Skip to main content
This website was roasted. Curious about yours? Roast My Website
GoNoGoRoast

Roast Complete

https://my-aura.app/

79 insights from launchthedamnthing, reddit, dev.to, tsplus.net, lucasfcosta.com, quora, paessler, bvp.com, g2_review, capterra, nfcvault.com, truenas.com, selecthub, professorbeekums.com, aptible.com, dohost, cyberdefensemagazine.com, belitsoft.com, site24x7, sourceforge.net, cloudflare.com, thenewstack.io, mixpost.app, devto, twitter, blog_post, ir.com, industry_report, eaglepointtech.com, aternity.com, medium152s

0/3
Would Sign Up
0/3
Would Pay
7.4
Avg Clarity /10
47
Roast Score /100

Revenue Potential

$45,000/mo

Based on MainWP ($4M ARR)

Currently Realized

47%

$21,150/mo

The market for WordPress and infrastructure management is highly fragmented but has a high willingness to pay among agencies, allowing for a sustainable mid-market revenue stream through tiered subscription models.

What works well

Detailed security documentation
Mentions AES-256-GCM encryption for credentials
Case study link provided
Clear 'Security First' philosophy
Clear documentation of features
Open source focus
Clear feature list
Standard Google OAuth flow
Clear redirection URL provided
Case studies mentioned

Diagnosis

The primary barrier to conversion is a broken and restrictive authentication flow that prevents users from accessing the platform. Because the login process relies exclusively on a failing OAuth implementation, potential users are unable to bypass the 'early access' wall to evaluate the product.

Growth Potential

3.8%
Industry avg
~3.5%
After fixes
Based on b2b_saas benchmarks (Unbounce, Portent, Google)

What costs you conversions

-1.065%CTA below the fold gets 75% fewer conversions than above fold
-0.711%No HTTPS triggers browser 'Not Secure' warning, -50% conversion
-0.483%Pages with testimonials convert 34% better than without (VWO A/B test)
-0.285%Missing contact information reduces conversion by ~20%
-0.142%Small touch targets (<48px) reduce mobile conversion by ~10%

Deal Breakers

Must fix before anything else

!

The OAuth authentication loop is failing to redirect users to the application, effectively preventing all new signups.

Action Plan

1

Implement a standard email/password authentication registration form

Now

Only 'Sign in with Google' button present

Should be

Email input field, password input field, and 'Create Account' button added below the OAuth button

Why this matters: Users are currently blocked by the fragile OAuth flow; this provides a reliable fallback.

Expected Impact: highEffort: high
2

Fix server-side routing for 404 error pages

Now

Broken routing causing improper status codes

Should be

Server returns a proper 404 HTTP status code for non-existent routes

Why this matters: Technical recommendation to improve site reliability and SEO indexing.

Expected Impact: mediumEffort: medium
3

Add Open Graph meta tags to all primary pages

Now

Missing social sharing metadata

Should be

Include og:title, og:description, and og:image tags in the <head> of the landing page

Why this matters: Increases professional credibility when links are shared by potential users.

Expected Impact: lowEffort: low
4

Increase padding on all primary Call-to-Action buttons

Now

Buttons are cramped and fail accessibility standards

Should be

Increase padding to 16px vertical and 32px horizontal

Why this matters: Ensures accessibility and improves usability for infrastructure managers on various devices.

Expected Impact: lowEffort: low
5

Add a dedicated 'Compliance' section to the landing page footer

Now

Compliance status is not explicitly stated in a clear, reassuring way

Should be

Add a 'Compliance' link in the footer that leads to a page detailing GDPR and SOC2 roadmap status

Why this matters: Arjun Müller noted the need for concrete data to reassure enterprise-level users.

Expected Impact: mediumEffort: medium

Quick Wins

Easy fixes you can do today

Update the landing page copy to explicitly mention the current GDPR and SOC2 compliance status in the hero section.
Add a 'Contact Support' link directly on the login page to assist users experiencing OAuth loops.
Add a clear text disclaimer under the OAuth button stating: 'Having trouble? Contact support for manual account setup.'

Executive Summary

None of the personas would sign up for this product in its current state.

Top issues across all personas:

  • Lack of email/password registration option forces reliance on third-party OAuth
  • Mandatory OAuth login is failing due to browser security restrictions
  • No alternative authentication method (email/password) provided
  • Lack of email/password registration option forces reliance on Google OAuth
  • OAuth authentication loop failing to redirect to the application

Your website has issues. But is the problem your site — or your idea?

We found conversion problems on your website. But before spending money fixing them, make sure your product-market fit is solid. GoNoGo validates your business idea with AI-powered voice sessions in 30 minutes.

3 free validation sessions included. No credit card required.

Embed badge on your site
GoNoGo Roast Score