Back to SecureNow

TRANSPARENCY, IN PLAIN ENGLISH

What SecureNow Reports Deliver

SEO + Security + Human Review. Here's exactly what's covered in every report, what it can't cover, and why — so there are no surprises before you buy.

Security Report

What your Security Report delivers

Your report covers 28 checks across 14 categories, including:

Security Headers Audit

Checks for HSTS, CSP, X-Frame-Options, Referrer-Policy, Permissions-Policy, X-Content-Type-Options and more.

Example from the report: “Missing Content-Security-Policy header” · “Missing Strict-Transport-Security header”

TLS & Certificate Validation

Includes expiry, chain validation, and protocol strength.

Mixed Content Detection

Identifies insecure HTTP assets loaded over HTTPS.

Example: “Mixed content detected — insecure assets loaded over HTTPS.”

Form Security Hygiene

Checks for CSRF tokens, secure form actions, and unsafe input handling.

Third-Party Script Risk Analysis

Flags external scripts that may introduce vulnerabilities.

WAF Detection

Identifies whether a Web Application Firewall is present.

Exposure & Crawl Surface Review

Includes robots.txt disclosure, orphan endpoints, and publicly accessible admin paths.

Malware Heuristics

Flags suspicious inline scripts or injected code patterns.

Risk Scoring & Severity Breakdown

Your report includes a full risk bar with severity markers.

Manual Commentary (Human-Verified)

Every issue includes human-written context.

Example: “This header is missing and should be added at the server level to prevent clickjacking.”

Key differentiator — competitors don't provide human-verified commentary

SEO Report

What your SEO Report delivers

A full technical audit across all major ranking factors, including:

Full Site Crawl

Identifies crawlable pages, orphan pages, broken links, redirect chains, and crawl depth.

Metadata Audit

Checks for missing or duplicate titles, meta descriptions, canonical tags, and robots directives.

Heading Structure Review

Flags incorrect H1/H2 hierarchy, missing headings, or SEO-damaging patterns.

Image Optimisation Audit

Detects missing alt text, oversized images, and uncompressed assets.

Structured Data Review

Identifies missing or invalid schema (JSON-LD, Microdata).

AI Crawler Accessibility (AEO)

Tests accessibility for 14 AI bots (ChatGPT, Claude, Perplexity, Gemini, and more).

Key differentiator — most SEO tools don't test AI search readiness

Page Speed Indicators

Highlights slow pages, render-blocking scripts, and heavy CSS/JS bundles.

Mixed Content Detection

Flags insecure HTTP assets loaded over HTTPS.

Duplicate & Thin Content Detection

Identifies pages with low word count or duplicate content patterns.

Developer-Ready Fixes

Each issue includes a clear explanation and recommended fix.

Human-Verified Commentary (Core Value Add)

Every SEO report is manually reviewed by a human analyst to:

  • Remove false positives
  • Explain issues in plain English
  • Prioritise fixes
  • Provide developer-ready instructions
  • Highlight what matters vs. what doesn't
  • Hold SEO providers accountable
Our strongest differentiator — no competitor provides human-verified SEO commentary

Every report, every time

Human-Verified Review & Commentary

Every SecureNow report is manually reviewed by a human analyst. This ensures:

  • False positives are removed
  • Issues are explained in plain English
  • Developer-ready instructions are included
  • Priorities are set using human judgement
  • Customers understand why each issue matters

Being upfront with you

What SecureNow Reports cannot deliver

We'd rather you know this before you buy than be surprised after. Here's what our Security Report does not include:

No authenticated scanning

The report only scans publicly accessible pages.

No internal admin panel testing

Because login credentials are not provided.

No server-side vulnerability scanning

The report cannot detect backend issues such as outdated PHP, Apache modules, or CMS plugins.

No penetration testing

The report is non-destructive and does not attempt to exploit vulnerabilities.

No business logic testing

The report cannot detect issues like insecure workflows or privilege escalation.

No dependency/package vulnerability scanning

This requires access to source code or build pipelines.

No DDoS or load testing

Not permitted without explicit consent.

Why these limitations exist

  • SecureNow performs external-only, non-destructive scans.
  • It cannot access private systems, credentials, or internal networks.
  • It cannot run destructive tests without legal authorisation.

How we compare

Competitor comparison

A straightforward look at how SecureNow stacks up against typical SEO and security audit providers.

Feature / CapabilitySecureNowCompetitors
Human-verified commentary
One-off pricing
SEO + Security bundle
Full SEO technical auditPartial
AI crawler audit (AEO)
Metadata audit
Structured data auditPartial
Image optimisation auditPartial
Duplicate/thin content detection
Security headers auditPartial
Mixed content detection
Form security hygiene
Third-party script risk analysisPartial
WAF detectionPartial
Manual prioritisation
Price$29.99 / $49.99 (once off)$24–$299 / monthly

Ready to see where your site stands?

Get a clear, honest, human-verified report — delivered to your inbox within 48 hours.

Order Your Report