Skip to main content

hmd-reif.de — Website Report

Scored 64/100 · Scanned with Foglift

D
OverallOverall Score — weighted average of all category scores

hmd-reif.de scored 64. One fix would take it to 84.

3 critical6 warnings10 total issues

Quick wins

~42 min total fix time
1AI search engines can't read your site~2m
2Missing HSTS header~2m
3Missing X-Content-Type-Options header~2m

https://hmd-reif.de/ · 2026-06-28

Scanned with Foglift · Technical Audit + AI Readiness analysis

AI Search Readiness Risk

Your AI Readiness score of 34/100 means AI assistants like ChatGPT and Perplexity may not recommend your site. Monitor your AI visibility →

AI Action Plan

Website Analysis for https://hmd-reif.de Your site scores 64/100, but AI search engines can barely find you. AI Visibility: 33/100. When customers ask ChatGPT or Perplexity about your industry, you're likely not in the answer. We found 3 critical issues and 6 warnings. Here's your prioritized action plan:

FIX FIRST (Critical): 1. AI search engines can't read your site — Your site blocks 7 AI crawlers (GPTBot, ChatGPT-User, ClaudeBot...). This means ChatGPT, Perplexity, and other AI assistants won't recommend your site in their answers. Ask your developer to update the robots.txt file to allow these crawlers.

2. Missing HSTS header — Enable HTTP Strict Transport Security to force HTTPS connections. 3. Missing Content Security Policy header — Add a Content-Security-Policy header to prevent XSS and injection attacks. QUICK WINS (Warnings): 1. Page content is too thin for AI — Your page has very few headings and paragraphs. AI assistants need well-organized, text-rich content to understand and recommend your site. Add clear headings, descriptive paragraphs, and detailed information about your offerings

8 more critical fixes + quick wins in your full report

Enter your email and we'll send the complete action plan to your inbox.

No spam. Just your report.

Share This Report

Send this scan to a teammate or contact. The shareable link includes all scores and issues.

Email to Contact

AI Visibility

How likely AI assistants like ChatGPT, Perplexity, and Gemini are to cite your brand

33F
0
Brand Mentions
Unable to check brand mentions: Brave API 402: {"type":"ErrorResponse","error":{"id":"1a643a7a-2558-4354-9a68-5c18fcc2bbd5","status":402,"detail":"Usage limit exceeded.","meta":{"plan":"Search","current_spend":5.0,"usage_limit":5.0,"usage_limit_ty
20
Domain Authority
PageRank: 2.6/10, 0+ external references
90
Content Freshness
67 of 67 pages updated in the last 30 days
57
Technical Readiness
Moderate technical readiness — some improvements possible

Technical Issues

AI search engines can't read your sitecritical~2 min fix

Your site blocks 7 AI crawlers (GPTBot, ChatGPT-User, ClaudeBot...). This means ChatGPT, Perplexity, and other AI assistants won't recommend your site in their answers. Ask your developer to update the robots.txt file to allow these crawlers.

Quick Fix
# Add to your robots.txt to allow AI crawlers:
User-agent: GPTBot
Allow: /

User-agent: ChatGPT-User
Allow: /

User-agent: ClaudeBot
Allow: /

User-agent: PerplexityBot
Allow: /

User-agent: Google-Extended
Allow: /
Allow AI crawlers to index your content so you appear in ChatGPT, Perplexity, and Google AI Overviews.
Page content is too thin for AIwarning

Your page has very few headings and paragraphs. AI assistants need well-organized, text-rich content to understand and recommend your site. Add clear headings, descriptive paragraphs, and detailed information about your offerings.

Pro tip: The biggest drivers of AI visibility are brand mentions and domain authority — not just technical setup. Set up AI visibility monitoring →

How does AI see Hmd-reif?

When users ask AI about your industry, are you recommended?

G
C
P
Ge
A

See how ChatGPT, Claude, Perplexity, and Gemini talk about Hmd-reif

SEO & Technical Issues (8)

Missing HSTS headercriticalSecurity~2 min fix

Enable HTTP Strict Transport Security to force HTTPS connections.

Quick Fix
# Nginx:
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;

# Apache (.htaccess):
Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains"

# Next.js (next.config.js headers):
{ key: 'Strict-Transport-Security', value: 'max-age=31536000; includeSubDomains' }
HSTS forces browsers to use HTTPS, preventing downgrade attacks and cookie hijacking.
Missing Content Security Policy headercriticalSecurity~5 min fix

Add a Content-Security-Policy header to prevent XSS and injection attacks.

Quick Fix
# Nginx:
add_header Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline';" always;

# Apache (.htaccess):
Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline';"

# Next.js (next.config.js headers):
{ key: 'Content-Security-Policy', value: "default-src 'self'; script-src 'self' 'unsafe-inline'" }
Content-Security-Policy prevents XSS attacks by controlling which resources the browser can load.
Missing X-Content-Type-Options headerwarningSecurity~2 min fix

Set X-Content-Type-Options: nosniff to prevent MIME-type sniffing.

Quick Fix
# Nginx:
add_header X-Content-Type-Options "nosniff" always;

# Next.js (next.config.js headers):
{ key: 'X-Content-Type-Options', value: 'nosniff' }
Prevents browsers from MIME-type sniffing, which can lead to security vulnerabilities.
Missing X-Frame-Options headerwarningSecurity~2 min fix

Set X-Frame-Options to prevent clickjacking attacks.

Quick Fix
# Nginx:
add_header X-Frame-Options "SAMEORIGIN" always;

# Next.js (next.config.js headers):
{ key: 'X-Frame-Options', value: 'SAMEORIGIN' }
X-Frame-Options prevents clickjacking by controlling who can embed your page in an iframe.
Missing Referrer Policy headerwarningSecurity~2 min fix

Add a Referrer-Policy header to control information leakage.

Quick Fix
# Nginx:
add_header Referrer-Policy "strict-origin-when-cross-origin" always;

# Next.js (next.config.js headers):
{ key: 'Referrer-Policy', value: 'strict-origin-when-cross-origin' }
Controls how much referrer information is sent with requests, protecting user privacy.
Missing Permissions Policy headerwarningSecurity~2 min fix

Add a Permissions-Policy header to control browser feature access.

Quick Fix
# Nginx:
add_header Permissions-Policy "camera=(), microphone=(), geolocation=()" always;

# Next.js (next.config.js headers):
{ key: 'Permissions-Policy', value: 'camera=(), microphone=(), geolocation=()' }
Permissions-Policy restricts which browser features your site can use, reducing attack surface.
Server response could be fasterwarningPerformance

Server responded in 1.6s. Aim for under 200ms TTFB. Consider caching, CDN, or server-side optimizations.

No skip navigation linkinfoAccessibility~5 min fix

Add a 'Skip to main content' link at the top of the page so keyboard users can bypass repetitive navigation.

Quick Fix
<!-- Add as the first element inside <body> -->
<a href="#main-content" class="sr-only focus:not-sr-only focus:absolute focus:top-2 focus:left-2 focus:z-50 focus:px-4 focus:py-2 focus:bg-blue-600 focus:text-white focus:rounded">
  Skip to main content
</a>

<!-- Add id to your main content area -->
<main id="main-content">
  ...
</main>
Skip links let keyboard users bypass repetitive navigation and jump straight to content.

Your Potential Score

64

Now

79

Potential

+15 points possible by fixing 10 issues

That moves you from D to Cabove average

Track your AI visibility over time

AI Visibility Monitoring

We check AI prompts weekly across ChatGPT, Perplexity, and Google AI. See how often your brand appears.

Competitor Tracking

Compare your AI visibility against competitors. Know when they overtake you.

Weekly Digest

Get AI-generated insights emailed every Monday with action items.

Start monitoring — from $49/mo

Free tier available · No credit card required

Industry Benchmark

SEO
Avg: 62+38Ahead
AI Readiness
Avg: 35-1Behind
Performance
Avg: 55+35Ahead
Security
Avg: 40-40At risk
Accessibility
Avg: 68+29Ahead

Based on 120+ websites scanned across industries. See full benchmark report →

What This Score Means for You

Not AI-ready — ChatGPT, Perplexity, and Google AI Overviews likely cannot cite your site. You're invisible to the fastest-growing search channel.

Security gaps — Missing security headers may flag your site as unsafe in browsers, hurting trust and conversions.

Most of these issues have simple, copy-paste fixes. Check the code snippets above for quick solutions.

Security score: 0/100

Most security issues are 5-minute fixes — adding HTTP headers to your server config. Check the code fixes above for the exact headers to add — we include copy-paste code for Nginx, Apache, Vercel, and Netlify.

Score of 0 means your site has no security headers at all. Browsers may show security warnings to visitors.

Recent scans on Foglift

Scan your own site free →