Magento store health check

See what slows your store down or puts it at risk, checked from the outside in about ten seconds. Free, no sign-up, nothing to install.

Works for any online store; Magento 1 and 2 get extra checks.

What we check

Only what any visitor’s browser can see. We make a few ordinary page requests, the same a shopper would.

Server response time
How long your server takes to start sending the homepage, measured twice. Google’s target is under 800 ms.
Full-page cache
Whether a repeat request is served from Varnish or the built-in cache, or rendered again by PHP.
Compression and HTTP/2
Whether pages are compressed and assets can load in parallel over one connection.
HTTPS and TLS
Redirect from http://, TLS version and how many days are left on the certificate.
Security headers
HSTS, clickjacking protection and MIME sniffing protection.
Versions on show
PHP past end of life, a public /magento_version answer, Magento 1, and how long ago static files were last deployed.

Questions

Is the check safe for my store?
Yes. It makes a handful of ordinary page requests and one TLS handshake, fewer than a shopper browsing two pages. It never logs in, submits forms, or touches the admin panel.
What can’t an outside check see?
How the store behaves under peak traffic, slow database queries, cron and indexers, checkout and payment flows, and server configuration. That is what our Black Friday readiness check covers from the inside.

We log each store address checked, with the time, the result and the link it came from. We don’t log IP addresses or anything else about who ran the check. If you opened a report we emailed you, we note that it was opened.