A Zulien Score-ról

A Zulien Score egy ingyenes online audit-eszköz, amely 100+ ellenőrzési ponton elemzi az e-kereskedelmi webáruházakat: teljesítmény, SEO, biztonság, mobilélmény, AI Readiness, GDPR-megfelelés és sebezhetőségi szkennelés. Működik PrestaShop, WooCommerce, Magento, Shopify és bármely egyedi platformmal. Kapj konkrét tudnivalókat a webáruházad fejlesztéséhez 60 másodperc alatt.

Miért építettük

A legtöbb e-kereskedelmi webáruház-tulajdonos nem tudja, hogy a webáruháza problémás, amíg az ügyfelek nem kezdenek elmenni. A Zulien Score-t azért építettük, hogy ingyenes, őszinte egészségügyi vizsgálatot adjunk — regisztráció nélkül, hitelkártya nélkül, kötelezettség nélkül. Csak illeszd be az URL-t és kapj eredményt 60 másodperc alatt. Bármely platformon optimalizálunk webáruházakat.

Pontozási módszertan

Az összesített pontszámod (0-100) 7 kategória súlyozott átlaga — plusz egy 8. NIS2 kategória azoknak a vállalkozásoknak, amelyek az EU NIS2 direktívájának hatálya alá tartoznak (I/II. melléklet ágazatok 50+ alkalmazottal / 10M€+ árbevétellel). Minden kategória pontszáma az iparági legjobb gyakorlatok és szabványok elleni automatikus ellenőrzéseken alapul (Google Core Web Vitals, OWASP, GDPR-követelmények, Schema.org specifikációk, NIS2 21. cikk).

Adatokat használunk a Google PageSpeed Insights API-ból, a Chrome UX Report (CrUX) valós felhasználói adatokból, és a saját szkenner-motorunkból, amely HTML-t, HTTP-fejléceket, DNS-t, SSL-tanúsítványokat és fájl-kitettséget elemez.

Az eredmények 6 órán át gyorsítótárazva vannak. Használd a "Rescan" gombot egy friss elemzés kényszerítéséhez.

Performance25%
SEO20%
Security15%
Mobile10%
AI Readiness10%
GDPR10%
Vulnerability10%

Osztályzat-skála

A90-100
B80-89
C70-79
D50-69
F0-49

A 60 alatti pontszámok komoly problémákat jeleznek, amelyek valószínűleg ügyfeleket és keresési helyezést érnek.

Mit ellenőrzünk

Server Response Time (TTFB)
First Contentful Paint (FCP)
Largest Contentful Paint (LCP) — Core Web Vital
Total Blocking Time (TBT)
Cumulative Layout Shift (CLS) — Core Web Vital
Speed Index
Total Page Weight & HTTP Requests
Render-blocking Resources
Unused CSS/JS Detection
Text Compression (gzip/brotli)
DOM Size Analysis
Third-party Script Impact
Meta Title (length & quality)
Meta Description (length & quality)
H1 Heading (uniqueness & keyword)
Content Structure (H2 hierarchy)
Open Graph Tags (complete set)
Twitter/X Cards
Canonical URL
Structured Data (JSON-LD types)
robots.txt Analysis
XML Sitemap Validation
HTML lang Attribute
Image Alt Attributes (% coverage)
Meta Robots (noindex detection)
Hreflang Tags (multilingual)
Text-to-HTML Ratio
SSL/TLS Certificate
HTTP→HTTPS Redirect
HSTS (max-age, includeSubDomains, preload)
Content-Security-Policy (unsafe-inline/eval detection)
Clickjacking Protection (X-Frame-Options / frame-ancestors)
X-Content-Type-Options
Referrer-Policy
Permissions-Policy
Cookie Security Flags (Secure, HttpOnly, SameSite)
Technology Disclosure (Server, X-Powered-By)
Subresource Integrity (SRI) on External Scripts
security.txt (RFC 9116)
Server Version Disclosure (Apache/Nginx version hidden)
CDN / WAF Protection (Cloudflare, Sucuri, Fastly)
Viewport Configuration (zoom, scale)
Mobile Performance Score (Google Lighthouse)
Desktop/Mobile Performance Gap
Touch Target Size (≥48×48px)
Font Size Readability
Content Viewport Fit (no horizontal scroll)
Responsive Design Techniques (Flexbox, Grid, media queries)
PWA Features (Manifest + Service Worker)
AMP Detection
AI Bot Access Policy (GPTBot, ClaudeBot, PerplexityBot, 20+ bots)
llms.txt Validation (format, H1, blockquote, links per llmstxt.org spec)
llms-full.txt (Complete AI Content File)
Content Accessibility for AI (SSR vs JS-dependent)
Structured Data Foundation (JSON-LD types & coverage)
Product Schema Completeness (name, offers, ratings, SKU, brand, availability)
Organization Schema + Entity Linking (sameAs to Wikipedia, LinkedIn, socials)
FAQ Schema (Direct AI Answer Extraction)
Breadcrumb Schema (Navigation Hierarchy)
Site Search Schema (SearchAction for AI Store Search)
Content Depth for AI (word count, citation-worthiness)
Answer-First Content Format (BLUF methodology)
Heading Hierarchy (H1→H2→H3 outline for AI parsing)
Semantic HTML Structure (<main>, <article>, <nav>, <aside>)
Structured Content (Lists & Tables for AI extraction)
Content Freshness Signals (dateModified, visible dates)
Entity Clarity & Brand Signals (OG tags + sameAs cross-linking)
Author Expertise Signals (E-E-A-T — Person schema, credentials)
Reviews & Ratings Schema (AggregateRating, social proof)
AI Plugin Manifest (.well-known/ai-plugin.json)
Product Feed for AI Commerce (Google Merchant, XML feeds)
Speakable Content (Voice AI readiness — SpeakableSpecification)
Extractable Answer Blocks (paragraph length 40-80 words optimal)
Statistics & Data Presence (+41% AI visibility with data points)
Section Length Optimization (120-180 words per section)
Q&A Format Headings (question-phrased H2/H3 for AI extraction)
Internal Link Density (contextual links per 1,000 words)
Canonical Tag Consistency (AI deduplication)
Return Policy Schema (MerchantReturnPolicy)
Shipping Details Schema (OfferShippingDetails)
Knowledge Graph Readiness (@id, sameAs, brand consistency)
Content Readability (Flesch-Kincaid grade 8-10 optimal)
Image Alt Text Quality (3-15 word descriptive alt text)
Expert Quotations & Citations (blockquote, authority links)
ai.txt (Emerging AI permissions standard)
WebMCP Agentic Readiness (W3C standard, Chrome 146+)
Content-to-Boilerplate Ratio (main content vs noise)
Cookie Consent Banner (CMP detection)
Tracking Scripts Without Consent
Google Consent Mode v2
Privacy Policy Page
Cookie Policy (separate)
Legal Contact / Imprint Page
Terms & Conditions Page
Data Encryption (Mixed Content)
Third-party Data Sharing Audit
Personal Data Exposure in Source
CMS Version Disclosure (meta generator)
Sensitive Files (.env, .git, composer.json)
PHP Info Page Exposure
Backup Files (SQL dumps, ZIP archives)
Directory Listing
Admin Panel at Default URL
Debug Mode / Error Exposure
Outdated jQuery Detection (CVE mapping)
Outdated Bootstrap Detection (CVE-2018-20676, CVE-2019-8331, CVE-2024-6484)
CMS End of Life Detection (PrestaShop, WordPress, Magento)
PHP Version End of Life (EOL detection + upgrade advice)
Legacy Module Detection (PS modules, WP plugins — known risky)
CMS Information Files (readme, changelog)
CORS Misconfiguration
Form CSRF Token Protection
Email Address Harvesting
X-Powered-By Header Disclosure
Technology Stack Profiling (CMS, theme, modules, JS libraries, server, CDN)

Készítette

15+ év PrestaShop-szakértelem minden ellenőrzés mögött. Bármely platformon optimalizálunk webáruházakat.

Mélyebb auditra van szükséged?

Szakértőink manuálisan átnézik a webáruházadat, szerverbeállítást és kódbázist, olyan problémákért, amelyeket egyetlen automatikus eszköz sem tud felfogni.