Security
HTTP headers (HSTS, CSP), exposed files (.git, .env, backups), TLS, SPF/DKIM/DMARC, WordPress/PrestaShop hardening.
Audit and implementation — handled personally. Security, legal & GDPR compliance, SEO, performance, UX & accessibility. Each of 27 checks comes with a screenshot from your store and the exact legal basis, in a report you can actually read.
A fixed, repeatable checklist — every finding is evidenced and tied to a specific rule or standard.
HTTP headers (HSTS, CSP), exposed files (.git, .env, backups), TLS, SPF/DKIM/DMARC, WordPress/PrestaShop hardening.
Terms of sale, privacy & cookie policy, legal notices, consumer rights, the Omnibus directive — GDPR-compliant.
Schema.org JSON-LD, meta tags, XML sitemaps, internal linking, Open Graph, llms.txt for AI search engines.
Core Web Vitals (LCP, CLS, INP), WebP/AVIF, lazy loading, HTTP/2, Brotli, caching & CDN.
Checkout flow, mobile rendering, contrast, labels, focus states — aligned with the European Accessibility Act.
The audit maps the problems. When you decide to fix them, the same person carries the work through.
Terms, privacy policy and cookie policy rewritten to match GDPR, consumer law and the Omnibus directive.
HTTP security headers, closing exposed files, email authentication (SPF/DKIM/DMARC), 2FA, platform hardening.
Core Web Vitals, image compression, lazy loading, HTTP/2 & Brotli, cache and CDN configuration.
Schema.org markup, meta and Open Graph tags, sitemaps, internal linking, AI-search readiness.
No access to your back-office is required for the audit — everything is verified from the outside.
A read-only review of your store across the five areas. Nothing is changed.
A 20–30 page PDF. Each finding: the issue, a screenshot, the legal basis, the consequence.
Only after your written approval, and only the scope you choose.
Enforcement no longer waits for big brands. Public regulators check what is visible from the browser.
The European Accessibility Act now applies to e-commerce. Non-accessible stores are exposed.
GDPR fines reach €20M or 4% of annual turnover — including for cookie consent done wrong.
Price-reduction rules, mediation and the legal guarantee are checked on the public pages of your shop.
“Thank you for the audit you prepared. What I valued most was the clear identification of specific errors and the transparent explanation of their consequences.”
I run Viromo on my own — no subcontractors, no account managers. The person who audits your store is the person who fixes it.
Ten years working with online stores. I take on only a few clients a month, on purpose: every audit is read line by line, and every finding is something I can defend.
Audits and implements — J. Paśnik
Tell me the store URL and what worries you. You will get a sample report and a clear scope before anything starts.