Audit is a full-site crawler that behaves like a search engine bot. It respects your robots.txt, discovers pages via your XML sitemap and internal links, and follows redirects. For every crawled page it runs a battery of checks covering crawlability, indexability, on-page tags, structured data, images, internal links, and security. For your top pages it also runs a self-hosted Lighthouse pass so you get lab-data Core Web Vitals and a Performance score.

The output is an SEO score per category, a prioritized list of findings grouped by severity (critical / warning / notice), and the exact affected URLs for every issue — so you know precisely what to fix and where.

How it works

  1. Discovery. We fetch robots.txt, walk your XML sitemap (index + nested sitemaps), and seed the crawl with your homepage plus up to 50 sitemap URLs.
  2. Polite BFS crawl. We fetch pages breadth-first at a conservative 2 requests/second per host, honoring any Crawl-delay your robots.txt sets. Free crawls cover up to 25 pages; Pro covers up to 500.
  3. Per-page checks. Each fetched page is parsed and passed through every registered page-scoped check in parallel — title, meta description, H1, canonical, robots meta / X-Robots-Tag, hreflang, images alt, JSON-LD schema, status code, redirect chain, and more.
  4. Site-scoped checks. Once the crawl is done we run cross-page checks: duplicate titles, duplicate descriptions, orphan pages, www vs non-www canonicalization, HTTP-vs-HTTPS coverage, and crawl-depth outliers.
  5. Lighthouse (lab). For the target URL (Free) or top 10 pages (Pro) we spawn a headless Chromium via Lighthouse and pull Performance / SEO / Accessibility / Best-Practices scores plus LCP, CLS, TBT, INP, FCP.
  6. Score. Every category starts at 100 and loses points per finding (critical −15, warning −5, notice −1). The overall score is the average of categories.

What we check (17+ automated checks)

Crawlability

  • HTTP status codes (4xx / 5xx / 3xx)
  • Redirect chains + redirect loops
  • Robots.txt respect

Indexability

  • Canonical URL (missing / self-referring / cross-URL)
  • Robots meta + X-Robots-Tag (noindex, nofollow)
  • Hreflang tags (BCP-47 validation, x-default)
  • www / non-www canonicalization

On-Page

  • <title> length + presence
  • Meta description length + presence
  • H1 presence + uniqueness
  • Duplicate titles / descriptions (site-scoped)

Structured Data

  • JSON-LD detection
  • JSON parse validation
  • Type inventory

Links & Media

  • Image alt attribute coverage
  • Orphan pages (no internal links in)
  • Crawl-depth outliers

Performance (Lab)

  • Lighthouse Performance / SEO / A11y / Best-Practices scores
  • LCP / CLS / TBT (INP proxy) / FCP

Security

  • HTTP → HTTPS redirect coverage
  • Mixed-content detection (roadmap)

Free vs Pro

FeatureFreePro
Pages crawled per audit25500
Lighthouse reports per audit1 (target URL)10 (top pages)
Findings per categoryTop 5 shownAll findings
Category coverageCrawlability, On-Page, Structured Data, Indexability full; others teasedAll categories, full detail
Audits per day (per IP)3100
Historical retention24 hours90 days
CSV / PDF exportRoadmap

How we're different — honest data, no invented signals

Most SEO audit tools quietly guess when they don't know something. We don't. Every finding is labelled with its source so you know exactly what you're looking at:

  • Confirmed — parsed directly from the HTML we fetched. If we say your title is 78 characters, we counted them.
  • Lab data (Lighthouse) — a single Lighthouse run in headless Chromium. Useful, but not a substitute for real-user CrUX field data.
  • Recommendation — a heuristic best-practice suggestion, not a bug.

We don't fabricate backlink data, keyword rankings, organic-traffic numbers, or CrUX field metrics. When we don't have real data for something (e.g. Search Console clicks, real INP), we say so explicitly rather than showing a made-up number.

Tool FAQs

Everything you need to know about using Website SEO Audit.

How many pages does the free audit crawl?+

Up to 25 pages per audit on the free tier — enough to catch systemic issues on small-to-medium sites. Pro raises this to 500 pages per audit.

We start with your homepage and up to 50 URLs from your XML sitemap, then breadth-first crawl internal links until we hit the page limit or run out of new same-host URLs.

Do you respect robots.txt?+

Yes — always. We fetch your robots.txt first, honor Disallow rules for our user agent (WhatSEOToolsBot/1.0), and honor any Crawl-delay you've set as a minimum inter-request delay for your host.

If robots.txt blocks our crawler entirely, the audit will report which URLs were blocked and won't try to fetch them.

Can I audit a private / staging / password-protected site?+

Not yet. Today the audit only crawls publicly accessible URLs. If your staging environment is on a public URL behind Basic Auth or a query-string token, the audit will get a 401/403 and stop. Support for authenticated crawling is on the Pro roadmap.

We explicitly block private-network, loopback, link-local, and cloud-metadata IPs (AWS, GCP, Azure metadata endpoints) at both the DNS-resolution stage and after every redirect hop — you cannot use this tool to probe internal infrastructure.

How does JavaScript rendering work?+

For a subset of pages (up to 5 free / 20 Pro) we run each page through a headless Chromium via Playwright and capture the rendered HTML in addition to the raw HTML from httpx. This lets checks that care about client-rendered content (e.g. JS-generated schema or hreflang) see what a JS-capable crawler sees. Non-rendered pages are still checked against their raw HTML.

Where does the Performance score come from?+

From a self-hosted Lighthouse run in headless Chromium on mobile emulation with simulated 4G throttling. That's lab data — a single synthetic run — and we label it as such throughout the report. It's directionally useful for spotting regressions and outliers, but it doesn't replace field data from Google's CrUX / Search Console (which comes from real users on real devices).

Lighthouse doesn't measure real INP in labs; we surface TBT as an INP proxy and clearly mark it as such.

Do you check backlinks / keyword rankings / traffic?+

No. Those signals require external data sources (Ahrefs / Semrush / Search Console / analytics), and we won't fabricate numbers we don't have. Backlink and keyword-rank features will ship as separate tools that plug into real APIs — never as invented estimates.

How long does an audit take?+

Typically 30–90 seconds for a free 25-page crawl, longer for Pro 500-page audits (up to a few minutes). We enforce a 2 RPS per-host cap to stay polite, so total time scales roughly linearly with page count. You can watch live progress on the report page — it polls every 2 seconds.

Is my audit shareable? How long is it kept?+

Yes — every audit gets a shareable URL at /audit/<id>. On the free tier we keep results for 24 hours; Pro keeps them for 90 days. Audit pages carry noindex so they don't leak into Google search.