# Faherty Brand: 24 point Door Gap
- Site: fahertybrand.com
- Scanned: 2026-09-02
- Scan type: Basic scan
- Business type: ecommerce
- Report: https://www.seconddoor.io/r/fahertybrand-kpappc
- Scanner version: 8
A retail storefront with agent checkout capability but no documented API surface for programmatic product discovery or catalog access.
## Scores
| Measure | Score |
| --- | --- |
| Humans | 85/100 |
| Agents | 61/100 |
| Composite | 73/100 |
| Door Gap | 24 points |
The human score is the mean of the four human dimensions, the agent score the mean of the six agent dimensions, and the Door Gap the difference between them.
## What the machine actually did
The agent got through 8 of 14 requests, but could not find a contact route for machines. It came up empty on 5 other checks too.
- ok      reach the site at all
- ok      find out whether machines are welcome
- ok      ask whether the door opens for requests carrying the AI crawlers' names
- ok      read the site's own guide for language models
- ok      find out what pages exist
- missing find a contact route for machines
- missing find a published agent interface
- missing find an agent plugin manifest
- missing find out whether verified agents are recognised
- ok      read the homepage as data rather than as a page
- missing find a machine readable API spec
- missing read the developer documentation
- ok      read the prices without running JavaScript
- ok      walk the way a visitor would, to a signup form or a product
## Top issues
1. **Product structured data does not include price, currency or availability information.** (pricing_legibility)
2. **No security contact or vulnerability disclosure policy is published.** (machine_fetchable_trust)
3. **No developer documentation is linked from the homepage, in raw HTML or the rendered page, so integration starts with a search engine.** (programmatic_onboarding)
The evidence and the recommended fix for each are on the report page: https://www.seconddoor.io/r/fahertybrand-kpappc
## Files generated from this scan
- **robots.txt rules for AI crawlers** at `/robots.txt`, 10 minutes, no developer needed. Verify: The next scan reads robots.txt and finds every search and agent crawler allowed, none of them kept off product or pricing paths.
- **security.txt** at `/.well-known/security.txt`, 10 minutes, no developer needed. Verify: The next scan fetches /.well-known/security.txt as text and the security.txt check passes.
- **Machine interfaces: where you stand** at `notes`, 10 minutes, no developer needed. Verify: The next scan finds the interface you published answering at its well-known path, and that check passes.
Each file is written from what this scan found on the site. The content is in the JSON once the evidence is opened: https://www.seconddoor.io/api/reports/fahertybrand-kpappc
## The agent door
- **machine_discoverability** 100/100. No AI crawler is blocked by robots.txt or user agent rules. The site serves a real browser normally, publishes llms.txt with 87 directives, declares a sitemap with 355 URLs, and includes 19 schema.org types on the homepage.
- **programmatic_onboarding** 10/100. No API documentation is linked from the homepage or discoverable in raw HTML. The site publishes a UCP manifest for checkout but provides no documented endpoint for agents to search or browse the catalog programmatically.
- **pricing_legibility** 63/100. Prices appear in the raw HTML of product pages: 106 prices were found across 2 product pages checked, with examples at $95 and $150. Product structured data exists but does not carry price, currency or availability fields, so agents cannot.
- **agent_aware_instrumentation** 60/100. A Universal Commerce Protocol manifest at version 2026-08-25 is published, declaring 8 capabilities and 3 payment handlers, with a storefront MCP endpoint that agents can call. No MCP manifest exists at the 3 standard paths checked.
- **machine_fetchable_trust** 40/100. No security.txt file is published at /.well-known/security.txt. The homepage responds to automated requests with HTTP 200 and serves structured data, but no security contact or vulnerability disclosure policy is machine-readable.
- **commercial_rails** 90/100. A UCP manifest publishes 8 transactional capabilities including checkout, cart, fulfillment and discount handling. A storefront MCP endpoint answers agent calls.
## The human door
- **steps_to_first_value** 95/100. A product page with its price ($150) and an add-to-basket control is reachable in 2 steps from the homepage. The product page includes 13 size or colour choosers and accepts Apple Pay, Shop Pay and PayPal, allowing a buyer to transact.
- **required_fields** 80/100. The product page does not require an account before adding to basket or checking out. Three express wallet options (Apple Pay, Shop Pay, PayPal) allow checkout without entering any form fields.
- **verification_walls** 75/100. No sign-in requirement appears on the product page before a buyer can add an item to the basket. Express wallets bypass form entry entirely. The page includes 79 inline error containers, suggesting validation happens during checkout rather.
- **error_recovery** 90/100. A product page offers 13 size or colour choosers, allowing a shopper to correct their selection before committing to a purchase. The page includes 8 live regions for dynamic updates, supporting error correction and choice confirmation.
---
Scored by SecondDoor. Method: https://www.seconddoor.io/methodology
Scan another site: https://www.seconddoor.io
Rate an issue or this report: POST https://www.seconddoor.io/api/feedback, or the rate_fix tool on https://www.seconddoor.io/api/mcp
