Audit Result

UUID: 019e72b7-8cb5-7210-b508-9a78b4871957

luaar.ae

https://luaar.ae/

Scanned 3 months ago

77
Fair Score
39 total checks
Passed
24
Warnings
12
Errors
3

Meta Information

  • Title Tag Pass

    Found 51 characters. Length is optimal.

  • Found 137 characters. Good snippet length.

  • Canonical found: https://luaar.ae/

  • Favicon Pass

    Favicon found and reachable: //luaar.ae/cdn/shop/files/Logo-04.svg?crop=center&height=32&v=1753301332&width=32 (HTTP 200).

    Favicon
  • Viewport configured: width=device-width,initial-scale=1

  • HTML Lang Pass

    Language declared as "en".

Content Structure

  • H1 Tag Pass

    Exactly one H1 found: "".

  • Valid heading flow across 33 headings.

  • 4 of 14 images are missing alt text.

    Fix: Add meaningful alt attributes to all informative images for accessibility and image SEO.

Technical Optimization

  • HTTPS Pass

    Page is served over HTTPS.

  • 3 HTTPS hardening issues detected.

    • • HSTS max-age is too short (7889238s).
    • • HSTS is missing includeSubDomains.
    • • Could not probe the HTTP version of this page.
    • • Strict-Transport-Security: max-age=7889238

    Fix: Set Strict-Transport-Security with a long max-age, add includeSubDomains, and redirect all HTTP requests to HTTPS.

  • Missing: referrer-policy.

    Full HTTP headers (27)
    • • alt-svc: h3=":443"; ma=86400
    • • cf-cache-status: DYNAMIC
    • • cf-ray: a033e9f06e94e5b8-IAD
    • • content-encoding: br
    • • content-language: en-AE
    • • content-length: 48303
    • • content-security-policy: block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;
    • • content-type: text/html; charset=utf-8
    • • date: Fri, 29 May 2026 07:51:25 GMT
    • • etag: "page_cache:67181740125:IndexController:b03e40928b08f9ec535755d3c8c67910"
    • • link: <https://cdn.shopify.com>; rel="preconnect", <https://cdn.shopify.com>; rel="preconnect"; crossorigin, <//luaar.ae/cdn/shop/t/36/assets/component-localization-form.css?v=170315343355214948141778266809>; as="style"; rel="preload", <//luaar.ae/cdn/shop/files/Logo-01_1139bb3d-74a1-40ad-92fe-3ff141dd3053.svg?v=1748535852&width=600>; as="image"; rel="preload"; imagesrcset="//luaar.ae/cdn/shop/files/Logo-01_1139bb3d-74a1-40ad-92fe-3ff141dd3053.svg?v=1748535852&width=50 50w, //luaar.ae/cdn/shop/files/Logo-01_1139bb3d-74a1-40ad-92fe-3ff141dd3053.svg?v=1748535852&width=75 75w, //luaar.ae/cdn/shop/files/Logo-01_1139bb3d-74a1-40ad-92fe-3ff141dd3053.svg?v=1748535852&width=100 100w"; imagesizes="(min-width: 750px) 50px, 50vw"
    • • nel: {"report_to":"cf-nel","success_fraction":0.01,"max_age":604800}
    • • powered-by: Shopify
    • • report-to: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=mE4D5NBgtej2ABl0YkquzNxEMzCb%2BSP3j4gZYGBKiY8rvOC%2BfjC5gOdiYrDwZnF5Ea42Bq%2FaRIZtu0OOLJNSm8hShNIOwhu5GZhszGsmohlf6luF1u3dfSu5"}]}
    • • server: cloudflare
    • • server-timing: processing;dur=33, db;dur=12, asn;desc="213230", edge;desc="IAD", country;desc="US", theme;desc="149283799133", pageType;desc="index", servedBy;desc="fj52", requestID;desc="93edc6bf-b1da-44b0-89f8-54295f946b8b-1780041085", _y;desc="99341a59-2874-4f55-b319-bc84719dbd04", _s;desc="51258640-b6f4-46e6-bba0-0af03a21d1e6", _cmp;desc="3.AMPS_USVA_f_f_TPWMohMLRkKw*lEif8cA6A", compressionLevel;desc="5"
    • • shopify-complexity-score: 29
    • • shopify-complexity-score-v2: 29
    • • strict-transport-security: max-age=7889238
    • • vary: Accept accept-encoding
    • • x-content-type-options: nosniff
    • • x-dc: gcp-us-east1,gcp-us-east1,gcp-us-east1
    • • x-download-options: noopen
    • • x-frame-options: DENY
    • • x-permitted-cross-domain-policies: none
    • • x-request-id: 93edc6bf-b1da-44b0-89f8-54295f946b8b-1780041085
    • • x-xss-protection: 1; mode=block

    Fix: Add the missing security headers at your reverse proxy or application layer.

  • CSP Quality Warning

    2 CSP hardening issues detected.

    • • CSP is missing object-src 'none'.
    • • CSP is missing a base-uri restriction.
    • • Content-Security-Policy: block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;

    Fix: Tighten Content-Security-Policy by removing unsafe directives and adding object-src, base-uri, and frame-ancestors restrictions.

  • No first-party cookies were set during the initial page load.

  • Server response headers do not expose version tokens.

  • Domain appears to be behind Cloudflare.

    • • server: cloudflare
    • • cf-cache-status: DYNAMIC
    • • cf-ray: a033e9f06e94e5b8-IAD
  • Loaded in 0.35s (perceived).

  • 3 scripts and 6 styles may block rendering.

    • • script: https://luaar.ae/apps/buckscc/sdk.min.js
    • • script: https://cdnjs.cloudflare.com/ajax/libs/jquery/3.3.1/jquery.min.js
    • • script: https://cdnjs.cloudflare.com/ajax/libs/jquery/3.3.1/jquery.min.js
    • • style: https://luaar.ae/cdn/shopifycloud/portable-wallets/latest/accelerated-checkout-backwards-compat.css
    • • style: https://luaar.ae/cdn/shop/t/36/assets/base.css?v=7118787937005890451779109981
    • • style: https://luaar.ae/cdn/shop/t/36/assets/luaar-custom.css?v=179548491178268329401778768267
    • • style: https://luaar.ae/cdn/shop/t/36/assets/component-cart-items.css?v=13033300910818915211778266809
    • • style: https://luaar.ae/cdn/shop/t/36/assets/component-localization-form.css?v=170315343355214948141778266809
    • • style: https://luaar.ae/cdn/shop/t/36/assets/component-predictive-search.css?v=118923337488134913561778266809

    Fix: Defer non-critical scripts and inline critical CSS to improve first paint speed.

  • Compression Warning

    6 text resources look uncompressed.

    • • https://luaar.ae/api/collect (text/html; charset=utf-8)
    • • https://otlp-http-production.shopifysvc.com/v1/metrics (application/json)
    • • https://otlp-http-production.shopifysvc.com/v1/logs (application/json)
    • • https://www.merchant-center-analytics.goog/mc/collect?v=2&tid=MC-Q6FT50VDKB&gtm=45Pe65r2v9205244771za200&_p=1780041086268&gcs=G111&gcd=13t3t3t2t5l1&npa=0&dma_cps=a&dma=1&gdid=dN2ZkMj.dNTU0Yz.dYmNjMT&are=1&cid=1713532854.1780041087&excid=shp.99341a59-2874-4f55-b319-bc84719dbd04&frm=0&pscdl=noapi&rcb=15&sr=1280x800&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uam=&uamb=0&uap=Linux&uapv=&uaw=0&ul=en-us&_s=1&tag_exp=0~115938465~115938469~119027223~119034491~119064971&dp=%2F&dt=LUAAR%20%E2%80%93%20Luxury%20Kaftans%20%26%20Abayas%20%7C%20Timeless%20Elegance&dl=https%3A%2F%2Fluaar.ae%2F&sid=1780041086&sct=1&seg=0&_tu=AAI&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1&edid=dNzYwYj&evnid=sh-72b775ee-EA0D-45C3-70B8-4D78B613A838&tfd=1111 (text/plain)
    • • https://analytics.bucks.helixo.co/api/analytics/currency-switch (application/json; charset=utf-8)
    • • https://analytics.bucks.helixo.co/api/analytics/track-visit (application/json; charset=utf-8)

    Fix: Enable Brotli or Gzip compression for HTML, CSS, JS, and JSON responses.

  • Robots.txt Pass

    Found robots.txt (200).

  • Found sitemap (200) at https://luaar.ae/sitemap.xml.

  • No robots meta tag defined.

    Fix: Add <meta name="robots" content="index,follow"> (or the intended directive) in <head>.

Accessibility Basics

  • Form Labels Error

    1 of 3 controls are missing labels.

    • • select#bucksSelector.buckcc.buckscc-select-hidden (bucksSelector)

    Fix: Associate each form control with a visible label, aria-label, or aria-labelledby.

  • Landmarks Pass

    Header, nav, main, and footer landmarks are present.

  • Tap Target Size Warning

    13 interactive elements appear smaller than 48px.

    • • a#HeaderMenu-shop-luxury-kaftan.header__menu-item.list-menu__item (LUXURY KAFTAN) - 198x34px
    • • a#HeaderMenu-shop-daily-edit.header__menu-item.list-menu__item (DAILY EDIT) - 198x34px
    • • a#HeaderMenu-shop-abaya.header__menu-item.list-menu__item (ABAYA) - 198x34px
    • • button.disclosure__button.localization-form__select (English) - 86x38px
    • • button.search__button.field__button (Search) - 44x44px
    • • button.search-modal__close-button.modal__close-button (Close) - 20x44px
    • • a#CardLink-template--20177427333213__featured_collection-7941997101149.full-unstyled-link (Serentique Kaftan) - 264x19px
    • • a#CardLink-template--20177427333213__featured_collection-7826478891101.full-unstyled-link (Layali Kaftan Dress in Crepe) - 264x19px
    • • a#CardLink-template--20177427333213__featured_collection-7836273836125.full-unstyled-link (Mira Kaftan Dress in Crepe) - 264x19px
    • • a#CardLink-template--20177427333213__featured_collection-7942365937757.full-unstyled-link (Vista Kaftan) - 264x19px
    • • button.ai-brand-story-button-aynlszm94wdhaewlutaigenblocka13d9938yzp7u (Read Our Journey) - 147x17px
    • • button#Subscribe.newsletter-form__button.field__button (Subscribe) - 44x47px
    • • button.disclosure__button.localization-form__select (English) - 103x42px

    Fix: Increase target size to at least 48x48 CSS pixels for touch interactions.

Social & Rich Results

  • Core Open Graph tags are present.

  • og:image is present and absolute.

    Open Graph Image
  • twitter:card set to summary_large_image.

  • JSON-LD schema detected.

  • PWA Metadata Warning

    Manifest or Apple touch icon is missing.

    Fix: Link your web app manifest and apple-touch-icon for improved install/share experiences.

  • 1 social preview quality issues detected.

    • • ISSUE: Could not determine preview image dimensions.
    • • GUIDELINE: Optimal og:title length: 40-60 characters (acceptable: 10-70).
    • • GUIDELINE: Optimal og:description length: 110-160 characters (acceptable: 50-200).
    • • GUIDELINE: Optimal preview image size: 1200x630 pixels.
    • • GUIDELINE: Optimal preview image aspect ratio: 1.91:1.
    • • GUIDELINE: Optimal preview image file size: under 5 MB.
    • • GUIDELINE: Recommended twitter:card: summary_large_image.
    • • MEASURED: Image size: 0.00 MB

    Fix: Use absolute OG/Twitter URLs, keep metadata lengths in recommended ranges, and provide a preview image near 1200x630 under 5MB.

Links Analysis

  • 1 internal links returned errors.

    • • https://luaar.ae/customer_authentication/redirect?locale=en&region_country=AE (HTTP 406)

    Fix: Fix or remove the listed internal URLs, and ensure routes/pages return 200 responses.

  • External Links Warning

    1 external links returned errors or timed out.

    • • https://www.ounass.ae/ (HTTP 403)

    Fix: Replace dead external URLs or point to working alternatives.

  • Link Format Warning

    12 links are empty, invalid, or placeholder-only.

    • • href="#" text="Bahrain AED د.إ"
    • • href="#" text="Kuwait AED د.إ"
    • • href="#" text="Oman AED د.إ"
    • • href="#" text="Qatar AED د.إ"
    • • href="#" text="Saudi Arabia AED د.إ"
    • • href="#" text="United Arab Emirates AED د.إ"
    • • href="#" text="English"
    • • href="#" text="العربية"
    • • href="#" text="English"
    • • href="#" text="العربية"
    • • href="#" text="English"
    • • href="#" text="العربية"

    Fix: Replace empty/#/javascript href values with real destinations or use buttons for non-navigation actions.

Performance & Runtime

  • Largest Contentful Paint: 1.32s.

  • Cumulative Layout Shift: 0.000.

  • Total Blocking Time estimate: 61ms.

  • No failed CSS/JS/image/font/media requests detected.

  • 7 JavaScript runtime issues detected.

    • • Request failed: https://luaar.ae/api/collect (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://monorail-edge.shopifysvc.com/v1/produce (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://www.google.com/ccm/collect?rcb=3&frm=0&auid=713301065.1780041086&dt=LUAAR%20%E2%80%93%20Luxury%20Kaftans%20%26%20Abayas%20%7C%20Timeless%20Elegance&en=page_view&dl=https%3A%2F%2Fluaar.ae%2F&scrsrc=www.googletagmanager.com&rnd=1786451109.1780041086&navt=n&npa=0&did=dN2ZkMj%2CdNTU0Yz%2CdYmNjMT&gdid=dN2ZkMj.dNTU0Yz.dYmNjMT&_tu=AAI&gtm=45be65s0h2za200xec&gcs=G111&gcd=13t3t3t2t5l1&dma_cps=a&dma=1&tag_exp=0~115616986~115938465~115938469~116701381~119034493&apve=1&apvf=f&apvc=1&tids=AW-17555813388&tid=AW-17555813388&tft=1780041086472&tfd=1031 (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://www.merchant-center-analytics.goog/mc/collect?v=2&tid=MC-Q6FT50VDKB&gtm=45Pe65r2v9205244771za200&_p=1780041086268&gcs=G111&gcd=13t3t3t2t5l1&npa=0&dma_cps=a&dma=1&gdid=dN2ZkMj.dNTU0Yz.dYmNjMT&are=1&cid=1713532854.1780041087&excid=shp.99341a59-2874-4f55-b319-bc84719dbd04&frm=0&pscdl=noapi&rcb=15&sr=1280x800&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uam=&uamb=0&uap=Linux&uapv=&uaw=0&ul=en-us&_s=1&tag_exp=0~115938465~115938469~119027223~119034491~119064971&dp=%2F&dt=LUAAR%20%E2%80%93%20Luxury%20Kaftans%20%26%20Abayas%20%7C%20Timeless%20Elegance&dl=https%3A%2F%2Fluaar.ae%2F&sid=1780041086&sct=1&seg=0&_tu=AAI&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1&edid=dNzYwYj&evnid=sh-72b775ee-EA0D-45C3-70B8-4D78B613A838&tfd=1111 (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://www.google.de/pagead/1p-conversion/17555813388/?random=2052578041&cv=11&fst=1780041086466&fmt=8&bg=ffffff&guid=ON&async=1&en=page_view&gtm=45be65s0h2za200xec&gcs=G111&gcd=13t3t3t2t5l1&dma_cps=a&dma=1&tag_exp=0~115616986~115938465~115938469~116701381~119034493&u_w=1280&u_h=800&url=https%3A%2F%2Fluaar.ae%2F&rcb=3&label=ogl7CLnuhZ0bEIzoobNB&capi=1&gtm_ee=1&evnid=sh-72b775ee-EA0D-45C3-70B8-4D78B613A838&excid=shp.99341a59-2874-4f55-b319-bc84719dbd04&tiba=LUAAR%20%E2%80%93%20Luxury%20Kaftans%20%26%20Abayas%20%7C%20Timeless%20Elegance&frm=0&did=dN2ZkMj%2CdNTU0Yz%2CdYmNjMT%2CdNzYwYj&gdid=dN2ZkMj.dNTU0Yz.dYmNjMT&edid=dNzYwYj&hn=www.googleadservices.com&rdp=0&npa=0&pscdl=noapi&auid=713301065.1780041086&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uamb=0&uam=&uap=Linux&uapv=&uaw=0&ec_mode=c&_tu=AAI&gcl_ctr=1~0~0~0&data=event%3Dpage_view%3Bpage_path%3D%2F&category=acrcp_v1_512&em=tv.1&ct_cookie_present=false&crd=CLTesQII8t-xAgit4bECCKG4sQIIscGxAgiwwbECCLHDsQIIisWxAgjCybECCLTGsQIIk9qxAgjb3LECCIfbsQII08WxAgjrzLECCO3OsQII1c-xAgj02rECCJfUsQIIyduxAgix4bECCLPhsQIIpt2xAgiw3rECCIDbsQJKFHRyaWdnZXI9ZXZlbnQtc291cmNlWgMKAQFiAwoBAw&cerd=CgEA&fsk=ChAI8PLk0AYQ_8uDlMHE2eZrEiwAibrUwcHzGstmtcGNmTle81xZ_GlvO28alh46LpYZJ_B08cK0iVYER3Qd4BoCZ5w&is_vtc=1&cid=CAQSXAAFq6B9ZvRFWtY8oK1rSHPSTbx4RHrBfNEZQKHV9ZELcnLXito8QNepk-tlg3u22k3OOfQNFMj9h9vBuEh7kVSKRG7JZpI4qK8jA5nYbOoonqsAx3STxtYx2iIf&random=1840526670&ipr=y&pscrd=IhMIlIaY5YHelAMV_1pHAR0BKy20OhFodHRwczovL2x1YWFyLmFlL0JXQ2hFSThQTGswQVlRNDZyT3lxRExtT2JjQVJJc0FGMUZKQ1cxWnhzVm82REk4M3RRNlBSTllOU2wxaTRVbWMyTk9nRlVjN0Q1ZkExUm1Sam5VS3ZzLXV3egwICWIICAAQABgAIAA (net::ERR_ABORTED, type: fetch)
    • • Framing 'https://shop.app/' violates the following Content Security Policy directive: "frame-ancestors 'self' https://shop.app https://admin.shopify.com". The request has been blocked.
    • • Failed to load resource: the server responded with a status of 403 () [chrome-error://chromewebdata/:1]

    Fix: Fix JS files returning 404/failed requests and resolve the listed runtime exceptions.