Which apps is this Shopify store running?
Example scan — another store, not yoursdeathwishcoffee.com · 4 matchesOpen this to see what the full report looks like before you hand over an address. It is a scan of deathwishcoffee.com. Enter your own store above and your result replaces it.Show the exampleHide the example
Everything below is a scan of deathwishcoffee.com, fetched from that store for this page. It is not a scan of your store.
The page was read in full and 4 of the 29 signatures in this table matched. Each match means the page referenced that vendor. It does not prove the app is configured, enabled or doing anything.
Read 698 KB of HTML from https://www.deathwishcoffee.com/ · HTTP 200 · 1 redirect followed
Matched
- Klaviyo
- Email / Onsite formsMatched a known script or CDN path for this vendor in the page HTML.
- Postscript
- SMSMatched a known script or CDN path for this vendor in the page HTML.
- Recharge
- SubscriptionsMatched a known script or CDN path for this vendor in the page HTML.
- Gorgias
- Support chatMatched a known script or CDN path for this vendor in the page HTML.
What this scan cannot see
- Apps outside this 29-signature table. It covers common conversion and marketing apps and nothing else. Other detectors advertise thousands of signatures and will find more than this one.
- Apps that load no front-end script at all — fulfilment, accounting, inventory, most of the back office — leave nothing in a storefront page to detect.
- Apps that only load on a product page, a cart page or at checkout. This is one fetch of one page.
- Whether a matched app is actually switched on, paid for, or configured. Presence of a script is not evidence of use.
Same fetch, other questions
Theme name and version, read out of the same page.
Which capture mechanisms are visible, and the much longer list that is not.
Every match above is a script on every page view.
Every app matched above is a script this store loads on every page view. Nudgesmart loads nothing at all until a campaign is live, and a merchant switching tracking off puts it back to zero HTML, JavaScript and CSS.
How it's calculated
A Shopify app detector names the apps and services a storefront is running, so a store using Klaviyo for email comes back with Klaviyo listed, and a store running none of the apps it recognises comes back empty.
Detections come from the public HTML of the address you enter and nothing else. No traffic estimate, ranking figure or third-party store database is used anywhere in this tool. Competing detectors advertise thousands of signatures against the 29 here and will find apps this one misses.
A pattern match over one page of HTML. The table has 29 entries and it is printed in full below, so the limit of this tool is something you can read rather than something you have to trust.
- The fetch
- One request for the address you enter, from our server, following redirects and sending a normal user agent. The redirect is the part that matters: the bare domain answers with a redirect and an empty body. The request is abandoned after 9 seconds, follows at most 4 redirects, and stops reading at 2.0 megabytes — a page longer than that is reported as truncated, because a cut-off body can only under-report.
- The signature table
- 29 patterns, each matching a CDN path or script name a specific vendor is known to load. The full list is printed further down this page. It is curated around conversion and marketing apps and it is not, and does not try to be, a catalogue of the app store.
- A match
- The pattern appeared somewhere in the delivered HTML. That is a fact about the markup, not about the merchant. It does not establish that the app is configured, paid for, switched on or doing anything at all.
- No match
- The pattern did not appear in the page that was read. Read alongside the kilobyte count in the result, that is a measurement. Read on its own it is nothing, which is why the kilobyte count is never hidden.
- The capability labels
- Each vendor carries a short description of what it does — Email, Popups, SMS, Reviews and so on. They are there to make the list readable and nothing in the detection depends on them.
Nudgesmart is available on the Shopify App Store. Browse the template library or see what it costs.
What the signature table catches, and what it misses
Sample pages, not customer data and not named stores. Every cell is produced by the same matcher the scanner above runs. Row four is the important one: a real popup vendor that is not in the table, which reports as no match and is exactly what a coverage limit looks like from the outside.
| Sample page | Signatures matched | What was matched | Verdict |
|---|---|---|---|
| Stock Dawn, Klaviyo and an SMS app | 2 matches | Klaviyo, Postscript | Signatures matched |
| Agency theme plus the built-in Shopify newsletter form | 0 matches | page read in full, none of the 29 signatures matched | No signatures matched |
| A Theme Store theme that still carries its theme_store_id | 0 matches | page read in full, none of the 29 signatures matched | No signatures matched |
| A popup vendor that is not in the signature table | 0 matches | page read in full, none of the 29 signatures matched | No signatures matched |
| Headless storefront — Shopify assets, no theme object | 1 match | Klaviyo | Signatures matched |
| Not a Shopify store at all | 0 matches | page read in full, none of the 29 signatures matched | No signatures matched |
A scan that matches nothing and a scan that never reached the store produce the same empty list. They are rendered as two different things here on purpose: a result always states how many kilobytes of HTML it read, and a blocked request has no kilobytes to state.
The full table, all 29 entries
- KlaviyoEmail / Onsite forms
- Judge.meReviews
- PrivyPopups / Email
- JustunoPopups
- OptiMonkPopups
- LooxReviews
- YotpoReviews / Loyalty
- OmnisendEmail / Popups
- PostscriptSMS
- AttentiveSMS
- RechargeSubscriptions
- GorgiasSupport chat
- TidioSupport chat
- MS ClaritySession analytics
- HotjarSession analytics
- WheelioPopups / Gamified
- FeraReviews / Social proof
- NudgifySocial proof
- WisepopsPopups
- PoptinPopups
- MailchimpEmail
- OkendoReviews
- StampedReviews
- SegunoEmail
- ProveSourceSocial proof
- ZendeskSupport chat
- IntercomSupport chat
- SMSBumpSMS
- Shopify Product ReviewsReviews
What this number doesn't tell you
This table has 29 entries and competing tools have thousands
That is a real and permanent gap, and it is the first thing this page says rather than the last. If you need the widest possible coverage, the established detectors will serve you better. What you get here instead is a result that tells you the size of its own blind spot.
Back-office apps are invisible to any storefront scan
Fulfilment, accounting, inventory, shipping, purchase orders, most of what a store actually runs on — none of it loads a front-end script, so none of it leaves a trace in a storefront page. A scanner that only reads HTML cannot see past the marketing stack, whoever builds it.
One page is not the store
Apps that load only on a product page, a collection page, a cart or at checkout will not appear. This is a single fetch of a single address, and the front page is the one page most likely to be heavily cached and stripped.
A leftover script looks exactly like a live app
Uninstalled apps frequently leave a snippet behind in the theme. It will match, it will be reported, and there is no way to tell it apart from a working install by reading the markup.
Nothing here says anything about how the store performs
No traffic figure, no conversion rate, no revenue, no ranking. This tool knows one page of HTML and makes no claim beyond it, about the store being scanned or about yours.
Questions
How many apps can this detector find?
29. That is the whole table, and it covers common conversion and marketing apps — popups, email, SMS, reviews, social proof, support chat and session analytics. Other detectors advertise two thousand signatures or more and will find things this one cannot. The number is stated here rather than buried because a detector that implies completeness is telling you something it cannot know.
What does it mean when nothing is detected?
It means none of these 29 signatures appeared in the page that was read. It does not mean the store runs no apps. The result panel states the size of the page it read, in kilobytes, so that a genuine empty result can be told apart from a request that never got through.
Does a detected app mean the store is actually using it?
No. It means the page referenced that vendor. A script can be left behind after an app is uninstalled, loaded by a tag manager, or present and switched off. Presence in the markup is the only claim being made.
Why does it miss apps I know are installed?
Three common reasons. The app is not in this table. The app loads only on a product page, a cart page or at checkout, and this is one fetch of one address. Or the app injects itself after the page loads, which leaves nothing in the delivered HTML to match against.
Can I scan a store that blocks bots?
Often not, and when that happens the tool says so in a separate panel that contains no findings at all. A blocked request and a store with no apps produce exactly the same empty list, so they are shown as two different things on purpose.
Every app on that list costs the page something.
Nudgesmart outputs nothing at all on a page with no live campaign, and a merchant can switch it off completely from theme settings.