UCP Checker
Back to status
directbuyhk.com icon
UCP Score

UCP Score for directbuyhk.com

UCP conformance score, top priorities, impact & effort matrix, and copy-paste fixes for every issue.

✓Verified
A96/100
Analyzed Oct 6, 2026 · 1 recommendation ·Boutir · v2026-08-25 latest
96
/ 100
UCP Conformance Score
A

directbuyhk.com publishes a conforming manifest with broad capability coverage.

Agent Discovery100
UCP Conformance93
Capability Coverage95
Working

Agent Discovery is solid (100/100).

Start Here

Publish keys at the manifest root

Verified

directbuyhk.com publishes a valid UCP manifest, with minor schema warnings.

Latency
789ms
Version
2026-08-25
Robots.txt
Allowed ✅

Top Priorities

1
Publish keys at the manifest root

Agents have nothing to verify your responses against.

Medium impact Medium effort

Impact & Effort Matrix

Prioritised recommendations by expected impact and implementation effort

Quick Wins(0)

High impact, low effort

  • No items
Strategic Investments(0)

High impact, high effort

  • No items
Incremental Gains(1)

Medium impact & effort

  • Publish keys at the manifest root
Consider Later(0)

Lower priority

  • No items

How you compare on Boutir

Response time benchmarked against 28 Boutirs we monitor.

fastBoutir median 730msslow
Your store
789ms
Boutir percentile
Below median
Faster than 43% of Boutir stores
Cohort range
344–1019ms
p25 to p75 (middle half)

Recommendations

All improvements ranked by priority, with evidence and actionable fixes.

1

Publish keys at the manifest root

Medium impact Medium effort

Agents have nothing to verify your responses against.

Why it matters

Signing keys let agents check that checkout responses really came from you. Tokenized payment flows in v2026-04-08+ require them. Since 2026-07-12 the spec expects a root-level "keys" list (the older "signing_keys" field is still accepted while stores move). Stores that hand the buyer a checkout link instead of taking payment through the agent can go without them for now.

Show fix

Generate an Ed25519 keypair, publish the public key as a JWK in a root-level "keys" array (the canonical field since spec PR #566; "signing_keys" is legacy). Rotate annually; keep "kid" stable across rotations of the same key.

{
  "keys": [
    {
      "kty": "OKP",
      "crv": "Ed25519",
      "x": "<base64url-encoded-public-key>",
      "kid": "key-2026-04",
      "alg": "EdDSA"
    }
  ],
  "ucp": { ... }
}
UCP_MISSING_SIGNING_KEYS

Full Check Breakdown

Every signal we evaluate, grouped by category.

Functional probes ran .
Agent Discovery8/8 passed

Can AI agents find your store and its UCP manifest?

  • HTTPSCore

    Manifest served over a secure connection.

    Manifest URL uses https://

    Why it matters

    Agents reject non-HTTPS endpoints outright. Signed payloads over HTTP are meaningless because the channel itself is tamperable.

  • UCP manifest reachableCore

    Manifest fetched OK from /.well-known/ucp.

    HTTP 200

    Why it matters

    Agents start every session by fetching this URL. If it 404s or times out, the store is invisible to agent commerce.

  • AI bot accessCore

    robots.txt allows agent crawlers to fetch the manifest.

    robots.txt allows /.well-known/ucp

    Why it matters

    Agents respect robots.txt. Even a published manifest gets ignored if the file is disallowed for known agent user-agents.

  • llms.txtExperimental

    Hand-written brief at /llms.txt for AI agents.

    Found at /llms.txt

    Why it matters

    Emerging convention (analogous to robots.txt). Recommendation/discovery agents read it for brand context, return policy, and crawl preferences.

  • sitemap.xmlCore

    XML sitemap published at /sitemap.xml.

    Found at /sitemap.xml

    Why it matters

    Tells agents which pages are canonical and how often they change. Without it, agents fall back to following internal links.

  • Open Graph tagsCore

    OG meta tags on the homepage.

    og:title and og:type/url present

    Why it matters

    OG tags drive how your store unfurls in agent surfaces, Slack, iMessage, and ChatGPT shares.

  • Organization schema (JSON-LD)Core

    Schema.org Organization (or OnlineStore) JSON-LD on homepage.

    Organization-typed JSON-LD detected

    Why it matters

    Gives agents a structured representation of your brand identity — used to verify you are who your manifest claims you are.

  • Mobile viewport metaCore

    Viewport meta tag for mobile rendering.

    <meta name="viewport"> present

    Why it matters

    Mobile agent sessions render in browser sandboxes that respect this. Without it, screenshots taken by agents are unreadable.

UCP Conformance4/5 passed

Does your manifest meet the published spec?

  • Manifest passes schema validationCore

    Manifest structure conforms to the published UCP spec.

    No structural errors

    Why it matters

    Strict UCP agents reject manifests with structural errors. The error code in the diagnostic shows which field failed.

  • Protocol version present and well-formedCore

    ucp.version follows YYYY-MM-DD format.

    Version: 2026-08-25

    Why it matters

    UCP versions are dates, not semver. Agents pick the closest matching schema based on this string.

  • Signing keys publishedCore

    Root-level keys array (canonical since 2026-07-12; legacy signing_keys also accepted) for response verification.

    No signing_keys at root (common for managed/redirect-checkout stores)

    Why it matters

    Required for tokenized payment flows in v2026-04-08+. Stores using checkout-link redirects (e.g. WooCommerce native) often skip this safely.

  • No validation warningsCore

    Manifest passes structural and field-level rules.

    No outstanding validation issues

    Why it matters

    Each warning is a strict-spec deviation — the recommendations section above lists them with copy-code fixes.

  • Spec & schema URLs resolve (17)Core

    Resolves the 17 spec/schema URLs declared across the manifest to confirm agents can fetch each one.

    All 17 URLs resolved.

    Why it matters

    Spec and schema URLs let agents validate request/response shapes before sending. Broken URLs degrade runtime validation to "best effort" and cause strict agents to refuse the capability entirely.

Capability Coverage6/6 passed

What operations can agents actually perform?

  • Capabilities declaredCore

    Number of agent-readable capabilities under ucp.capabilities.

    3 capabilities detected

    Why it matters

    Capabilities tell agents what operations to attempt. More coverage = more sessions complete end-to-end without falling back to scraping.

  • Checkout capabilityCore

    Store declares a checkout-namespaced capability.

    dev.ucp.shopping.checkout detected

    Why it matters

    Without a checkout capability, agents can browse but can't complete a purchase end-to-end.

  • Transports declaredInterop

    Service transports (REST/MCP/A2A/Embedded) declared on services.

    REST, MCP

    Why it matters

    Transports tell agents how to actually call your endpoints. MCP and REST are the most widely supported today.

  • Payment handlersCore

    Tokenized payment handlers registered for in-conversation checkout.

    3 handlers registered

    Why it matters

    Tokenized payment lets agents complete purchases without redirecting the buyer to a hosted checkout. Empty by design is valid for WooCommerce-style native checkouts.

  • REST transport reachableInterop

    Live reachability check against https://directbuyhk.com/apis/ucp.

    Reachable in 188ms (HTTP 200)

    Why it matters

    A declared transport that does not respond means agents will hit a dead end the moment they try to use the capability — even if the manifest itself looks perfect.

  • MCP transport reachableInterop

    Live reachability check against https://directbuyhk.com/apis/ucp/mcp.

    tools/list returned a JSON-RPC response in 1339ms

    Why it matters

    A declared transport that does not respond means agents will hit a dead end the moment they try to use the capability — even if the manifest itself looks perfect.

/llms.txt content

The plain-text brief this store publishes to AI agents. Captured on the most recent check.

6.5 KB2e7e9542eb32e4ab
mentions UCP
# llms.txt
# Public brief for AI agents about 電玩直銷網 directbuyhk.com

# About
DIRECTBUYHK.COM - 是香港遊戲電玩業界最大的的代理商及批發商之一,主要業務是香港遊戲電玩及配件的進出口和批發。為了對本公司的產品作宣傳及推廣,所以我們把某些產品放在這網站作特價發售。

Success Distribution 新成公司
香港 九龍 深水埗 福華街187號 地下
Tel : 23076666
URL : www.superufo.com
Email : [email protected]

FAQ :
AQ  常見問題
🏢本店地址: 九龍深水步福華街187號地下

⏰辦公時間:星期一至六,10:30am - 7:30pm. 星期日及勞工假期休息

取貨方式:
1️⃣ 門市自取:
 Whatsapp我們留低電話及姓名,幫你留貨(24小時內購買可以電話留貨, 。如果留貨超過24小時請直接上網購買)
網上下單及完成付款後的訂單,貨品可存放一星期以便客戶自取
2️⃣ 順豐快遞: 星期一至六下午5:00 pm 前下單及完成付款,盡量安排當天發貨。星期日休息。在正常情況下,大概一至2個工作天便會收到。(香港以外有額外收費,詳情請查閱順豐快遞網站。)

顧客在本公司(包括網上商店/門市落單)提交訂單將被作同意<條款及細則>的條文。

Q. 如何追踪我的訂單?
A. 請按email連接或者登入我哋網站-》我的帳戶-〉訂單 -》運費單 如有上面有順豐快遞編號 SF x x x, 代表已經寄出.
     請在下列網址追踪派送情況。      請在下列網址追踪派送情況。 https://www.sf-express.com/hk/tc/dynamic_function/waybill/

Q. 買滿幾多件貨品可以免運費?
A.  購買2件產品以上免費順豐送貨(只限香港)

Q. 寄貨可以揀埋預售遊戲一齊寄出嗎?
A. 可以,必須同一時間寄出。若分開寄出,不同發售日期之預購,請獨立下單。

Q. 安排寄貨的預售產品幾時要付尾數?
A. 所有未發售嘅貨品都未有定價,可以參考官方建議零售價格,到貨後通知你付尾數。

Q. 請問有什麼付款方式?
A. 門市可以付 現金 或  「轉數快  」 免手續費   PAYME  ,   信用卡 , 支付寶 收 1.5% 附加費。
     網上付款 「轉數快  」 ,ATM 和銀行轉賬  ,免手續費   PAYME ,「支付寶 收」1.5% 附加費   信用卡收 4%附加費。

Q. 落錯單/揀錯付款方式應該點樣做?
A.  請重新落單, 未付款定單會自動取消. 

Q. 網上店見到有貨,可以直接落門市買嗎?
A.  可以, 網上商店及門市的貨品款式、數量、價錢都一樣,顧客可以放心選購。

Q. 可以地鐵站交收嗎?
A.  不好意思,人手不足關係沒有地鐵站交收服務,只設到門市取貨或順豐快遞服務  。

Q. 訂單本身揀左自取/寄貨,可以轉寄貨/自取嗎?
A. 自取可以轉寄貨,需要網上重新落單填地址,並補上運費$30給我們(指定貨品除外);寄貨可以轉自取,到門市取貨。

Q. 下了訂單一定本人取貨嗎?可以代取貨嗎?
A. 可以,取貨人必須提供訂購人的電話, 名字 以及訂單資料核對。

Q. 下了訂單後可否申請退款?
A. 訂單日期起計,超過 10 天即不可取消,訂金將不予退還。十天之內取消訂單將收取$50行政費用。
取貨規定:
訂購貨品將於到貨日起存放一星期,超期需付餘額,否則本公司有權取消訂單並沒收定金。
付定金的顧客享有優先購買和貨源保證,未付定金的顧客僅作為一般購買處理。

Q. 如果發售日期為假期而無法取貨,要如何取貨?
A. 假期後待門市開門才可以取貨。

Q. 如果運輸途上所引致的損毁,可否退換 ?
A. 不可以,運輸所引致的損毁,不是我們能力所控制範圍之內。建議客人可自行購買保險。。

Q:網上購物可否免運費?
A:買滿任何2件或以上產品 = 順豐免運(限香港地區網店)。**少量產品因體積太大或太重沒有免運費優惠

📝 購物及售後條款
🔄 退換貨政策
本網站所售產品 一律不設退貨。如產品存在品質問題或缺陷,將依以下方式處理:

1️⃣ 行貨產品
請顧客直接聯絡該產品之指定代理商或官方售後中心處理保養或更換事宜。

2️⃣ 水貨/進口貨產品
由於水貨產品 不設官方保養及售後服務,如顧客於收貨後發現產品功能異常或明顯缺陷,請於收貨後 2 日內 聯絡本店服務中心。

本店會安排檢測,如經確認屬真確產品缺陷,將可為顧客安排更換全新產品。
如屬產品原有功能差異或細微外觀問題,將不屬於更換範圍。
📦 換貨時,顧客必須提供購買證明(包括訂單確認電郵及訂單號碼),並確保產品 保持全新狀態,包括:

所有原廠包裝/配件(如說明書及保用證)
包裝盒及配件完整、無污損、無刮花
🕓 預售/訂單條款
所有 預售商品訂單,由訂單日期起計 超過 10 天將不可取消,訂金恕不退還。
如於 10 天內申請取消訂單,將收取 HK$ 50 行政費用。
本公司保留隨時修改或取消訂單之最終決定權。
📦 取貨與存放政策
訂購商品到貨後,將免費為顧客 保留一星期。
超過存放期限仍未取貨或支付餘額,本公司有權:
取消訂單;
沒收訂金。
已付訂金之顧客可享有 優先購買及貨源保證;
未付訂金者,將按一般購買程序處理。
📍備註

所有產品圖片及影片僅供參考,最終以實際貨品為準。
若生產商或供應商未能提供貨品,本公司將全額退回已支付訂金。

# Product Categories
- Amiibo 公仔 | 毛絨玩具
- Amiibo 公仔 | 毛絨玩具 > Amiibo 公仔
- Amiibo 公仔 | 毛絨玩具 > 毛絨玩具
- Nintendo Switch
- Nintendo Switch 2
- Nintendo Switch 2 > SWITCH 2 主機及配件
- Nintendo Switch 2 > SWITCH 2 游戲
- Nintendo Switch > NS 配件
- Nintendo Switch > SWITCH 游戲
- Nintendo Switch > 收納包
- Nintendo Switch > 遊戲主機
- Playstation 4
- Playstation 4 > PS4 主機|配件
- Playstation 4 > PS4 游戲 ( 1折至半價清貨)
- Playstation 5
- Playstation 5 > PS5 主機及配件
- Playstation 5 > PS5 遊戲
- Steam Deck | ROG Ally | Meta Quest
- Xbox One | XSX | 360
- Xbox One | XSX | 360 > Xbox 遊戲 ( 1折至半價清貨)

# Policies
- Return policy: https://directbuyhk.com/returnpolicy
- Terms: https://directbuyhk.com/terms
- Privacy: https://www.boutir.com/zh-hk/legal/privacy-policy

# UCP
- Discovery profile: https://directbuyhk.com/.well-known/ucp
View source ↗

Capabilities Detected

UCP capabilities supported by this endpoint
Cart ✓ Bound 2026-08-25
Discount Extension ✓ Bound 2026-08-25
Checkout ✓ Bound 2026-08-25
Fulfillment Extension ✓ Bound 2026-08-25
Catalog Lookup ✓ Bound 2026-08-25
Catalog Search ✓ Bound 2026-08-25

Technical Vitals

Technical details for this UCP endpoint
UCP Status Verified
Endpoint https://directbuyhk.com/.well-known/ucp
HTTP Status 200
UCP Version 2026-08-25
Transports REST, MCP
Last Observed
Last Full Index

Embed your UCP Score

Drop the live grade into your README, status page, or marketing site. The badge auto-updates as your score changes.

UCP Score for directbuyhk.com badge for https://ucpchecker.com/score/directbuyhk.comLive preview
Markdown
[![UCP Score for directbuyhk.com](https://ucpchecker.com/score/directbuyhk.com/badge.svg)](https://ucpchecker.com/score/directbuyhk.com)
HTML
<a href="https://ucpchecker.com/score/directbuyhk.com"><img src="https://ucpchecker.com/score/directbuyhk.com/badge.svg" alt="UCP Score for directbuyhk.com"></a>
New · Early access open
Is directbuyhk.com yours? Claim it & monitor it daily

Prove ownership with one DNS record and the new monitoring dashboard watches it every day — score trends, break alerts, staging drift and a watchlist that benchmarks you against the field. Free while in beta.

Start monitoring →

This score reflects data from the most recent crawl. Run a fresh check to update, or read the methodology to see how each signal is scored.

Save this report

Track directbuyhk.com's UCP score over time. We'll re-run the full check weekly and email you if the score drops, a capability regresses, or status flips.

Free. One email when something changes — no marketing. Privacy.