Audit Result
UUID: 01a03e23-c013-7116-8cf1-e52ea5f51b52
https://www.jotform.com/
Scanned 1 week ago
Meta Information
-
Title Tag Pass
Found 58 characters. Length is optimal.
-
Meta Description Pass
Found 151 characters. Good snippet length.
-
Canonical URL Pass
Canonical found: https://www.jotform.com/
-
Favicon Pass
Favicon found and reachable: https://cdn.jotfor.ms//assets/img/favicons/favicon-2021-light.png?v=0.2 (HTTP 200).
-
Viewport Meta Pass
Viewport configured: width=device-width, initial-scale=1
-
HTML Lang Pass
Language declared as "en".
Content Structure
-
H1 Tag Pass
Exactly one H1 found: "EASIEST ONLINE FORM BUILDER".
-
Heading Hierarchy Pass
Valid heading flow across 7 headings.
-
Image Alt Text Pass
All 93 images include alt text.
Technical Optimization
-
HTTPS Pass
Page is served over HTTPS.
-
HSTS & HTTPS Redirect Warning
2 HTTPS hardening issues detected.
- • HSTS is missing includeSubDomains.
- • Could not probe the HTTP version of this page.
- • Strict-Transport-Security: max-age=31536000
Fix: Set Strict-Transport-Security with a long max-age, add includeSubDomains, and redirect all HTTP requests to HTTPS.
-
Security Headers Pass
Core security headers were detected.
Full HTTP headers (25)
- • alt-svc: h3=":443"; ma=2592000
- • cache-control: no-cache
- • content-encoding: gzip
- • content-security-policy: default-src 'self' * data: 'unsafe-inline' 'unsafe-eval'
- • content-type: text/html; charset=UTF-8
- • date: Wed, 26 Aug 2026 12:55:18 GMT
- • expires: Thu, 01 Jan 1970 00:00:01 GMT
- • footer-cached: true
- • global-router: true
- • header-cached: true
- • jf-entrypoint: 1
- • jf-trace-id: e32e06fe3c935df9
- • last-modified: Wed, 26 Aug 2026 12:55:17 GMT
- • p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
- • permissions-policy: microphone=(self "https://agent.jotform.com" "https://form.jotform.com"), camera=(self "https://agent.jotform.com" "https://form.jotform.com")
- • pragma: no-cache
- • referrer-policy: strict-origin-when-cross-origin
- • strict-transport-security: max-age=31536000
- • vary: Accept-Encoding
- • via: 1.1 google
- • x-content-type-options: nosniff
- • x-frame-options: SAMEORIGIN
- • x-httpx-dc: ue4
- • x-httpx-id: 01a03e23-a2a1-74a1-a758-7527157e9daa
- • x-raw-uri: /
-
CSP Quality Error
6 CSP hardening issues detected.
- • script-src/default-src permits 'unsafe-inline'.
- • script-src/default-src permits 'unsafe-eval'.
- • script-src/default-src allows wildcard (*) sources.
- • CSP is missing object-src 'none'.
- • CSP is missing a base-uri restriction.
- • CSP is missing frame-ancestors protection.
- • Content-Security-Policy: default-src 'self' * data: 'unsafe-inline' 'unsafe-eval'
Fix: Tighten Content-Security-Policy by removing unsafe directives and adding object-src, base-uri, and frame-ancestors restrictions.
-
Cookie Security Pass
No first-party cookies were set during the initial page load.
-
Server response headers do not expose version tokens.
-
Cloudflare Proxy Warning
Domain does not appear to be behind Cloudflare.
-
Perceived Load Time Pass
Loaded in 0.80s (perceived).
-
Render Blocking Resources Warning
0 scripts and 1 styles may block rendering.
- • style: https://cdn.jotfor.ms/fonts/?family=Circular
Fix: Defer non-critical scripts and inline critical CSS to improve first paint speed.
-
Compression Pass
Text-like assets appear compressed.
-
Robots.txt Pass
Found robots.txt (200).
-
Sitemap File Pass
Found sitemap (200) at https://www.jotform.com/sitemap.xml.
-
Crawl Directives Pass
Robots meta found: ALL
Accessibility Basics
-
Form Labels Pass
All 1 controls are labeled.
-
Landmarks Pass
Header, nav, main, and footer landmarks are present.
-
Tap Target Size Warning
25 interactive elements appear smaller than 48px.
- • a#js-logoMarkup.jfRHeader--logo-link (Jotform Logo) - 148x30px
- • a.jfRHeader--nav-action-list-signup (Sign Up for Free) - 143x40px
- • a (Create a Form) - 116x41px
- • a (My Workspace) - 123x41px
- • a (Pricing) - 57x41px
- • a (Jotform Enterprise) - 152x41px
- • button (Toggle Examples Menu) - 96x44px
- • button (Toggle Products Menu) - 93x44px
- • button (Toggle Features Menu) - 90x44px
- • a (Tools) - 41x41px
- • a (AI Tools) - 63x41px
- • button (Toggle Alternatives Menu) - 117x44px
- • button (Toggle Templates Menu) - 102x44px
- • a (Form Themes) - 109x41px
- • a (Form Widgets) - 115x41px
- • button (Toggle Integrations Menu) - 116x44px
- • a (Website Widgets) - 139x41px
- • a (Contact Us) - 89x41px
- • a (User Guide) - 91x41px
- • button (Toggle Help Menu) - 58x44px
- • a (Jotform Academy) - 146x41px
- • a (Webinars) - 76x41px
- • a (Podcasts) - 72x41px
- • a (Professional Services) - 172x41px
- • a (Report Abuse) - 111x41px
Fix: Increase target size to at least 48x48 CSS pixels for touch interactions.
Social & Rich Results
-
Open Graph Basics Pass
Core Open Graph tags are present.
-
-
Twitter Card Pass
twitter:card set to summary_large_image.
-
Structured Data Pass
JSON-LD schema detected.
-
PWA Metadata Warning
Manifest or Apple touch icon is missing.
Fix: Link your web app manifest and apple-touch-icon for improved install/share experiences.
-
Social preview metadata and image quality look good for Open Graph/Twitter.
- • GUIDELINE: Optimal og:title length: 40-60 characters (acceptable: 10-70).
- • GUIDELINE: Optimal og:description length: 110-160 characters (acceptable: 50-200).
- • GUIDELINE: Optimal preview image size: 1200x630 pixels.
- • GUIDELINE: Optimal preview image aspect ratio: 1.91:1.
- • GUIDELINE: Optimal preview image file size: under 5 MB.
- • GUIDELINE: Recommended twitter:card: summary_large_image.
- • MEASURED: Image size: 0.16 MB
- • MEASURED: Image dimensions: 1200x630
Links Analysis
-
Internal Links Pass
Checked 80 links. No broken internal links found.
-
External Links Pass
No broken external links found in checked URLs.
-
Link Format Pass
All 268 links use non-empty href values.
Performance & Runtime
-
Core Web Vitals: LCP Pass
Largest Contentful Paint: 0.86s.
-
Core Web Vitals: CLS Pass
Cumulative Layout Shift: 0.001.
-
Total Blocking Time estimate: 16ms.
-
Broken Assets Pass
No failed CSS/JS/image/font/media requests detected.
-
No console/page runtime errors detected during audit.