Skip to content

SITEREVIEW

Comprehensive WordPress audits,
on demand.

SiteReview produces a client-ready WordPress site audit — eight functional sections measured against real data — in one report you can email or hand off. Built for agencies that bill for thinking, not for stitching together screenshots from six tools.

SiteReview generated report inside the WordPress admin, showing the numbered table of contents on the left (Executive Summary, Recommendations, WordPress, Performance, Security, Mobile, Accessibility, Hosting, Domain & DNS, SEO), four headline score cards across the top, and the opening Executive Summary with key findings.

WHY THIS EXISTS

A site audit shouldn’t cost you a billable afternoon.

Agencies are asked to assess and document the technical state of a WordPress site every week — for new client onboarding, sales proposals, post-incident diagnostics. The work takes two to four hours per site: PageSpeed, Observatory, Sucuri, a WHOIS lookup, an accessibility scan, an SEO check, then synthesizing it into something a client will actually read.

SiteReview makes that one click.

WHAT SITEREVIEW DOES

Eight sections. One report. All measured data.

SiteReview runs from inside the WordPress admin, scans the homepage and up to five additional pages, and produces a self-contained static HTML report at a public URL token. Every finding is grounded in measured data — not invented commentary.

WordPress Status

Core version, PHP version, plugin and theme inventories, active install counts, latest-version gaps. The state-of-the-stack snapshot the client never quite gets from a hosting dashboard.

Performance

Core Web Vitals threshold meters for every audited page on both mobile and desktop, sourced from Google PageSpeed Insights with Lighthouse score strips. LCP, INP, CLS measured, not guessed.

Site Security

HTTP security headers grid (CSP, HSTS, X-Frame-Options, Referrer-Policy, Permissions-Policy), Mozilla Observatory grade, Sucuri SiteCheck malware screen, plus the security plugin’s own self-reported posture if Wordfence, Solid, Defender, or Sucuri Plugin is installed.

Mobile Friendliness

Mobile viewport configuration, tap target sizing, font legibility, layout shift, and Lighthouse mobile usability checks across the scan scope. Catches the usability sins desktop testing always misses.

Accessibility

WCAG 2.2 AA findings via bundled axe-core, run client-side against every audited page. Severity-categorized, with deterministic remediation copy in free and AI-tailored guidance in Pro.

Hosting

Infrastructure stack detection — CDN, host, geographic region, ASN. Built from a bundled MaxMind GeoLite2 database; no third-party API call needed. Tells the client where their site actually lives.

Domain & DNS

Domain registrar, expiration date, name servers, SPF/DKIM/DMARC email-auth trio, MX records, CAA records. Drawn from RDAP and DoH — the public sources that don’t need a paid lookup account.

SEO

On-page coverage bars for titles, meta descriptions, canonical tags, Open Graph, Twitter Card, schema.org markup, and robots.txt — across the scan scope. Not an SEO audit on the level of a six-month engagement, but the foundation findings every client needs to see.

SiteReview New Scan view inside the WordPress admin, with the audited site URL, two scan-scope radio options (Homepage only vs. Homepage + selected inside pages), and a filterable list of the site's pages with checkboxes so the operator can pick which inside pages to include in the scan.

TWO TIERS

Free gets the report. Pro makes it the agency’s.

Free

  • All eight sections, fully populated with measured data
  • Rule-based narrative + deterministic remediation for every finding
  • Public report URL (shareable with the client)
  • Single-file HTML download (self-contained — fonts, CSS, JS, images inline)
  • Section toggles (exclude a section from the shared URL)
  • Zero calls to SteadyPress servers — fully self-contained

WHO IT’S FOR

Built for the audit that actually needs to ship.

New Client Onboarding

Just inherited a site? Run SiteReview before you quote ongoing work. Establish the baseline, document the pre-existing issues you’re not responsible for, and hand the client a written assessment that proves you did your homework.

Sales Proposal Foundation

Prospect has granted access during discovery. Run SiteReview to surface the findings that will frame your proposal. Better than the discovery call where everyone agrees the site “needs work” without anyone knowing what.

Post-Incident Diagnostic

Slowdown, security event, search traffic drop. Run SiteReview to produce a comprehensive point-in-time snapshot. Useful for diagnosis and for the client communication you have to send the next day.

Dev / Staging Verification

Run SiteReview on staging before pushing changes to production. Same scan, same scoring — see whether your work moved the right numbers. Staging audits consume credits the same way production audits do — they’re still real audits.

HOW IT WORKS

Three steps. No dashboard to log into. No data to upload.

1

Install

Download SiteReview from WordPress.org, or search “SiteReview” in Plugins → Add New. Install and activate. Add a free Google PageSpeed Insights API key on first run (the onboarding modal walks you through it).

2

Run a Scan

Click “New Scan,” select up to five pages alongside the homepage, and start. A full scan typically completes in 1–15 minutes depending on page count and PSI queue depth. Sections run in parallel; you can leave the tab.

3

Share the URL

When the scan finishes, you get a public report URL and a single-file HTML download. Email the URL to the client, or attach the HTML. Pro users can edit any text in the report from the admin before sending.

TWO PRODUCTS, DIFFERENT QUESTIONS

SiteReview is the whole-site audit. SteadyScore watches the plugin stack.

SteadyScore answers “are my plugins trustworthy?” — per-plugin scoring, ongoing monitoring, the kind of thing you install once and let run. SiteReview answers “is my site in good shape?” — a comprehensive point-in-time audit, the kind of thing you run once to produce a deliverable and uninstall (or leave installed for the next quarterly review). Same brand, same admin language, same license server. Use them together when you need both ongoing reliability data and a point-in-time client document.

Stop assembling reports by hand.

Install the free plugin, run one scan, send the URL to the client. The free tier produces a report you can ship — no paid features required for the work to be useful.

Score every plugin you install.

SteadyScore rates plugin reliability on a 0–100 scale — built on real-world telemetry. Catch bad plugins before they catch you.