# Changelog of WooCommerce Store Analyzer | $10/1K | Plugins, Tech Stack (`apivault_labs/woocommerce-store-analyzer`) Actor

- **URL**: https://apify.com/apivault\_labs/woocommerce-store-analyzer/changelog.md
- **Full Actor documentation**: https://apify.com/apivault\_labs/woocommerce-store-analyzer.md

## Changelog

All notable changes to this Actor will be documented here.

### \[1.2] — 2026-05-22

#### Added — Major intelligence expansion (8 new data sources, 4 new composite scores)

**New data sources:**

- 🚀 **`/wp-json/wc/store/v1/products/collection-data`** — one-shot aggregate stats:
  catalog price range, stock-status counts, rating counts (5★ × N), attribute term counts.
  No catalog pagination needed.
- 👥 **`/wp-json/wp/v2/users`** — author / admin enumeration (real names, slugs,
  descriptions). Critical for B2B lead generation and OSINT.
- 📰 **`/wp-json/wp/v2/posts`** — blog content velocity:
  posts in last 30 / 90 days, latest post date, `days_since_last_post`.
- 🤖 **`/robots.txt`** — detect AI crawler blocks (GPTBot, ClaudeBot, Google-Extended,
  PerplexityBot, etc.), additional sitemap URLs, disallowed path counts.
- 🛡️ **HTTP security headers** (HEAD request) — HSTS, CSP, X-Frame-Options,
  X-Content-Type-Options, Referrer-Policy, Permissions-Policy. Plus
  CDN detection (Cloudflare, Fastly, Akamai, Vercel, Pantheon).
- 🌐 **DNS via Cloudflare DoH** — A records (hosting hint: AWS / GCP / CF / Vercel)
  and MX records (email provider: Google Workspace / Microsoft 365 / Zoho / Yandex / Fastmail).
- 🏢 **Schema.org JSON-LD** parsing — Organization name, founding date,
  number of employees, founders, sitewide aggregateRating.

**New extracted fields:**

- `catalog_min_price`, `catalog_max_price`, `catalog_currency`
- `stock_status_counts`, `rating_counts`, `attribute_term_counts`
- `authors[]` (id, name, slug, description, url), `authors_count`
- `blog_active`, `recent_posts_count`, `latest_post_date`, `posts_last_30d`,
  `posts_last_90d`, `days_since_last_post`
- `robots_alive`, `blocks_ai_crawlers`, `robots_sitemaps[]`, `robots_disallowed_count`
- `http_status`, `server_header`, `has_hsts`, `has_csp`, `has_x_frame_options`,
  `has_x_content_type_options`, `has_referrer_policy`, `has_permissions_policy`,
  `cdn_detected`, `x_powered_by`
- `dns_a_records[]`, `dns_mx_records[]`, `hosting_provider`, `email_provider`
- `schema_org_name`, `schema_founding_date`, `schema_num_employees`,
  `schema_founders[]`, `schema_aggregate_rating`, `schema_aggregate_review_count`

**4 NEW composite scores:**

- 🛡️ **`security_posture_score` (0-100)** + signals — composite of HSTS, CSP,
  X-Frame, X-Content-Type, Referrer, Permissions, Wordfence/Sucuri, Cloudflare CDN.
- 🏢 **`enterprise_readiness_score` (0-100)** + signals — premium hosting (WP Engine, Kinsta),
  CDN, catalog 1000+ products, 100k+ visits, 5+ years old, multi-country, modern tech,
  schema.org Organization defined.
- 🚀 **`growth_velocity_score` (0-100)** + signals — new products velocity, blog
  posts per month, traffic trend (up/down %), tech quality, young brand with traction.
- 🎯 **`lead_score` (0-100)** + signals — B2B lead quality: ICP traffic range
  (5k-200k), email contact, public authors, MX resolves, established brand,
  $50k+ revenue. Penalty for high dropshipper-risk.

**Input schema:**

- 7 new toggle flags: `extractCollectionData`, `extractAuthors`, `extractBlog`,
  `extractRobots`, `extractSecurityHeaders`, `extractDns`, `extractSchemaOrg`

#### Compatibility

- All v1.1 fields preserved
- Default behavior unchanged unless flags toggled
- Each new layer can be turned off individually for speed

### \[1.1] — 2026-05-22

#### Added — Major intelligence expansion (4 new data sources, 15+ derived signals)

**New data sources:**

- 🔍 **`/wp-json/` namespaces** — fingerprints active plugins via WP REST API namespaces. Much more reliable than HTML scanning since each plugin registers its own namespace (`yoast/v1`, `wpforms/v1`, `jetpack/v4`).
- 🌐 **Sitemap analysis** (`/sitemap.xml`, `/sitemap_index.xml`, `/wp-sitemap.xml`) — real product/page/post/category totals, not sample-based.
- ⏱️ **Brand age estimation** — combines Wayback Machine first snapshot + crt.sh first SSL cert.
- 🎯 **Tracking IDs extraction** — Google Tag Manager, GA4, Universal Analytics, Facebook Pixel, TikTok Pixel, Pinterest Tag, Klaviyo public key, Hotjar, Microsoft Clarity. Critical for brand-network mapping (same FB Pixel on two domains = same operator).

**New extracted fields:**

- `wordpress_version` — parsed from generator meta tag
- `woocommerce_version` — parsed from `?ver=X.Y` on woocommerce asset paths
- `wp_namespaces[]` — list of active plugin REST namespaces
- `wp_rest_alive` — boolean
- `sitemap_products`, `sitemap_pages`, `sitemap_posts`, `sitemap_categories`
- `earliest_wayback_snapshot`, `earliest_ssl_date`
- `estimated_brand_age_years`, `estimated_founded_year`
- `hreflangs[]` + `hreflangs_count`, `has_currency_switcher`, `has_country_selector`
- `international_expansion_score` (0-100)
- `tracking_ids` object
- `products_on_sale_pct`, `avg_discount_pct` — discount aggressiveness
- `in_stock_pct`
- `avg_images_per_product`
- `annualized_revenue_usd_est`

**New derived signals:**

- `customer_segment` — mass-market / mid-market / premium / luxury (by AOV)
- `marketing_channel_mix` — search-driven / social-driven / paid-driven / brand-driven / email-driven / mixed (with %)
- **`tech_quality_score` (0-100)** — composite of WP version, WC version, modern payments, caching, security, SEO, email tools, premium hosting. With explained signals.
- **`dropshipper_risk_score` (0-100)** + bucket — heuristic detection: brand age, velocity, traffic, discounting, dropshipping plugins (alidropship, dropified, spocket, etc.)

**Tech stack — expanded from 60 to 70+ detectors:**

- Security: Wordfence, Sucuri, iThemes Security
- Multilingual: WPML, Polylang, TranslatePress
- Membership/LMS: MemberPress, LearnDash, LifterLMS
- Bookings: Amelia, BookingPress

#### Improved

- Title rebranded: "WooCommerce Store Analyzer | $10/1K | Revenue, Plugins, Age"
- Better logging: per-layer progress, derived metrics in summary

#### Compatibility

- All v1.0 fields preserved with the same names
- All existing flags work unchanged
- New layers can be toggled off independently

### \[1.0] — 2026-05-15

#### Added

- Initial release
- 4 data sources: WC Store API products, WC categories, homepage HTML, SimilarWeb
- Revenue estimation via `visits × CR × AOV` formula
- 60+ tech stack detectors (Elementor, Stripe, Klaviyo, Yoast, etc.)
- Plugin detection from /wp-content/plugins/ paths
- Social links + emails + phones
- Pay-per-event pricing: $10/1K stores
