Is app.takabachan.devflux.click AI agent ready? C · 55/100

app.takabachan.devflux.click

SvelteKit · 99% confidence
https://app.takabachan.devflux.click/
C55 / 100
Grade C · Level 3GovernedFair — agents can find you, but a lot is left on the table.
Why we think this is SvelteKit (2 signals)
  • · data-sveltekit-* attribute
  • · /_app/immutable/ asset path
7 checks need fixing

5 failed · 2 partial out of 13 that apply to your site.

See top fixes

Fix automatically with AIScan

9 open checks (5 failing) can be handed to an AI agent: D3, C2, B2, B3, P2, P4, E1, E2, E4. Pick one route — each returns the full, check-by-check instructions.

Option A — Agent Skill (any runtime)
npx add-skill https://aiscan.site/aiscan-skill.json

Then ask your agent: “Fix the failing AI readiness checks for https://app.takabachan.devflux.click/.

Option B — Claude Code (CLAUDE.md)
curl -o CLAUDE.md https://aiscan.site/CLAUDE.md

Drop it in your project root, then ask Claude Code to fix the failing AIScan checks.

Option C — MCP client
https://aiscan.site/api/mcp

Tools: scan_website, get_fixes, get_grade. Call get_fixes { "url": "https://app.takabachan.devflux.click/" }.

Option D — REST API
curl -s 'https://aiscan.site/api/public/scan?url=https%3A%2F%2Fapp.takabachan.devflux.click%2F'

Returns every check with its complete fix guide.

Verify: Re-scan at https://aiscan.site after applying fixes, or run npx aiscan-cli https://app.takabachan.devflux.click/. Individual checks that need a specific probe list it in their own guide.

Quick Wins

Top 3 fixes ranked by score impact

  • 01Fail

    Explicit AI bot rules

    +5 pts if fixed

    Add explicit allow/deny rules for GPTBot, ClaudeBot, PerplexityBot, Google-Extended, etc.

    See full details
  • 02Fail

    OAuth discovery metadata

    +4 pts if fixed

    Publish RFC 8414 / RFC 9728 metadata at the /.well-known/oauth-* endpoints.

    See full details
  • 03Fail

    Correct 404 handling

    +4 pts if fixed

    Return a real HTTP 404 (not 200) for missing pages, with a body that names the site and links to your homepage, sitemap, and search so an agent can recover.

    See full details
Hand-off prompt for your coding agent9 issues
# Agent-readiness remediation brief

Site: https://app.takabachan.devflux.click/
Platform: sveltekit (99% confidence)
AIScan score: 55/100 — Level 3 (Governed)
Rubric: v2026.08.2

## Failing checks (sorted by weight)
- **[C2] /llms.txt** — PARTIAL
  - Evidence: 200 OK, 77573 bytes
  - Fix: Publish /llms.txt per llmstxt.org with an H1, summary, and ## sections of markdown links.
- **[B2] Explicit AI bot rules** — FAIL
  - Evidence: 0 known AI agent(s) addressed in robots.txt
  - Fix: Add explicit allow/deny rules for GPTBot, ClaudeBot, PerplexityBot, Google-Extended, etc.
- **[P2] MCP Server Card** — PARTIAL
  - Evidence: HTTP 200
  - Fix: Optional: publish /.well-known/mcp/server-card.json if you expose an MCP server.
- **[P4] OAuth discovery metadata** — FAIL
  - Evidence: auth-server: 200, protected-resource: 200
  - Fix: Publish RFC 8414 / RFC 9728 metadata at the /.well-known/oauth-* endpoints.
- **[E1] Correct 404 handling** — FAIL
  - Evidence: GET /aiscan-404-probe-b1yq6w → HTTP 200 (soft 404 — returns 200 for a missing page), 77573 bytes, text/html
  - Fix: Return a real HTTP 404 (not 200) for missing pages, with a body that names the site and links to your homepage, sitemap, and search so an agent can recover.
- **[E4] HTTPS & canonical host** — PARTIAL
  - Evidence: final origin https://app.takabachan.devflux.click · http:// upgrades to https · www.app.takabachan.devflux.click serves its own copy (duplicate origin) · no HSTS header
  - Fix: Serve the site over HTTPS, 301-redirect http:// to https://, and redirect the www/apex variant to a single canonical host so agents don't index two copies of every URL.
- **[D3] Link header for discovery** — FAIL
  - Evidence: no Link header or <link> tag
  - Fix: Add a Link response header or HTML <link rel="api-catalog"|"describedby"> tag.
- **[B3] Web Bot Auth key directory** — PARTIAL
  - Evidence: HTTP 200
  - Fix: Optional: serve a JWKS-style key directory at /.well-known/http-message-signatures-directory.
- **[E2] Machine-readable API description** — FAIL
  - Evidence: no /openapi.json, /api/openapi.json or swagger document found
  - Fix: Publish an OpenAPI 3.1 document at /openapi.json and reference it from /.well-known/api-catalog as a service-desc link.

## General guidance
- Static-first: `robots.txt`, `llms.txt`, `/.well-known/*` JSON cards.
- Markdown negotiation: serve `text/markdown` when requested via `Accept` header or `?format=md`.
- Bot access: explicit allow/deny per AI user-agent (GPTBot, ClaudeBot, PerplexityBot, Google-Extended, Applebot-Extended, Bytespider, Amazonbot, CCBot, meta-externalagent, cohere-ai, Diffbot).
- Capabilities: publish an MCP server card and (optionally) an Agent Skills manifest even if the runtime isn't live — discovery first.
- Re-scan at aiscan.site after deploying.

How this score is calculated

Every check earns points against a weight. We divide the points you earned by the points that actually apply to a SvelteKit — so checks that don't apply never drag you down.

Essential
21 / 31 pts

Baseline every site should meet.

Recommended
15 / 28 pts

Strong signals most sites benefit from.

Bonus earned
3 signals

Emerging standards. Can only add points.

Not counted (2): B1, E5 — either not applicable to this site profile or optional and not yet adopted. Expand any check to see the exact evidence we based it on.

Discoverability

62

Can agents find your pages? robots, sitemaps, llms.txt.

212
  • Your site is missing this right now, so AI agents can't use it. The fix below is what to change.

    ID · D3

    What we found

    no Link header or <link> tag

    How to fix it

    Add a Link response header or HTML <link rel="api-catalog"|"describedby"> tag.

    Add a Link response header

    Set this header on your homepage and/or root document. Most CDNs (Cloudflare, Vercel, Netlify) support response-header rules.

    Example

    Link: </.well-known/api-catalog>; rel="api-catalog"
  • Your site is missing this right now, so AI agents can't use it. The fix below is what to change.

    ID · E1

    What we found

    GET /aiscan-404-probe-b1yq6w → HTTP 200 (soft 404 — returns 200 for a missing page), 77573 bytes, text/html

    How to fix it

    Return a real HTTP 404 (not 200) for missing pages, with a body that names the site and links to your homepage, sitemap, and search so an agent can recover.

    Return a real 404 status

    A missing page must answer 404 (or 410), never 200. A soft 404 makes agents index your error page as real content.

    Make the body recoverable

    The 404 body should name the site and link to the homepage, sitemap, docs, and search so an agent can find its way back instead of dead-ending.

    Verify

    curl -sI https://yoursite.com/this-page-does-not-exist-123 | head -n 1

Content

86

Can agents read your content cleanly? Markdown, structured data.

31

Bot Access

13

Are AI crawlers explicitly allowed or blocked?

11
  • Your site is missing this right now, so AI agents can't use it. The fix below is what to change.

    ID · B2

    What we found

    0 known AI agent(s) addressed in robots.txt

    How to fix it

    Add explicit allow/deny rules for GPTBot, ClaudeBot, PerplexityBot, Google-Extended, etc.

    Add explicit User-agent blocks

    Don't rely on User-agent: * alone. Address each major AI crawler so your policy is unambiguous.

    Recommended block

    User-agent: GPTBot
    Allow: /
    
    User-agent: ClaudeBot
    Allow: /
    
    User-agent: PerplexityBot
    Allow: /
    
    User-agent: Google-Extended
    Allow: /
    
    User-agent: Applebot-Extended
    Allow: /

Capabilities

47

Can agents do things? APIs, auth, MCP, Agent Skills.

212
  • Your site is missing this right now, so AI agents can't use it. The fix below is what to change.

    ID · P4

    What we found

    auth-server: 200, protected-resource: 200

    How to fix it

    Publish RFC 8414 / RFC 9728 metadata at the /.well-known/oauth-* endpoints.

    Publish OAuth discovery metadata

    If your API supports OAuth, serve RFC 8414 metadata at /.well-known/oauth-authorization-server and/or RFC 9728 at /.well-known/oauth-protected-resource.

  • Your site is missing this right now, so AI agents can't use it. The fix below is what to change.

    ID · E2

    What we found

    no /openapi.json, /api/openapi.json or swagger document found

    How to fix it

    Publish an OpenAPI 3.1 document at /openapi.json and reference it from /.well-known/api-catalog as a service-desc link.

    Publish an OpenAPI 3.1 description

    Serve it at /openapi.json (or /openapi.yaml). Describe every public endpoint, its parameters, and its response schema.

    Advertise it

    Reference it from /.well-known/api-catalog as a service-desc link and from a Link response header.

    Link: </openapi.json>; rel="service-desc"; type="application/json"

    Content sites can skip this

    If you expose no programmatic API, this check is informational and costs you nothing.

Share the result

Share as a social image

Download a 1200×630 social card or post straight to X, LinkedIn or Facebook — sized for every feed.

AIScan share card — app.takabachan.devflux.click graded C

Tip: for X and LinkedIn, upload the downloaded PNG with your post so the card shows in the feed. Posts that include just the link will still preview AIScan.site.

Showcase your grade

Embed your AIScan badge

Drop this badge into your site footer, GitHub README, or docs. It links back to a fresh scan of app.takabachan.devflux.click on AIScan.site.

AIScan.site grade C
HTML
<!-- AIScan.site agent-readiness badge -->
<a href="https://aiscan.site/?u=https%3A%2F%2Fapp.takabachan.devflux.click%2F" target="_blank" rel="noopener" title="Agent-Readiness Grade C (55/100) — AIScan.site">
  <img src="https://aiscan.site/api/public/badge.svg?score=55&grade=C&host=app.takabachan.devflux.click" alt="AIScan.site Grade C — 55/100" width="240" height="64" loading="lazy" />
</a>
Markdown
[![AIScan.site Grade C — 55/100](https://aiscan.site/api/public/badge.svg?score=55&grade=C&host=app.takabachan.devflux.click)](https://aiscan.site/?u=https%3A%2F%2Fapp.takabachan.devflux.click%2F)

Create a free account to track this site over time

  • Save scan history
  • See score trends
  • Re-scan anytime

Dig deeper

Scan any site from Telegram
Open in Telegram
Free · No signup · ~20 seconds

Scan your own site

Get a plain-English agent-readiness report you can hand straight to ChatGPT or Claude.

Or browse the community feed to see what others have scanned.