Demo · sample dataCompleted

Kestrel SOC 2 readiness (demo)

https://kestrelcompliance.example/soc-2-readiness

Demonstration data

This report is a sample built from fictional pages. It was not produced by live TinyFish or Gemini calls. Live audits make real requests and never reuse demo evidence.

1 · Overview

Executive summary

Target query
“soc 2 readiness consultant” user-provided
Audit timestamp
2026-09-18 10:00 UTC
Search discovery
Found at position 3 in checked results
Fetch extraction
Content extracted
Browser verification
Verified in a rendered page
Actionable findings
7
Most important issue
Page carries a noindex robots directive
Recommended first action
Remove noindex from the meta tag or X-Robots-Tag header if the page should be discoverable.

Findings by severity

1 high4 medium2 low

Technical checks

5 pass4 warning2 fail1 not checked

These results describe sampled retrieval evidence from 1 search request(s) and 1 fetch request(s) at one point in time. They are not guaranteed universal AI rankings.

3 · Extraction

Fetch extraction analysis

Requested URL
https://kestrelcompliance.example/soc-2-readiness
Final URL after redirects
https://kestrelcompliance.example/soc-2-readiness
HTTP status
Not provided by Fetch
Extracted title
SOC 2 Readiness | Kestrel Compliance
Meta description
Kestrel guides growing companies through SOC 2 with practical, plain-English advice from experienced security professionals.
Language / latency
en · 640 ms
Canonical (metadata)
https://staging.kestrelcompliance.example/soc-2-readiness
Retrieval
Live fetch requested; may be served from cache by TinyFish
Extracted size
1,342 characters

Heading hierarchy

  • H1 Compliance, simplified
  • H2 Why Kestrel
  • H2 How we work
  • H2 Frequently asked questions
  • H3 Do you offer a SOC 2 readiness assessment?
  • H3 How long does SOC 2 take?

Key facts extracted

  • email hello@kestrelcompliance.example

Entities (AI-interpreted, quote verified)

  • SOC 2 readiness assessment service

Links and structured data

  • Internal links: 3
  • External links: 1
  • Structured data: 1 JSON-LD block(s): no @type
Sample internal links
  • https://kestrelcompliance.example/
  • https://kestrelcompliance.example/contact
  • https://kestrelcompliance.example/about

Content that appears absent from the extraction

Browser verification found no rendered headings that were missing from the Fetch text.

Main content excerpt (plain text)

# Compliance, simplified Kestrel Compliance was founded in 2011 by two security engineers who were tired of audit season. Today our team has 15 years of combined experience helping growing companies earn trust. ## Why Kestrel We believe compliance should be practical. We work with your team, not around it, and we explain every control in plain English. ## How we work We start with a conversation, then agree a plan that fits your calendar and your budget. ## Frequently asked questions ### Do you offer a SOC 2 readiness assessment? Yes. Our SOC 2 readiness assessment compares your controls with the Trust Services Criteria and ranks the gaps by effort. ### How long does SOC 2 take? Most clients are audit-ready in 8 to 12 weeks. Contact hello@kestrelcompliance.example to book a call. Kestrel works with startups and mid-sized SaaS companies across North America and Europe. Kestrel works with startups and mid-sized SaaS companies across North America and Europe. Kestrel works with startups and mid-sized SaaS companies across North America and Europe. Kestrel works with startups and mid-sized SaaS companies across North America and Europe. Kestrel works with startups and mid-sized SaaS companies across North America and Europe. Kestrel works with startups and mid-sized SaaS companies across North America and Europe.

Shown as inert text. Fetched content is untrusted and is never rendered as HTML.

Evidence: ev_fetch_1 · ev_browser_1

4 · Search vs. page

Visibility gap analysis

What the search result communicates

SOC 2 Readiness | Kestrel Compliance

Kestrel guides growing companies through SOC 2. Our team has 15 years of experience in security and compliance.

AI-interpretedA generic overview: Kestrel guides growing companies through SOC 2, with 15 years of experience.

What the fetched page actually explains

SOC 2 Readiness | Kestrel Compliance

Kestrel guides growing companies through SOC 2 with practical, plain-English advice from experienced security professionals.

AI-interpretedA company-history opening, then a FAQ that finally mentions the SOC 2 readiness assessment and an 8 to 12 week timeline.

Does the page’s purpose match the query?

Partly AI-interpreted

The page offers what the query asks for, but the H1 and opening copy describe the company, not the service. The assessment and timeline appear only in the FAQ.

Useful details the snippet omits

  • Readiness assessment compares controls with the Trust Services Criteria
  • Audit-ready in 8 to 12 weeks

Evidence: ev_search_1ev_fetch_1

Query term coverage

Are the query’s key terms stated where tools look first? Computed from the extracted page, not guessed.

Query term coverage
TermTitleH1DescriptionBodySearch snippet
socpresentabsentpresentpresentpresent
readinesspresentabsentabsentpresentpresent
consultantabsentabsentabsentabsentabsent

Terms competing results emphasise that the page does not state

auditor ×2fixed ×2

Terms appearing in at least two other results. Hypotheses from a small sample, not requirements.

Evidence: ev_search_1ev_fetch_1

5 · Deterministic

Technical SEO checks

Observed rows report something a tool returned. Inferred rows are conclusions drawn from absence and may need confirmation. “Not checked” means no evidence was collected, never that it passed.

Technical SEO checks
CheckStatusObservationBasisEvidence
TitlePass"SOC 2 Readiness | Kestrel Compliance" (36 characters)observedev_fetch_1
Meta descriptionPass124 charactersKestrel guides growing companies through SOC 2 with practical, plain-English advice from experienced security professionals.observedev_fetch_1
H1 and heading structurePassH1: "Compliance, simplified" · 6 headingsobservedev_fetch_1
Canonical URLWarningCanonical points to https://staging.kestrelcompliance.example/soc-2-readiness, which differs from the fetched URL.observedev_fetch_1
Robots meta directivesFailrobots meta contains "noindex, follow".observedev_fetch_1ev_browser_1
Extracted content volumePass207 words extracted.observedev_fetch_1
Internal linksPass3 internal and 1 external links extracted.observedev_fetch_1
Open Graph tagsWarningog keys: titleobservedev_fetch_1
Structured data (JSON-LD)Fail1 block(s): no @type · 1 failed to parseobservedev_browser_1
robots.txtWarningDisallow rules apply to: GPTBot, ClaudeBot.Directives are declared preferences; compliance depends on each crawler.observedev_robots_1
Sitemap discoverabilityWarningSitemap found (31 URLs) but this URL is not listed.observedev_sitemap_1
Broken linksNot checkedLinks were not individually requested. Sniffsite does not test links in this version.observed—

6 · Prioritized

Findings and recommendations

7 · Sources

Evidence inspector

Every finding and check cites these records. Records store normalized, sanitized data only: no keys, headers or credentials.

8 · How to read this

Limitations and methodology

  • Search is one request to TinyFish Search per query (one page of results). Position means order in that response, not a Google, Bing or universal AI ranking. A page missing from the sample is “Not found in checked results”, which does not mean “not indexed”.
  • Fetch returns extracted Markdown plus metadata and links. HTTP status, response headers, JSON-LD and exact markup are not returned, so Sniffsite never infers them from text. TinyFish may serve a cached copy even when a live fetch is requested.
  • Browser runs only with a concrete verification objective or when you enable it. It is one session from TinyFish’s network and may differ from what other visitors see.
  • robots.txt and sitemap are read directly by Sniffsite from the public site. Directives are declared preferences; compliance depends on each crawler.
  • Deterministic checks are computed only from observed data. AI-interpreted findings are produced by a language model from the collected evidence, validated against a schema, and any excerpt that is not verbatim in the cited evidence is discarded.
  • Broken links are not tested. A successful Fetch does not prove a page is indexable or readable by every AI tool.
  • Semantic analysis: used. API calls made: search 1, fetch 1, browser 1, Gemini 1.