Audit Result
UUID: 019d82fd-375e-70fe-8e7e-bdc57eda1185
https://delinea.com/
Scanned 4 months ago
Meta Information
-
Title Tag Pass
Found 58 characters. Length is optimal.
-
Meta Description Pass
Found 142 characters. Good snippet length.
-
Canonical URL Pass
Canonical found: https://delinea.com
-
Favicon Pass
Favicon found and reachable: https://delinea.com/hubfs/Delinea/logos/favicon/delinea-logo-favicon-android-chrome-512x512.png (HTTP 200).
-
Viewport Meta Pass
Viewport configured: width=device-width, initial-scale=1
-
HTML Lang Pass
Language declared as "en".
Content Structure
-
H1 Tag Pass
Exactly one H1 found: "Redefining identity security for the agentic AI era".
-
Heading Hierarchy Warning
Detected 2 heading level jumps.
- • Skipped from h1 to h4: "Redefining identity security for the agentic AI era" -> "Identity security, simplified.".
- • Skipped from h2 to h4: "powered by Iris AI" -> "Seamlessly secure your business—without slowing it down".
Fix: Follow semantic order (h1 -> h2 -> h3) and avoid skipping heading levels.
-
Image Alt Text Error
19 of 27 images are missing alt text.
Fix: Add meaningful alt attributes to all informative images for accessibility and image SEO.
Technical Optimization
-
HTTPS Pass
Page is served over HTTPS.
-
HSTS & HTTPS Redirect Warning
1 HTTPS hardening issues detected.
- • Could not probe the HTTP version of this page.
- • Strict-Transport-Security: max-age=31536000; includeSubDomains
Fix: Set Strict-Transport-Security with a long max-age, add includeSubDomains, and redirect all HTTP requests to HTTPS.
-
Security Headers Pass
Core security headers were detected.
Full HTTP headers (28)
- • alt-svc: h3=":443"; ma=86400
- • cache-control: s-maxage=36000, max-age=5
- • cf-ray: 9eb459695d56e633-IAD
- • content-encoding: br
- • content-security-policy: upgrade-insecure-requests
- • content-security-policy-report-only: script-src 'unsafe-inline' 'unsafe-eval' cdn2.hubspot.net *.hubspot.com *.hubspotusercontent10.net js.hscollectedforms.net js.hsleadflows.net js.hs-scripts.com js.hsadspixel.net js.hs-analytics.net js.hs-banner.com js.hs-banner.net *.hsforms.net *.hsforms.com static.hsappstatic.net js.hubspotfeedback.com feedback.hubapi.com js.usemessages.com *.vidyard.com cdnjs.cloudflare.com cdnjs.cloudflare.com 10921146.fls.doubleclick.net plausible.io *.hotjar.com *.hotjar.io *.qualified.com bttrack.com *.googletagmanager.com *.force.com *.thycotic.com *.centrify.com *.bidr.io *.rlcdn.cm t.co *.twitter.com burly.io *.clickagy.com *.doubleclck.net *.zoominfo.com lltrck.com facebook.com *.facebook.net *.redditstatic.com *.linkedin.com *.licdn.com *.demandbase.com *.zoominfo.com 'strict-dynamic' 'nonce-+wNVk8liEoDTdKvILN+E4A=='
- • content-type: text/html; charset=UTF-8
- • date: Sun, 12 Apr 2026 18:38:39 GMT
- • edge-cache-tag: CT-188909948959,CT-61301280920,CT-74421555554,CT-79233164175,CT-81652395281,CT-91318146169,P-19928113,CW-198160083085,CW-198186157882,CW-198557565963,CW-198557565977,CW-198557567055,CW-198557567062,CW-198557568350,CW-198775556973,CW-198874563912,E-196679039147,E-196679172370,E-196681287535,E-197137941037,E-197140837704,E-198159988052,E-206964734312,E-206969847926,E-52540273300,E-52541195776,RA-197137910962,RA-197390354804,PGS-ALL,SW-1,GC-197031949845,GC-198467179033,GC-198872371745,TS-196679172411
- • last-modified: Fri, 10 Apr 2026 23:11:54 GMT
- • link: <https://cdn.cookielaw.org/scripttemplates/otSDKStub.js>; rel=preload; as=script,<https://delinea.com/hubfs/hub_generated/template_assets/1/52541195776/1775855177956/template_main.min.css>; rel=preload; as=style,<https://delinea.com/hubfs/hub_generated/template_assets/1/197140837704/1775842826206/template_index.min.css>; rel=preload; as=style,</hs/hsstatic/cos-LanguageSwitcher/static-1.336/sass/LanguageSwitcher.css>; rel=preload; as=style,<https://7052064.fs1.hubspotusercontent-na1.net/hubfs/7052064/hub_generated/module_assets/1/-2712622/1775839075623/module_search_input.min.css>; rel=preload; as=style
- • nel: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
- • permissions-policy: geolocation=(), microphone=()
- • referrer-policy: no-referrer-when-downgrade
- • report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=uYSzX5auoLXX8GQ%2Fmd0JKDGUpd3WXJyOu9929GGd%2BEeETg9RGkRNIE2IHrcceNVUbr1gBhdofmiWecN7NbkZ3yLNGbqhQP%2FoepaXuDYVgqmWhqSIJhty0l%2BpaRYX"}],"group":"cf-nel","max_age":604800}
- • server: cloudflare
- • strict-transport-security: max-age=31536000; includeSubDomains
- • vary: Accept-Encoding
- • x-content-type-options: nosniff
- • x-frame-options: DENY
- • x-hs-cache-config: BrowserCache-5s-EdgeCache-180s
- • x-hs-cache-control: s-maxage=36000, max-age=0
- • x-hs-cf-cache-status: HIT
- • x-hs-cfworker-meta: {"contentType":"SITE_PAGE","resolver":"PreRenderedContentResolver"}
- • x-hs-content-id: 61301280920
- • x-hs-hub-id: 19928113
- • x-hs-portal-id: 19928113
- • x-hs-prerendered: Fri, 10 Apr 2026 23:11:54 GMT
-
CSP Quality Warning
3 CSP hardening issues detected.
- • CSP is missing object-src 'none'.
- • CSP is missing a base-uri restriction.
- • CSP is missing frame-ancestors protection.
- • Content-Security-Policy: upgrade-insecure-requests
Fix: Tighten Content-Security-Policy by removing unsafe directives and adding object-src, base-uri, and frame-ancestors restrictions.
-
Cookie Security Pass
No first-party cookies were set during the initial page load.
-
Server response headers do not expose version tokens.
-
Cloudflare Proxy Pass
Domain appears to be behind Cloudflare.
- • server: cloudflare
- • cf-ray: 9eb459695d56e633-IAD
-
Perceived Load Time Pass
Loaded in 0.36s (perceived).
-
Render Blocking Resources Warning
2 scripts and 4 styles may block rendering.
- • script: https://js.hs-analytics.net/analytics/1776018900000/19928113.js
- • script: https://cdn.cookielaw.org/scripttemplates/otSDKStub.js
- • style: https://delinea.com/hubfs/hub_generated/template_assets/1/52541195776/1775855177956/template_main.min.css
- • style: https://delinea.com/hubfs/hub_generated/template_assets/1/197140837704/1775842826206/template_index.min.css
- • style: https://delinea.com/hs/hsstatic/cos-LanguageSwitcher/static-1.336/sass/LanguageSwitcher.css
- • style: https://7052064.fs1.hubspotusercontent-na1.net/hubfs/7052064/hub_generated/module_assets/1/-2712622/1775839075623/module_search_input.min.css
Fix: Defer non-critical scripts and inline critical CSS to improve first paint speed.
-
Compression Warning
15 text resources look uncompressed.
- • https://js.hs-banner.com/v2/cf-location (text/plain;charset=UTF-8)
- • https://a.burly.io/VBOd0zZx.js (text/javascript; charset=utf-8)
- • https://app.qualified.com/w/1/BdjPskbL4kuxjHty/visitor_events?wu= (text/plain; charset=utf-8)
- • https://ws.zoominfo.com/pixel/61fbf23a3cd9cc001d97fbce (text/javascript)
- • https://a.burly.io/static/js/ls-min.js (text/javascript; charset=utf-8)
- • https://cdn.bttrack.com/universal/44860 (application/javascript; charset=utf-8)
- • https://a.burly.io/touch/VBOd0zZx?callback=jQuery36004892424876456797_1776019119863&imtc=%7B%22u%22%3Anull%2C%22i%22%3Anull%2C%22t%22%3Anull%2C%22ts%22%3A%222026-04-12T18%3A38%3A40.433Z%22%2C%22v%22%3A6%2C%22l%22%3A%7B%22p%22%3A%7B%22utm_medium%22%3A%22Direct%22%2C%22utm_source%22%3A%22direct%22%7D%2C%22e%22%3A%22https%3A%2F%2Fdelinea.com%2F%22%2C%22r%22%3A%22%22%2C%22t%22%3A%222026-04-12T18%3A38%3A40.576Z%22%2C%22tp%22%3Anull%7D%7D&_=1776019119864 (application/javascript; charset=utf-8)
- • https://54.156.2.105/is (text/plain;charset=utf-8)
- • https://cdn.bttrack.com/js/15899/analytics/1.0/analytics.min.js (text/javascript; charset=utf-8)
- • https://s.company-target.com/s/sync?exc=lr (text/html; charset=UTF-8)
- • https://c.6sc.co/?m=1 (text/plain)
- • https://ipv6.6sc.co/ (text/html)
- • https://gs.mountain.com/gs (application/javascript;charset=utf-8)
- • https://js.adsrvr.org/universal_pixel.js (application/javascript)
- • https://4qtww7scb2xp7gbtjj4dgewyqy0eozjg.lambda-url.us-east-1.on.aws/9b1c9ad8394084620524ba41b8f848a6-imt-VBOd0zZx (application/json)
Fix: Enable Brotli or Gzip compression for HTML, CSS, JS, and JSON responses.
-
Robots.txt Pass
Found robots.txt (200).
-
Sitemap File Pass
Found sitemap (200) at https://delinea.com/sitemap.xml.
-
Crawl Directives Warning
No robots meta tag defined.
Fix: Add <meta name="robots" content="index,follow"> (or the intended directive) in <head>.
Accessibility Basics
-
Form Labels Pass
All 8 controls are labeled.
-
Landmarks Warning
Missing landmarks: main.
Fix: Use semantic regions (<header>, <nav>, <main>, <footer>) for navigation and assistive tech.
-
Tap Target Size Warning
24 interactive elements appear smaller than 48px.
- • a.srOnly (Skip to content) - 1x1px
- • a.navigation__link.-utility (Blog) - 52x20px
- • a.navigation__link.-utility (Contact) - 78x20px
- • button.navigation__link.-utility - 16x16px
- • a.siteHeader__logo - 36x36px
- • a.button.accent-secondary (Learn more) - 159x40px
- • a.button.-ghost (Read the blog post) - 218x40px
- • a.link (View all case studies) - 226x22px
- • a.button.-outline (Explore the platform) - 229x40px
- • a.slide__action (Learn more) - 107x22px
- • a.slide__action (Learn more) - 107x22px
- • a.slide__action (Learn more) - 107x22px
- • a.slide__action (Learn more) - 107x22px
- • a.slide__action (Learn more) - 107x22px
- • a.slide__action (Learn more) - 107x22px
- • a.button.accent-secondary (Try an interactive demo) - 253x40px
- • a.button.-outline-fill (Explore the platform) - 229x40px
- • a.button (View all resources) - 211x40px
- • a.card__cta.link (Read the report) - 163x25px
- • a.card__cta.link (Try the interactive demo) - 236x25px
- • a.card__cta.link (Read the blog) - 146x25px
- • a.card__cta.link (Register to attend) - 184x25px
- • a.card__cta.link (Download the ebook) - 202x25px
- • a.sitemap__link.-priority (Blog) - 38x23px
Fix: Increase target size to at least 48x48 CSS pixels for touch interactions.
Social & Rich Results
-
Open Graph Basics Pass
Core Open Graph tags are present.
-
-
Twitter Card Pass
twitter:card set to summary_large_image.
-
Structured Data Pass
JSON-LD schema detected.
-
PWA Metadata Warning
Manifest or Apple touch icon is missing.
Fix: Link your web app manifest and apple-touch-icon for improved install/share experiences.
-
Open Graph/Twitter Quality Warning
1 social preview quality issues detected.
- • ISSUE: Preview image is below recommended size (1200x630).
- • GUIDELINE: Optimal og:title length: 40-60 characters (acceptable: 10-70).
- • GUIDELINE: Optimal og:description length: 110-160 characters (acceptable: 50-200).
- • GUIDELINE: Optimal preview image size: 1200x630 pixels.
- • GUIDELINE: Optimal preview image aspect ratio: 1.91:1.
- • GUIDELINE: Optimal preview image file size: under 5 MB.
- • GUIDELINE: Recommended twitter:card: summary_large_image.
- • MEASURED: Image size: 0.08 MB
- • MEASURED: Image dimensions: 1200x627
Fix: Use absolute OG/Twitter URLs, keep metadata lengths in recommended ranges, and provide a preview image near 1200x630 under 5MB.
Links Analysis
-
Internal Links Pass
Checked 80 links. No broken internal links found.
-
External Links Pass
No broken external links found in checked URLs.
-
Link Format Warning
1 links are empty, invalid, or placeholder-only.
- • href="#" text="Your Privacy Choices"
Fix: Replace empty/#/javascript href values with real destinations or use buttons for non-navigation actions.
Performance & Runtime
-
Core Web Vitals: LCP Pass
Largest Contentful Paint: 0.60s.
-
Core Web Vitals: CLS Pass
Cumulative Layout Shift: 0.071.
-
Main Thread Blocking (TBT) Warning
Total Blocking Time estimate: 265ms.
Fix: Reduce heavy JavaScript work, split long tasks, and defer non-critical scripts.
-
Broken Assets Error
2 asset requests failed.
- • https://js.hsleadflows.net/leadflows.js (net::ERR_FAILED)
- • https://bttrack.com/Pixel/Retarget/2327 (net::ERR_BLOCKED_BY_ORB)
Fix: Fix missing files, update asset URLs, and ensure static assets return HTTP 200.
-
JavaScript Runtime Errors Warning
16 JavaScript runtime issues detected.
- • Request failed: https://api.company-target.com/api/v3/ip.json?referrer=&page=https%3A%2F%2Fdelinea.com%2F&page_title=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management (HTTP 401, type: xhr)
- • Request failed: https://js.hsleadflows.net/leadflows.js (net::ERR_FAILED, type: script)
- • Request failed: https://app.qualified.com/w/1/BdjPskbL4kuxjHty/visitor_events?wu= (net::ERR_ABORTED, type: fetch)
- • Request failed: https://www.google.com/ccm/collect?rcb=12&frm=0&ae=g&en=page_view&dl=https%3A%2F%2Fdelinea.com%2F&scrsrc=www.googletagmanager.com&rnd=334131214.1776019120&dt=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management&auid=36870784.1776019120&navt=n&npa=0&ep.ads_data_redaction=0>m=45He6481v855958719za200zd855958719xea&gcd=13l3l3l3l1l1&dma=0&tag_exp=0~115938466~115938469~117266402&apve=1&apvf=f&apvc=1&tft=1776019120401&tfd=923 (net::ERR_ABORTED, type: fetch)
- • Request failed: https://analytics.google.com/g/collect?v=2&tid=G-TDZJ8VJP7X>m=45je6481v9139025860za20g&_p=1776019119666&_gaz=1&gcd=13l3l3l3l2l1&npa=0&dma=0&_eu=EBAIAGA&_ng=1&are=1&cid=843646424.1776019121&frm=0&ir=1&pscdl=noapi&rcb=4&sr=1280x800&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uam=&uamb=0&uap=Linux&uapv=&uaw=0&ul=en-us&gaf=2&_s=1&tag_exp=0~115616986~115938466~115938468~117266400~117384406~118131809&dl=https%3A%2F%2Fdelinea.com%2F&dt=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management&sid=1776019120&sct=1&seg=0&_tu=6AY&en=page_view&_fv=1&_ss=1&_ee=1&ep.ua_dimension_1=GTM-PS6X3QD%3A52&tfd=1525 (net::ERR_ABORTED, type: fetch)
- • Request failed: https://www.google.com/rmkt/collect/10839136395/?random=1776019121195&cv=11&fst=1776019121195&fmt=8&bg=ffffff&guid=ON&async=1>m=45be6481v9137542404z8855958719za20gzb855958719zd855958719xea&gcd=13l3l3l3l1l1&dma=0&tag_exp=0~115938466~115938469&u_w=1280&u_h=800&url=https%3A%2F%2Fdelinea.com%2F&rcb=1&frm=0&tiba=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management&hn=www.googleadservices.com&rdp=1&npa=0&pscdl=noapi&auid=36870784.1776019120&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uamb=0&uam=&uap=Linux&uapv=&uaw=0&_tu=CAI&gcp=5 (net::ERR_ABORTED, type: fetch)
- • Request failed: https://www.google.com/ccm/collect?rcb=1&frm=0&ae=g&dl=https%3A%2F%2Fdelinea.com%2F&scrsrc=www.googletagmanager.com&rnd=334131214.1776019120&dt=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management&auid=36870784.1776019120&navt=n&npa=0&_tu=CAI>m=45be6481v9137542404z8855958719za20gzb855958719zd855958719xea&gcd=13l3l3l3l1l1&dma=0&tag_exp=0~115938466~115938469&apve=1&apvf=f&apvc=0&tids=AW-10839136395&tid=AW-10839136395&tft=1776019121240&tfd=1762 (net::ERR_ABORTED, type: fetch)
- • Request failed: https://px.ads.linkedin.com/wa/?medium=fetch&fmt=g (net::ERR_ABORTED, type: fetch)
- • Access to script at 'https://js.hsleadflows.net/leadflows.js' from origin 'https://delinea.com' has been blocked by CORS policy: No 'Access-Control-Allow-Origin' header is present on the requested resource. [https://delinea.com/:1]
- • Failed to load resource: net::ERR_FAILED [https://js.hsleadflows.net/leadflows.js:1]
- • Blocked script execution in 'about:blank' because the document's frame is sandboxed and the 'allow-scripts' permission is not set. [https://cdn.cookielaw.org/scripttemplates/202402.1.0/otBannerSdk.js:7]
- • Blocked script execution in 'about:blank' because the document's frame is sandboxed and the 'allow-scripts' permission is not set. [about:blank:1]
- • Failed to load resource: the server responded with a status of 401 () [https://api.company-target.com/api/v3/ip.json?referrer=&page=https%3A%2F%2Fdelinea.com%2F&page_title=Delinea%20Identity%20Security%20and%20Privileged%20Access%20Management:1]
- • Blocked script execution in 'https://s.company-target.com/s/sync?exc=lr' because the document's frame is sandboxed and the 'allow-scripts' permission is not set. [https://s.company-target.com/s/sync?exc=lr:1]
- • Cannot read properties of null (reading 'addEventListener')
- • unauthorized
Fix: Fix JS files returning 404/failed requests and resolve the listed runtime exceptions.