Loading data...
Briut SEO Dashboard
briutessentials.com
Demo data
Date range: Last 30 days
Impressions
Clicks
Avg CTR
Avg Position
Top Opportunity Today

Recommended Action
Impressions — Last 30 Days
Monthly Performance
ביצועים לפי חודש — בחרו חודש כדי לראות את המגמה.
Demo data — not real GSC data
נתוני המדדים הנוכחיים הם אגרגטיביים בלבד; שורות GSC חודשיות היסטוריות עדיין לא מחוברות.
GSC CSV imports
Export daily data from Google Search Console with Date, Clicks, Impressions, CTR, and Position columns. You can also import Queries (Top queries) and Pages (Top pages) exports. English and Hebrew headers are supported. Data stays in this browser only — nothing is uploaded.
CSV format
Daily: Date / תאריך, Impressions / חשיפות (required); Clicks / קליקים, CTR, Position optional.
Queries: Query / שאילתה, Clicks / קליקים, Impressions / חשיפות, CTR / שיעור קליקים, Position / מיקום.
Pages: Page / דף, Clicks / קליקים, Impressions / חשיפות, CTR / שיעור קליקים, Position / מיקום.
Date format: YYYY-MM-DD. Data stays in this browser only — nothing is uploaded.
No GSC daily CSV imported yet No GSC Queries CSV imported yet No GSC Pages CSV imported yet
SMTWTFS
נקודה = יום עם נתונים.
אין נתונים זמינים לטווח הזה
GSC CSV insights
Import GSC daily CSV to generate insights
GSC CSV recommended actions
Import GSC daily CSV to generate recommendations
GSC query/page opportunities
Import GSC Queries CSV or Pages CSV to generate query/page opportunities
SEO Action Plan
Import GSC Daily, Queries, or Pages CSV to generate a prioritized SEO action plan.
SEO Assistant
שאל על נתוני ה-GSC המיובאים, הזדמנויות שאילתה/דף ותוכנית הפעולה (Action Plan).
Ask about the imported GSC data, query/page opportunities, and the advisory SEO Action Plan.
Dashboard context available
Import GSC Daily, Queries, or Pages CSV to give the assistant real data context.
שאלו אותי על המדדים, ההזדמנויות, ותוכנית הפעולה. אני מסביר בפשטות, מבדיל בין נתוני אמת לנתוני הדגמה, ולא ממציא מספרים.
SEO Opportunities — Top 5 Excluding branded queries
QueryImpr.CTRPos.
Backlinks
No live provider connected yet — import a CSV export or preview demo data to explore backlink intelligence.
Provider unavailable CSV import available Demo data available
Open Backlinks →
Sitemap Summary
Browser-local read-only summary · No page crawling · No ranking claim.
Not tested yet
No sitemap test has been saved in this browser yet. Go to Sitemap test →

This dashboard is advisory only and runs on browser-local CSV imports. Nothing below is connected to a live API, and no credentials are stored in this dashboard. These settings describe the current state and what is planned.

Project status
How this dashboard currently operates.
Production modeAdvisory dashboard
Data modeBrowser-local CSV imports
Live APIsNot connected
Shopify writesDisabled
Human approvalRequired
Shopify writes: Disabled · Human approval: Required · No live API access
Data sources
All data is imported locally in your browser — nothing is uploaded.
GSC Daily CSV
Browser-local import
GSC Queries CSV
Browser-local import
GSC Pages CSV
Browser-local import
Backlinks CSV
Browser-local import
Demo data
Demo only — not real data
SEO Assistant
How the in-dashboard assistant behaves.
  • Uses imported browser-local CSV context when available
  • Advisory only
  • Does not change Shopify
  • Does not create tasks
  • Does not claim live GSC/API access
Guardrails
Hard limits that always apply.
  • No scraping
  • No automatic Shopify changes
  • No task execution
  • No supplier/contact actions
  • No credentials stored in this dashboard
  • Human review required
Integration Center
Google Search Console is live (read-only). The other connectors below are planned — no credentials for planned connectors are stored in this dashboard.
Display only — these cards describe connector status and are not clickable. To connect Google Search Console, use the Connect button at the top of the dashboard.
Google Search ConsoleLive (read-only)
Mode: Read-only (live)
Data: queries, pages, clicks, impressions, CTR, position (+ daily by date)
Setup needed: done — server-side OAuth implemented; connect from the button at the top
Risk level: Medium
Lane for real implementation: Full Lane (implemented — UX9E1/UX9E2)
Notes: live data via "Load from Live GSC"; CSV import remains available as a fallback
LiveServer-side credentials (Cloudflare)Read-only
GA4Not connected
Planned mode: Read-only
Data planned: sessions, landing pages, engagement, conversions if configured
Setup needed: OAuth/server-side connector later
Risk level: Medium
Lane for real implementation: Full Lane
Notes: analytics will be advisory only
Coming soonNo credentials configuredRequires Full Lane
ShopifyNot connected
Planned mode: Read-only first
Data planned: products, collections, URLs, titles, meta fields if permitted
Setup needed: Admin API app / server-side connector later
Risk level: High
Lane for real implementation: Full Lane
Notes: Shopify writes remain disabled
Coming soonNo credentials configuredRequires Full Lane
Sitemap fetchNot connected
Planned mode: Read-only fetch
Data planned: URLs, sitemap index, lastmod if available
Setup needed: safe fetch policy later
Risk level: Low/Medium
Lane for real implementation: Standard or Full Lane depending on implementation
Notes: no crawling/scraping beyond explicitly allowed sitemap fetch
Coming soonNo credentials configured
Competitor URLsNot connected
Planned mode: Manual URLs first
Data planned: user-provided competitor pages and notes
Setup needed: manual input first; no scraping
Risk level: Medium
Lane for real implementation: Standard Lane for manual URLs, Full Lane if external fetch is added
Notes: no automated scraping
Coming soonNo credentials configured
Google Sheets / Drive exportNot connected
Planned mode: Export/share only
Data planned: advisory action plan export, CSV summary, human-review notes
Setup needed: OAuth/server-side connector later
Risk level: Medium
Lane for real implementation: Full Lane
Notes: no export until user approves
Coming soonNo credentials configuredRequires Full Lane
Implementation roadmap
Recommended connection order — planning only, nothing is scheduled.
  1. Sitemap fetch / manual competitor URLs
  2. Google Search Console read-only
  3. GA4 read-only
  4. Shopify read-only
  5. Google Sheets / Drive export
Real integrations will require a separate Full Lane implementation with server-side credentials, explicit approval, and production review.
Connection Wizard Foundation
Google Search Console is live (read-only); the other connectors are wizard-planned. No browser credentials are stored here.
Foundation status
GSC live (read-only) · other connectors planned
Connectors
Active connectors: 1 (Google Search Console)
Connection
Real connection enabled: Yes (GSC, read-only)
Credentials
Credentials stored here: No
Network
External API calls from dashboard: No
Generic connection wizard (preview — planning only)
  1. Step 1
    Select connector
    • Choose which connector to configure
    • Current phase: Planning only
  2. Step 2
    Review permissions
    • Minimal scopes
    • Read-only first
    • No provider secrets in frontend code
  3. Step 3
    Confirm data scope
    • What data may be imported
    • Advisory context only
    • Human review required
  4. Step 4
    Run readiness checks
    • Server-side credentials required
    • Test connection state required
    • Error handling required
    • Rate-limit handling required
    • Audit log required
    • Disconnect/revoke path required
  5. Step 5
    Request explicit approval
    • User approval required before any live connection
    • Production review required
    • Full Lane required for OAuth/API/credentials
  6. Step 6
    Connect through backend
    • Future server-side connector only
    • Disabled in this phase
    • No frontend secrets
  7. Step 7
    Verify and monitor
    • Connection state: connected / failed / last sync (future)
    • Sync attempt audit log
    • Disconnect/revoke option
Per-connector wizard readiness matrix
Display only — this matrix reports planned-connector readiness. The rows are informational and not clickable; nothing here starts a connection.
Sitemap fetchPlanning only
Wizard status: Planning only
Real connection enabled: No
Required lane: Standard or Full Lane
Risk: Low/Medium
Future backend placeholder: future:/api/integrations/sitemap
First real step: Safe read-only sitemap URL validation
Current blocker: safe fetch policy not implemented
Google Search ConsoleLive (read-only)
Wizard status: Implemented (live)
Real connection enabled: Yes (read-only)
Required lane: Full Lane (implemented)
Risk: Medium
Live backend: /api/gsc (server-side OAuth, read-only)
Status: live read-only Search Analytics — Daily / Queries / Pages
Current blocker: none — implemented
GA4Planning only
Wizard status: Planning only
Real connection enabled: No
Required lane: Full Lane
Risk: Medium
Future backend placeholder: future:/api/integrations/ga4
First real step: read-only OAuth scope review
Current blocker: OAuth/server-side connector not implemented
ShopifyPlanning only
Wizard status: Planning only
Real connection enabled: No
Required lane: Full Lane
Risk: High
Future backend placeholder: future:/api/integrations/shopify
First real step: read-only Admin API app planning
Current blocker: Admin API connector not implemented; Shopify writes disabled
Google Sheets / Drive exportPlanning only
Wizard status: Planning only
Real connection enabled: No
Required lane: Full Lane
Risk: Medium
Future backend placeholder: future:/api/integrations/sheets-drive
First real step: export scope and explicit approval planning
Current blocker: OAuth/server-side connector not implemented
Competitor URLsPlanning only
Wizard status: Planning only
Real connection enabled: No
Required lane: Standard Lane first
Risk: Medium
Future backend placeholder: future:/api/integrations/competitors
First real step: manual URL list model
Current blocker: manual URL storage model not implemented; no scraping
Recommended first real connector: Sitemap fetch. It can start read-only, does not require OAuth, and has the lowest permission risk if limited to an explicitly provided sitemap URL.
GSC, GA4, Shopify and Google Sheets / Drive must stay Full Lane because they require OAuth, API credentials, or higher-risk permissions.
Sitemap fetch — read-only test
Read-only. Fetches only the sitemap XML. Does not crawl pages.
Status: Not configured
This is a read-only test. The connector stays not connected and no credentials are stored. The last successful summary may be cached in browser-local storage only.
Sitemap insights
Read-only sitemap summary. Does not crawl pages. Does not verify rankings. Does not change Shopify. Browser-local summary only.
Sitemap status: Not tested yet
Google Search Console — read-only connector (live)
Google Search Console read-only. Requires Google OAuth approval. No SEO changes are made automatically. No Shopify changes. Human review required. CSV import remains available.
When you click Connect, Google may show an "unverified app" approval screen (for example "Google hasn't verified this app"). This is expected: this is a private, internal connector that has not gone through Google's public app-verification. Choose "Advanced" then "Continue" and sign in with your authorized Google account. This does not mean any Google token is exposed to your browser — the OAuth flow runs entirely server-side and the browser never receives a token. If the Connect button is greyed out, the server-side connector is not enabled yet; manual CSV import remains available in the meantime. See docs/GSC_OAUTH_VERIFICATION_CHECKLIST.md for details.
Live access: Read-only Search Analytics — queries and pages (clicks, impressions, CTR, average position).
OAuth scope: webmasters.readonly — the narrowest read-only Search Console scope. No write scope, no indexing scope, no Drive scope, no Analytics scope, no Shopify scope.
OAuth: handled server-side (live); the browser never receives any token.
Server-side secrets: configured in Cloudflare only, never in this browser and never in localStorage.
Server-side endpoints (implemented): /api/gsc/auth/start, /api/gsc/auth/callback, /api/gsc/status, /api/gsc/properties, /api/gsc/search-analytics, /api/gsc/disconnect.
Token storage: server-side encrypted (HttpOnly cookie); no tokens are stored in the browser.
CSV import: Remains active — live GSC supplements, not replaces, manual CSV imports.
Server-side OAuth: Implemented and read-only. When the server secrets are configured, the backend at /api/gsc reports enabled:true; connect to load live read-only Search Analytics (Daily / Queries / Pages). No Google API calls are made from this browser. CSV import remains available.
Connector status: Live read-only OAuth is implemented; the current connection state is shown at the top of the dashboard and in the live connection status below.
Real connection (live): Yes — read-only Search Analytics via the server-side OAuth flow.
The live read-only GSC connector is implemented (server-side OAuth, session-only, no token in the browser). The legacy in-browser Google sign-in was removed; connect from the button at the top. The other connectors below remain planning-only.
Google Search Console — live connection status
Live Google OAuth: Server-side read-only flow is active; the legacy in-browser sign-in was removed. Connect from the button at the top of the dashboard.
Active method: Live read-only Search Analytics (Daily / Queries / Pages) once connected; manual CSV import (Daily / Queries / Pages) remains available as a fallback.
Connection: GSC read-only uses a server-side OAuth flow (session-only, online, no refresh token).
Browser token: No token is stored in this browser. The browser receives only data rows; any legacy token is cleared.
Google API calls: No Google API calls are made from this browser — live data is fetched server-side.
Server status: checking…
📊
Welcome to Briut SEO Dashboard
This tool shows real search data for briutessentials.com — how many people see you on Google, which keywords you rank for, and performance trends.
📈 Real-time clicks & impressions from Google
🔑 Top keywords + average position
📊 Performance chart for the selected range
🤖 AI advisor for SEO improvements
🔗
Add your Search Console data
Google Search Console connects read-only through a secure server-side flow. Open Settings to connect, or import CSV files — both load into the dashboard.
Export Queries and Pages CSVs from Google Search Console → use the "Import … CSV" buttons → your data loads into the dashboard.
No Google token is requested or stored in this browser, and no Google API call is made from this browser — the read-only connection is handled server-side.
🤖
Ask the AI Advisor
The chat button at the bottom-right opens the SEO Agent. It analyzes your GSC data and suggests concrete actions.
No API key required — the advisor is hosted by this app. Click "Ask the SEO Agent" → type a question.
All recommendations are advisory. You review and apply changes manually — nothing is pushed to your site automatically.