Audit Result

UUID: 01a06e2f-6ac4-73fb-8204-0c58f3174c58

harmonik.pl

https://harmonik.pl/

Scanned 2 days ago

85
Excellent Score
39 total checks
Passed
27
Warnings
12
Errors
0

Meta Information

  • Title Tag Warning

    Found 67 characters. Keep title between 30 and 60 characters.

    Fix: Add a unique <title> tag describing the main page intent in 30-60 characters.

  • Found 163 characters. Keep description around 70-160 characters.

    Fix: Add <meta name="description" content="..."> in <head> with a clear page summary.

  • Canonical found: https://harmonik.pl

  • Favicon Pass

    Favicon found and reachable: /favicon.ico?favicon.0b3bf435.ico (HTTP 200).

    Favicon
  • Viewport configured: width=device-width, initial-scale=1

  • HTML Lang Pass

    Language declared as "pl".

Content Structure

Technical Optimization

  • HTTPS Pass

    Page is served over HTTPS.

  • 1 HTTPS hardening issues detected.

    • • Could not probe the HTTP version of this page.
    • • Strict-Transport-Security: max-age=63072000; includeSubDomains; preload

    Fix: Set Strict-Transport-Security with a long max-age, add includeSubDomains, and redirect all HTTP requests to HTTPS.

  • Missing: content-security-policy.

    Full HTTP headers (23)
    • • alt-svc: h3=":443"; ma=86400
    • • cache-control: s-maxage=31536000
    • • cf-cache-status: DYNAMIC
    • • cf-ray: a35fdcf21ae2b58e-IAD
    • • content-encoding: zstd
    • • content-security-policy-report-only: default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'none'; form-action 'self' https://www.facebook.com; frame-src 'self' https://www.facebook.com https://td.doubleclick.net https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://stats.clavado.ovh https://connect.facebook.net; style-src 'self' 'unsafe-inline'; img-src 'self' data: https:; font-src 'self' data:; connect-src 'self' https://*.supabase.co wss://*.supabase.co https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://region1.google-analytics.com https://www.google.com https://googleadservices.com https://www.googleadservices.com https://*.doubleclick.net https://stats.clavado.ovh https://www.facebook.com https://connect.facebook.net; worker-src 'self' blob:; manifest-src 'self'
    • • content-type: text/html; charset=utf-8
    • • date: Fri, 04 Sep 2026 20:49:50 GMT
    • • nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
    • • permissions-policy: camera=(), microphone=(), geolocation=(), interest-cohort=()
    • • referrer-policy: strict-origin-when-cross-origin
    • • report-to: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=V8laHnRMkgJwrEElP%2FKxsoSBIMQKKxkQp1NTZxGiC8siaGtMarqPrupycalABfmO61vdhWQ0FBYxHbkXcGFu2q5FbRJy0zBlry%2BlJufBBRtN5zgjwkgoWC0qVa01pNVTsFd2gv5HPpLYew%3D%3D"}]}
    • • server: cloudflare
    • • server-timing: cfCacheStatus;desc="DYNAMIC" cfEdge;dur=254,cfOrigin;dur=0
    • • strict-transport-security: max-age=63072000; includeSubDomains; preload
    • • vary: Accept-Encoding, rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, Accept-Encoding
    • • x-content-type-options: nosniff
    • • x-dns-prefetch-control: on
    • • x-frame-options: DENY
    • • x-nextjs-cache: HIT
    • • x-nextjs-prerender: 1 1
    • • x-nextjs-stale-time: 300
    • • x-powered-by: Next.js

    Fix: Add the missing security headers at your reverse proxy or application layer.

  • CSP Quality Warning

    Content-Security-Policy header is missing.

    • • Missing Content-Security-Policy header.

    Fix: Define a restrictive Content-Security-Policy and avoid unsafe directives such as unsafe-inline and unsafe-eval.

  • No first-party cookies were set during the initial page load.

  • Server response headers do not expose version tokens.

  • Domain appears to be behind Cloudflare.

    • • server: cloudflare
    • • cf-cache-status: DYNAMIC
    • • cf-ray: a35fdcf21ae2b58e-IAD
  • Loaded in 0.68s (perceived).

  • 3 scripts and 1 styles may block rendering.

    • • script: https://harmonik.pl/_next/static/chunks/a6dad97d9634a72d.js
    • • script: https://stats.clavado.ovh/script.js
    • • script: https://harmonik.pl/_next/static/chunks/7596b9e2d2e570b4.js
    • • style: https://harmonik.pl/_next/static/chunks/e8b82742609baadc.css

    Fix: Defer non-critical scripts and inline critical CSS to improve first paint speed.

  • Text-like assets appear compressed.

  • Robots.txt Pass

    Found robots.txt (200).

  • Found sitemap (200) at https://harmonik.pl/sitemap.xml.

  • No robots meta tag defined.

    Fix: Add <meta name="robots" content="index,follow"> (or the intended directive) in <head>.

Accessibility Basics

  • All 0 controls are labeled.

  • Landmarks Warning

    Missing landmarks: header, main.

    Fix: Use semantic regions (<header>, <nav>, <main>, <footer>) for navigation and assistive tech.

  • Tap Target Size Warning

    17 interactive elements appear smaller than 48px.

    • • a (Harmonik) - 151x33px
    • • a.text-slate-300.hover:text-white (Funkcje) - 53x20px
    • • a.text-slate-300.hover:text-white (Cennik) - 48x20px
    • • a.text-slate-300.hover:text-white (Blog) - 31x20px
    • • a (Zaloguj się) - 90x32px
    • • button.inline-flex.cursor-pointer (Zaloguj się) - 90x32px
    • • a (Rejestracja) - 90x32px
    • • button.inline-flex.cursor-pointer (Rejestracja) - 90x32px
    • • a.inline-flex.w-fit (Harmonik na Facebooku) - 20x20px
    • • a.text-slate-400.hover:text-white (Kontakt) - 54x20px
    • • a.text-slate-400.hover:text-white (Regulamin) - 74x20px
    • • a.text-slate-400.hover:text-white (Polityka prywatności) - 144x20px
    • • a.text-slate-400.hover:text-white (Polityka cookies) - 112x20px
    • • button.cursor-pointer.text-left (Ustawienia cookies) - 134x20px
    • • button.inline-flex.cursor-pointer (Odrzuć opcjonalne) - 215x44px
    • • button.inline-flex.cursor-pointer (Dostosuj) - 135x44px
    • • button.inline-flex.cursor-pointer (Akceptuj wszystkie) - 216x44px

    Fix: Increase target size to at least 48x48 CSS pixels for touch interactions.

Social & Rich Results

  • Core Open Graph tags are present.

  • og:image is present and absolute.

    Open Graph Image
  • twitter:card set to summary_large_image.

  • JSON-LD schema detected.

  • PWA Metadata Warning

    Manifest or Apple touch icon is missing.

    Fix: Link your web app manifest and apple-touch-icon for improved install/share experiences.

  • Social preview metadata and image quality look good for Open Graph/Twitter.

    • • GUIDELINE: Optimal og:title length: 40-60 characters (acceptable: 10-70).
    • • GUIDELINE: Optimal og:description length: 110-160 characters (acceptable: 50-200).
    • • GUIDELINE: Optimal preview image size: 1200x630 pixels.
    • • GUIDELINE: Optimal preview image aspect ratio: 1.91:1.
    • • GUIDELINE: Optimal preview image file size: under 5 MB.
    • • GUIDELINE: Recommended twitter:card: summary_large_image.
    • • MEASURED: Image size: 0.08 MB
    • • MEASURED: Image dimensions: 1200x630

Links Analysis

  • Checked 20 links. No broken internal links found.

  • External Links Warning

    1 external links returned errors or timed out.

    • • https://apps.apple.com/pl/app/harmonik/id6799998686 (HTTP 429)

    Fix: Replace dead external URLs or point to working alternatives.

  • All 30 links use non-empty href values.

Performance & Runtime

  • Largest Contentful Paint: 0.68s.

  • Cumulative Layout Shift: 0.000.

  • Total Blocking Time estimate: 58ms.

  • No failed CSS/JS/image/font/media requests detected.

  • 4 JavaScript runtime issues detected.

    • • Request failed: https://www.google.com/ccm/collect?rcb=18&frm=0&apvc=1&ae=g&auid=2068565537.1788554991&dt=Grafik%20pracy%20online%20%E2%80%94%20program%20do%20grafik%C3%B3w%20pracy%20dla%20firm%20%7C%20Harmonik&en=page_view&dl=https%3A%2F%2Fharmonik.pl%2F&scrsrc=harmonik.pl&rnd=1553547096.1788554991&navt=n&npa=0&ep.ads_data_redaction=0&gdid=dY2E1Nz.dNzQzZD&gtm=45E92e6921v9245899688za204zd9245899688xea&gcs=G1--&gcd=13l3l3l3l5l1&dma=0&tag_exp=115938465~115938469~118897920~118897930~120385423~120469145~120469153~120474863&tft=1788554990950&tfd=750&fmt=8 (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://ad.doubleclick.net/ccm/s/collect?auid=2068565537.1788554991&gtm=45E92e6921v9245899688za204zd9245899688xea&fmt=8 (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://www.google.com/rmkt/collect/18193060455/?random=1788554991291&cv=11&fst=1788554991291&fmt=8&bg=ffffff&guid=ON&async=1&en=gtag.config&gtm=45892e6921v9253705711z89245899688za20kzb9245899688zd9245899688xec&gcd=13l3l3l3l5l1&dma=0&tag_exp=115938465~115938469~118897920~118897930~120213116~120385423~120469145~120469153&u_w=1280&u_h=800&url=https%3A%2F%2Fharmonik.pl%2F&rcb=14&frm=0&tiba=Grafik%20pracy%20online%20%E2%80%94%20program%20do%20grafik%C3%B3w%20pracy%20dla%20firm%20%7C%20Harmonik&did=dY2E1Nz&gdid=dY2E1Nz.dNzQzZD&hn=www.googleadservices.com&npa=0&pscdl=noapi&auid=2068565537.1788554991&uaa=x86&uab=64&uafvl=Not%253AA-Brand%3B99.0.0.0%7CHeadlessChrome%3B145.0.7632.6%7CChromium%3B145.0.7632.6&uamb=0&uam=&uap=Linux&uapv=&uaw=0&data=event%3Dgtag.config&gap.gtb=1&ept=68&gcp=5 (net::ERR_ABORTED, type: fetch)
    • • Request failed: https://www.google.com/ccm/collect?rcb=14&frm=0&apvc=0&auid=2068565537.1788554991&dt=Grafik%20pracy%20online%20%E2%80%94%20program%20do%20grafik%C3%B3w%20pracy%20dla%20firm%20%7C%20Harmonik&tid=AW-18193060455&en=page_view&dl=https%3A%2F%2Fharmonik.pl%2F&scrsrc=harmonik.pl&rnd=1553547096.1788554991&navt=n&npa=0&did=dY2E1Nz&gdid=dY2E1Nz.dNzQzZD&gtm=45892e6921v9253705711z89245899688za20kzb9245899688zd9245899688xec&gcs=G1--&gcd=13l3l3l3l5l1&dma=0&tag_exp=115938465~115938469~118897920~118897930~120213116~120385423~120469145~120469153&tft=1788554991329&tfd=1129&gap.gtb=1&tids=AW-18193060455&fmt=8 (net::ERR_ABORTED, type: fetch)

    Fix: Fix JS files returning 404/failed requests and resolve the listed runtime exceptions.