Running Umbraco 13? Security support ends 14 December. Fixed-price upgrade to 17: £8,999 + VAT See how it works →
simonantony

Umbraco Audits & Performance Optimisation.

What is an Umbraco performance audit?

What is an Umbraco performance audit?

An Umbraco performance audit is a systematic technical review of your website's speed, security, accessibility, and search engine readiness. It identifies specific issues, slow database queries, unoptimised images, missing security headers, broken schema markup, render-blocking resources, and produces a prioritised action plan with measurable improvement targets.

According to Google's Core Web Vitals research, 53% of mobile users abandon sites that take longer than 3 seconds to load. A 100ms improvement in Largest Contentful Paint (LCP) can increase conversion rates by up to 8%, based on Deloitte's 2020 milliseconds-make-millions study. Yet most Umbraco sites we audit have LCP times above 4 seconds and fail at least two of Google's three Core Web Vitals thresholds.

Our audits go beyond automated tools like Lighthouse. We manually review your Umbraco codebase, Razor views, Surface Controllers, database queries, media handling, and deployment configuration, to find the issues that automated scanners miss.

Audits

What does a Simon Antony audit cover?

Every audit covers four dimensions, each scored independently so you can see exactly where your site stands:

Performance and Core Web Vitals
We measure LCP, INP (Interaction to Next Paint), and CLS (Cumulative Layout Shift) across desktop and mobile. We trace slow performance back to its root cause: server response time, database query inefficiency, unoptimised media, render-blocking CSS/JS, or Cloudflare configuration gaps.
Security posture
We check HTTPS enforcement, HSTS configuration, Content-Security-Policy headers, cookie flags, exposed server headers (x-powered-by), and known Umbraco vulnerabilities. We reference the OWASP Top 10 and Umbraco's own security advisory history.
SEO and structured data
We audit schema.org markup, meta tags, canonical URLs, sitemap configuration, robots.txt directives, heading hierarchy, and AI crawler access (GPTBot, ClaudeBot, PerplexityBot).
Code quality
We review Razor view complexity, controller architecture, dependency injection patterns, and NuGet package currency. Outdated dependencies are a common source of both security vulnerabilities and performance regressions.
Audit results
40%
Average Lighthouse performance improvement across our last 20 audits
62%
Page load time reduction for a recruitment sector client after our top 15 fixes
34 to 91
Google PageSpeed Insights score on the same site, in 8 hours of development time
The process

How does the audit process work?

01
Discovery call (30 minutes, free)

We discuss your site's history, known pain points, and what success looks like. You share CMS admin access and hosting details.

02
Technical analysis (2-3 days)

We run automated scans (Lighthouse, SecurityHeaders, Schema Validator, Screaming Frog) and then manually audit your Umbraco codebase, database queries, and deployment configuration. This is where we find the issues automated tools miss.

03
Report delivery

You receive a detailed audit report with every finding scored by severity (critical, high, medium, low), estimated fix time, and expected impact. We walk you through it on a video call.

Every deliverable includes a prioritised spreadsheet of findings ranked by impact and effort, so you can plan the work against your budget. No findings are theoretical; every recommendation is specific and actionable.

04
Implementation

You can implement fixes yourself, hand them to your existing developer, or commission us to do it. Most clients add audit implementation to an existing retainer.

05
Re-audit

30 days after implementation, we re-audit to verify improvements and measure results.

Frequently asked questions about Umbraco audits.

What clients ask before commissioning an audit.

Four dimensions, each scored independently: performance and Core Web Vitals (LCP, INP, CLS), security posture (headers, HTTPS, known Umbraco vulnerabilities), SEO and structured data including AI crawler access, and code quality across Razor views, controllers and dependencies.

Yes. Tell us your URL and we will send back 15 to 30 findings within 3 working days, with no sales call and no obligation. The paid audit goes deeper, into your codebase, database and deployment configuration.

Across our last 20 audits, clients averaged a 40% Lighthouse performance improvement. One recruitment sector client went from 34 to 91 on Google PageSpeed Insights in 8 hours of development time, with page load times down 62%.

No. Every finding is scored by severity with estimated fix time and expected impact, so you can implement them yourself, hand them to your existing developer, or commission us. Most clients add implementation to an existing retainer.

We re-audit 30 days after implementation to verify the improvements and measure the results, so you can see the before and after in numbers rather than impressions.
Contact us

Let's talk about your Umbraco audit needs.

Get in touch today to discuss a flexible retainer that keeps your Umbraco site performing at its best.