Audit my site

FreeNo signup for the free scan.

Your site has analytics.
Is it measuring anything?

TagAudit visits your site in a real browser, watches every tag fire, tests clicks and forms, and checks whether your cookie banner actually blocks anything. You get a scored report with a fix list — most scans finish in under two minutes.

What a scan does

Optional: attach your GTM container (Admin → Export Container) and we'll compare what's configured against what actually fires — and check it matches this site.

Every scan interacts with the page - scrolling, clicking in-page links and filling in forms without submitting them. Actions that would send something to your site - submitting a form, adding to a cart - are switched off in our current configuration, on every site, whether or not you have verified a domain. See a sample report.

Optional. We use the address to send your report link — the purpose stated in our privacy policy — and to tell you if the scan fails.

No signup for the free scan.

Starting…
Form submission is switched off in our current configuration, on every site We never enter payment details Form fields are filled on every scan and every value says it is a test Free scan: nothing to install, nothing to configure

What the audit covers

Three things no source-code scanner can tell you.

How it works

One URL in, one work order out.

01

Enter your URL

A clean headless browser visits your site — fresh profile, no cookies, and your consent banner left unanswered or declined.

02

We watch everything

Network beacons, cookies, dataLayer, consent state — at load and while interacting with your page.

03

Get the report

Health score, stack inventory, consent behaviour, interaction gap map, and a prioritized fix list your developer can start today.

How much cooperation each tier needs

Most tools need a script on your site or a configured journey before they can tell you anything. We start at none — and only ask for more when it buys you something.

No cooperation

Free scan

Most public websites. Nothing to install, nothing to configure, and it works on sites you don't own — prospect research, competitor teardowns, a client who hasn't onboarded yet. Bot protection in front of the site can block it, and a page with too little on it to audit is turned away.

One firewall rule, only if you need it

Paid audit

Works on the same public sites as the free scan. If bot protection blocks us, allowlist one address and the scanner reaches your real site instead of a bot challenge. It's the only change we ask for, it's scoped to your hostname, and it's reversible in the same click that made it. How to allowlist us →

Opt-in, on request

Deep scan

Logged-in journeys, checkout and purchase confirmation can't be reached from outside at all. Covering them means collecting inside your own session — so we do it only when you ask. Never the default, never switched on quietly.

Guides

Pricing

Start free. One-off — nothing recurring, nothing to cancel.

Free scan

$0
tools detected · no funnel crawl
  • Health score + detected stack
  • Consent enforcement check
  • Top problems named, with impact
Run a scan

Pro Scan

$15.99
one-off · 10 Pro scans · samples key pages across your site · funnel crawl
  • Everything in Free
  • Funnel coverage — we search for your conversion steps and record what fires on the ones we reach
  • Consent diff + GTM container diff (upload your container export)
  • Complete fix list with exact steps
  • Impact-ranked roadmap
  • Your report is emailed to the address you enter with the scan.
  • Lost the email? Write to support@analyticsdom.com from the address you entered and we will send the link again to that address.
  • Not included yet: a ready-to-import GTM container built from the gaps we find.
Buy Pro Scan — $15.99

FAQ

Is it legal to scan any website?

The free scan loads publicly accessible pages exactly like a normal browser visit and analyzes only what any visitor's browser receives — the same category of analysis as BuiltWith or Wappalyzer. Interaction testing goes further and we are specific about it: on every scan we scroll, click in-page links, and fill in form fields to see what tracking fires — every value we enter says, in the field itself, that it is a test. Submitting them is switched off in our current configuration, on every site.

How does domain verification work?

Add a DNS TXT record or a meta tag we give you. Takes two minutes and proves you control the site. No scan needs it.

My site is behind Cloudflare / a WAF. Will the scan work?

Sometimes not — bot protection can't distinguish our scanner from any other automated client, so it may serve a challenge page instead of your site. When that happens the scan says so and withholds the score rather than reporting a near-empty stack as if it were real. On a domain you've verified, one allowlist rule fixes it permanently: how to allowlist us.

Will the audit submit my forms or buy anything?

We never enter payment details and never pay for anything. Actions that would send something to your site — submitting a form, adding to a cart, walking into checkout — are switched off in our current configuration, on every site. Forms are filled and abandoned so we can watch which tracking fires, and every value we put in a field says so in the field itself — a form reads "THIS IS A TEST - PLEASE IGNORE", so whoever sees it knows immediately.

What can't you see?

Server-to-server integrations — Meta CAPI, offline conversion uploads, warehouse syncs — aren't externally observable. The report flags where these likely exist and tells you exactly what to verify in your own accounts.

My consent banner is from a big vendor. Am I safe?

Often not. The most common finding across audits is a properly installed banner that only gates half the stack. Having a CMP is not the same as enforcing it — that's precisely what we test.