Some cookies are necessary for SecondDoor to work. Others are optional, and tell us how the site and the product are used. Accept all, or decline all optional ones. Without a selection, nothing optional is set. More in our cookie policy.
Basic scanUnclassified/Scanned 8 Sept 2026, 16:19 UTC/1 browser pass
A Shopify storefront blocks browser automation entirely, closing the door to assistant shopping while publishing product data that machines can read.
Ordered by what the evidence says is costing most. Written for whoever owns the site, not whoever builds it.
1 piece of evidence and the recommended fix are recorded for this issue.
This is a basic scan, so it raises the three issues the deterministic evidence supports. A deep scan sends two agents over the site and raises up to ten, each with cited evidence and the screens to prove it.
A deep scan walks the site with two agents, records cited evidence and screenshots, and keeps a mission timeline. It comes with the paid plans. Making an account costs nothing and gives you one basic scan a month.
The score and the audit trail stay public. The evidence and the files open with an account.
The audit trail. Not measured is not zero.
Machine discoverability
No AI crawler is blocked by robots.txt; llms.txt is published with declared intent for assistants. The homepage carries 7 schema.org types, 21 prices in raw HTML, and a sitemap listing 1119 URLs.
4 observations recorded.
Programmatic onboarding
No API documentation is linked from the homepage or published at standard paths. No OpenAPI spec exists at any of the 6 paths checked. The site is a Shopify storefront with no developer surface exposed.
2 observations recorded.
Pricing legibility
Prices appear in raw HTML on the homepage (21 instances) and across 3 product pages checked (84 instances). Product structured data publishes price and currency for every variant. Availability is marked in schema.org.
2 observations recorded.
Agent-aware instrumentation
No MCP manifest is published at any of the 3 standard paths checked. Shopify supports agent checkout protocols and the platform is ready to serve one, but no manifest has been created.
4 observations recorded.
Machine-fetchable trust
security.txt is published at /.well-known/security.txt with a contact route for machines. The returns policy is readable as text at /returns without JavaScript. The homepage and product pages serve structured data to HTTP requests.
3 observations recorded.
Commercial rails
Shopify is the platform and supports agent checkout protocols, but no agent checkout manifest is published. The /products.json endpoint, which Shopify serves by default, returns HTTP 404, indicating it has been closed.
4 observations recorded.
Steps to first value
Could not verify: this scan did not reach the pages that would show it.
Required fields
Could not verify: this scan did not reach the pages that would show it.
Verification walls
Could not verify: this scan did not reach the pages that would show it.
Error recovery
Could not verify: this scan did not reach the pages that would show it.
It got through 11 of 16.
The agent got through 11 of 16 requests, but could not find a published agent interface. It came up empty on 4 other checks too. That is enough missing for a machine to give up before it reaches a purchase.