Web Quality Index

altstrategies.com

Corporate / B2B site based in United States, served through cloudflare, with email running through microsoft.

Site typeCorporate / B2B
Built onwordpress
Hosted byGoDaddy.com, LLC
Hosted fromUnited States
Registered withGoDaddy
Online sinceJanuary 2004
Sends email throughmicrosoft
Managed hostGoDaddy
CDN / WAFcloudflare
DNS providerGoDaddy
Spam protectionMicrosoft Defender for Office 365
DMARC policynone
Web Quality Score
56/100
Solid
Meets the baseline standards we measure against — but with real room to improve.
Check breakdown
42 scored
A further 29 standards didn’t apply to this site — most are accessibility and privacy tests that need page contents to evaluate.
Can everyone use it?
50
Needs work
7 standards behind this question
Review1
Review

Your site works for visitors with disabilities

Automated accessibility scans flagged issues on your homepage — alt text, contrast, ARIA labels, or heading structure problems that block real users.

WEBQ-53

6 additional standards didn't apply to this site

Can people find this site?
51
Needs work
15 standards behind this question
Pass2Review1Fail5
Fail

How your site appears when shared or in search results

Your homepage is missing one or more of the standard social-share and search-preview tags.

WEBQ-11
Fail

A map of your site for search engines

No sitemap.xml or robots.txt is published.

WEBQ-14
Fail

Whether your behind-the-scenes labels are valid

We didn't find any structured-data tags on your homepage.

WEBQ-39
Fail

Visitor privacy on hostile networks

Encrypted Client Hello isn't offered. The hostname is visible in plaintext during the handshake.

WEBQ-93
Fail

How well your site feeds AI the right facts

We couldn't find any organization details in your page's structured data.

WEBQ-45
Review

A summary file for AI assistants

No /llms.txt file is published at your domain root.

WEBQ-15
Pass

Whether you're letting AI assistants read your site

You aren't blocking any AI crawlers in your robots.txt.

WEBQ-16
Pass

How easy it is to reach your deepest pages

Important pages are reachable in just a click or two from your homepage.

WEBQ-43

7 additional standards didn't apply to this site

Is it fast?
53
Needs work
14 standards behind this question
Pass1Fail2
Fail

Your site uses the newest connection style

Your server still serves over the older HTTP/2 protocol — not the newer, faster HTTP/3.

WEBQ-30
Fail

Reachable on the modern internet

Your domain has no IPv6 address — only the older IPv4.

WEBQ-31
Pass

Your homepage isn't bloated

Your homepage downloads at a reasonable size.

WEBQ-37

11 additional standards didn't apply to this site

Is it safe to visit?
68
Excellent
21 standards behind this question
Pass7Review5Fail5
Fail

Browser-level protections for visitors

Your site isn't sending any of the standard browser-protection headers.

WEBQ-04
Fail

Your domain can't be quietly hijacked

DNSSEC is not enabled on your domain.

WEBQ-22
Fail

Only your approved vendors can issue your padlock

There's no CAA record at your registrar saying which companies are allowed to issue certificates for you.

WEBQ-23
Fail

Visitors connect faster on the first click

Your server doesn't staple OCSP. Visitors' browsers may have to contact the CA themselves, slowing first connects.

WEBQ-91
Fail

Strict mode for your padlock check

Neither OCSP stapling nor Must-Staple is in play. A revoked cert wouldn't be caught quickly.

WEBQ-96
Review

Your padlock isn't using outdated keys

Your certificate uses outdated key strength or a SHA-1 signature. Reissue with a modern ACME-class cert.

WEBQ-89
Review

Your certificate is publicly logged

Your certificate carries only one embedded SCT — modern browsers want at least two. Reissue from a CA that includes them.

WEBQ-92
Review

Future-proof against tomorrow's computers

Only classical key exchange is offered. Today's traffic could be decrypted later if a quantum computer recovers the key.

WEBQ-94
Review

Your padlock renews on a healthy schedule

Your certificate lifetime is on the longer end (> 90 days). ACME-class certs renew every 60-90 days and rotate cleanly.

WEBQ-95
Review

Your padlock comes from a reputable vendor

Your certificate issuer isn't on the tier-1 trust list. Move to a mainstream public CA.

WEBQ-97
Pass

Your padlock isn't about to expire

Your SSL certificate is valid and not close to expiring.

WEBQ-05
Pass

Private files aren't open to the public

None of the common admin or developer paths are publicly reachable.

WEBQ-07
Pass

Forgotten subdomains aren't an open door

No forgotten or claimable subdomains were found.

WEBQ-28
Pass

The padlock uses strong, modern math

The handshake negotiates a modern AEAD cipher (AES-GCM or ChaCha20-Poly1305).

WEBQ-87
Pass

Old recordings stay locked even if a key leaks

Forward secrecy is guaranteed by the negotiated handshake — past traffic stays unreadable even if your key leaks.

WEBQ-88
Pass

Your padlock loads cleanly on every device

Your server sends the full certificate chain — every device builds the path to a trusted root cleanly.

WEBQ-90
Pass

Your site finishes its handshake quickly

Your TLS handshake completes quickly — under 300ms on a cold connection.

WEBQ-98

4 additional standards didn't apply to this site

Does this look like a real business?
77
Excellent
12 standards behind this question
Pass2Fail1
Fail

Your listing on Google Maps and search

We couldn't find a Google Business Profile linked to this domain.

WEBQ-19
Pass

How long your site has been online

Your site has been online for years — public archives have a long history of it.

WEBQ-18
Pass

A contact form people can actually find

A visible contact form is reachable from your homepage.

WEBQ-83

9 additional standards didn't apply to this site

Is email from this domain trustworthy?
87
Excellent
13 standards behind this question
Pass8Fail2
Fail

Keeps your email private in transit

No MTA-STS or TLS-RPT policy is published — incoming mail could be downgraded to plaintext.

WEBQ-24
Fail

Stops scammers from emailing customers as you

You have DMARC set up, but in monitor-only mode — it's not actually rejecting spoofed mail.

WEBQ-01
Pass

Lists who's allowed to email as your business

SPF is set and lists your sending services as approved senders.

WEBQ-03
Pass

You email from your own domain, not Gmail

You send email from your own domain, not a free Gmail/Yahoo address.

WEBQ-75
Pass

What's actually running your email

provider=microsoft_365, mx=altstrategies-com.mail.protection.outlook.com, source=mx_classifier

WEBQ-76
Pass

You get reports when someone fakes your email

You're set up to receive daily DMARC reports of spoofing attempts.

WEBQ-77
Pass

A real tool for sending newsletters

Your Email Service Provider is detectable — newsletters and marketing email have a real sending platform behind them.

WEBQ-80
Pass

Your email setup is under a hidden limit

Your SPF record uses fewer than 10 DNS lookups — under the spec limit.

WEBQ-82
Pass

A clickable email link on your site

Your site exposes a mailto: link visitors can tap to start a message.

WEBQ-84
Pass

Your email is being forwarded, not hosted

Mail to this domain is being forwarded — you have working email reachability.

WEBQ-85

3 additional standards didn't apply to this site

Does it respect visitor privacy?
6 standards behind this question

6 additional standards didn't apply to this site