Description
When someone asks an AI assistant for “the best dentist in Portland” or “a good web design agency near me”, the assistant names a few businesses. This plugin shows whether yours is one of them, and what on your site keeps assistants from reading it. Tallyrank is made by website-auditor.io, the service it connects to for audits.
Free, on your own server
- AI readiness checks. Can the crawlers ChatGPT, Claude and Perplexity use when they answer questions read your site? Are Google and Bing, whose indexes the assistants search, allowed in? Is “Discourage search engines” still ticked? Is the homepage noindexed? Is there a sitemap, an llms.txt, business markup with links to your profiles on other sites, a descriptive tagline? Each finding says what to do about it. The checks run on your server and send nothing anywhere.
- A free audit. Run a one-off audit of your site at website-auditor.io, no account needed.
With website-auditor.io Pro
Connect a website-auditor.io Pro account ($10/month; eligible new customers get a 7-day free trial, with a payment method required and no charge until the trial ends) to:
- see your AI visibility score, overall and for each assistant, with its history;
- run a full audit from the dashboard: which questions were asked, who the assistants named instead of you, and which websites they read to decide;
- get ranked recommendations, a shareable report, and ready-made fix files for the findings (security headers, business markup, sitemap and more), the same Pro fix files the website offers;
- apply the audit’s security-header fixes to this site from the Fixes tab, one at a time. Applied headers are stored on your site, keep working if your subscription ends, and can be removed at any time;
- have the site re-audited automatically every week.
Badge
Place [tallyrank_badge] in a footer, page or widget to show your verified AI visibility score. Use [tallyrank_badge theme="light"] on dark backgrounds.
External services
This plugin can connect to services run by website-auditor.io (Armstrong HoldCo LLC). Nothing is sent to them unless you act as described below.
website-auditor.io API (api.website-auditor.io)
Used only after an administrator saves a website-auditor.io API key on the plugin’s Account tab. From then on, the plugin sends the API key, this site’s domain name and, in the request’s user agent, this site’s address and the plugin’s version:
- when the key is saved, to verify it;
- when an administrator opens the plugin’s Overview screen, to read the account’s subscription status and the site’s stored scores, recommendations and report link (cached for up to six hours);
- when an administrator clicks “Run a new audit”, to audit the site’s public pages;
- when an administrator clicks “Re-check this site automatically every week”, to enroll the domain for weekly audits;
- when an administrator opens the plugin’s Fixes tab, or applies a fix after that read has expired, to read the fixes from the site’s latest audit (cached for up to an hour).
No visitor data, content or personal information is sent. website-auditor.io’s terms and privacy policy apply.
website-auditor.io badge
Only if the [tallyrank_badge] shortcode is placed on a page, visitors’ browsers load the badge image from https://website-auditor.io/badge/<your-domain>.svg. Like any image from another site, that request includes the visitor’s IP address and browser details. The plugin’s admin screen also shows a preview of the badge, loaded the same way, once an audit of the site has been recorded. Same terms and privacy policy.
The readiness checks make requests only to this site’s own address.
Screenshots




Installation
- Install and activate the plugin.
- Open AI Visibility in the admin menu. The readiness checks run automatically.
- Optional: start a website-auditor.io Pro trial, then paste your API key under AI Visibility Account.
FAQ
-
Does this send my content to an AI company?
-
No. The checks run on your server. If you connect a website-auditor.io account, the audit service reads your public pages the way a visitor would and asks AI assistants about your business by name; nothing private is sent.
-
Does the plugin change my site?
-
Only if you ask it to. It reads your site and reports what it finds; it does not edit files, settings or your robots.txt. On the Fixes tab, a Pro member can apply the audit’s security-header fixes (such as X-Content-Type-Options or Referrer-Policy), one at a time: the plugin then sends those headers on your public pages, unless a page already carries them. Remove any of them on the same tab, whether or not you still subscribe. Everything else from the audit is shown for you to apply yourself.
-
Can an applied header break my site?
-
The plugin only applies conservative values, whatever the service sends: X-Frame-Options SAMEORIGIN (so page-builder previews keep working); a strict Referrer-Policy; a Permissions-Policy that only switches off camera, microphone and geolocation; an enforced Content-Security-Policy that only limits framing to your own site, fixes base URLs and upgrades insecure requests; a stricter policy that is report-only and reports nowhere; and Strict-Transport-Security of a day to a year, on this host alone, with no preload. Strict-Transport-Security and the enforced policy are offered only when your site address is HTTPS. Browsers remember Strict-Transport-Security for the time it names, so removing it does not undo it straight away: apply it only once your whole site works over HTTPS. If your host or a security plugin already sends a header, apply it there instead.
-
I applied a header but a page does not send it.
-
A page served from a full-page cache (a caching plugin, your host’s cache or a CDN) skips WordPress, so it keeps the headers it was cached with until the cache is cleared. Clear it after applying or removing a header. A page that already carries the header keeps that one: this plugin does not add a header WordPress or another plugin has already set. It cannot see headers your web server or CDN adds, so if they add one, apply it there instead.
-
I already use Yoast SEO / Rank Math / All in One SEO.
-
That’s fine. Those plugins handle classic SEO, and several of them can add the business markup, sitemap and llms.txt these checks look for. This plugin checks what AI assistants need and measures whether they actually recommend you.
-
My site lives in a subfolder (example.com/blog).
-
robots.txt and llms.txt only count at the root of a domain, so the checks read the files at your domain’s root.
-
Why does the audit take a few minutes?
-
It asks four AI assistants several questions each about your business and waits for every answer. It runs in the background, so you can leave the page.
-
Will blocking GPTBot hurt me?
-
Blocking training crawlers (GPTBot, ClaudeBot, Google-Extended, CCBot) is your choice and does not remove you from live answers. Blocking the answer-time crawlers or Googlebot/Bingbot does, which is why the checks treat those differently.
Reviews
There are no reviews for this plugin.
Contributors & Developers
“Tallyrank AI Visibility” is open source software. The following people have contributed to this plugin.
ContributorsTranslate “Tallyrank AI Visibility” into your language.
Interested in development?
Browse the code, check out the SVN repository, or subscribe to the development log by RSS.
Changelog
1.1.0
- New Fixes tab: the fixes from your latest audit. Apply its security-header fixes to your site one at a time; they stay if your subscription ends and can be removed any time. Templates are shown for copying, and host settings and manual checks are explained.
- The security-headers check links to the Fixes tab for members.
1.0.0
- First release.
