UCP Checker
Back to status
onwater.de icon
UCP Score

UCP Score for onwater.de

UCP conformance score, top priorities, impact & effort matrix, and copy-paste fixes for every issue.

✓Verified
A86/100
Analyzed Oct 10, 2026 · 3 recommendations ·Wix · v2026-04-08 upgrade
86
/ 100
UCP Score
A

onwater.de publishes a conforming profile with broad capability coverage.

Agent Discovery100
UCP Conformance81
Capability Coverage80
Working

Agent Discovery is solid (100/100).

Start Here

Fix broken spec or schema URLs → Publish the public keys agents use to check your messages → Move to the latest UCP protocol version

Verified

onwater.de publishes a valid UCP profile, with minor schema warnings.

Latency
348ms
Version
2026-04-08
Robots.txt
Allowed ✅

Top Priorities

1
Fix broken spec or schema URLs

One or more spec/schema URLs declared in the profile do not resolve.

Medium impact Low effort
2
Publish the public keys agents use to check your messages

Your UCP profile lists no public keys, so an agent cannot confirm that a message really came from your store.

Medium impact Medium effort
3
Move to the latest UCP protocol version

Your profile declares a valid but older protocol version. A newer one is published.

Low impact Low effort

Impact & Effort Matrix

Prioritised recommendations by expected impact and implementation effort

Quick Wins(0)

High impact, low effort

  • No items
Strategic Investments(0)

High impact, high effort

  • No items
Incremental Gains(2)

Medium impact & effort

  • Fix broken spec or schema URLs
  • Publish the public keys agents use to check your messages
Consider Later(1)

Lower priority

  • Move to the latest UCP protocol version

How you compare on Wix

Response time benchmarked against 7,457 Wixes we monitor.

fastWix median 398msslow
Your store
348ms
Wix percentile
Top quartile
Faster than 83% of Wix stores
Cohort range
359–461ms
p25 to p75 (middle half)

Recommendations

All improvements ranked by priority, with evidence and actionable fixes.

1

Fix broken spec or schema URLs

Medium impact Low effort ×5

One or more spec/schema URLs declared in the profile do not resolve.

Why it matters

Spec and schema URLs let agents validate request/response shapes before sending. When they 404 or time out, runtime validation degrades to "best effort" and strict agents reject the integration entirely. Common cause: copy-pasting a placeholder URL during initial profile setup. See the Full Check Breakdown for the specific URLs that failed.

UCP_PROBE_URL_BROKEN
2

Publish the public keys agents use to check your messages

Medium impact Medium effort

Your UCP profile lists no public keys, so an agent cannot confirm that a message really came from your store.

Why it matters

Agents use these keys to check that checkout messages really came from you. A store that takes payment through the agent needs them. A store that sends the buyer to its own checkout page can manage without them for now.

Show fix

Create an Ed25519 key pair. Add the public key to a "keys" list at the top level of your UCP profile, as in the example, and keep the private key on your server. Replace the key once a year, giving each new key its own "kid".

{
  "keys": [
    {
      "kty": "OKP",
      "crv": "Ed25519",
      "x": "<base64url-encoded-public-key>",
      "kid": "key-2026-04",
      "alg": "EdDSA"
    }
  ],
  "ucp": { ... }
}
UCP_MISSING_SIGNING_KEYS
3

Move to the latest UCP protocol version

Low impact Low effort

Your profile declares a valid but older protocol version. A newer one is published.

Why it matters

Older versions stay valid (agents use the version you declare), but newer abilities (embedded checkout, agent payment mandates, linked customer accounts, card authentication, payment terms and store location lookup) only work against the latest version. The profile itself barely changes: the signing keys move to a root-level "keys" list, and the rest of the update is in what capabilities can say.

Show fix

Set the version to 2026-08-25 and publish your public keys as a root-level "keys" list. The older "signing_keys" field is still accepted, but "keys" is the one every verifier reads.

"ucp": {
  "version": "2026-08-25",
  ...
},
"keys": [ ... ]   // beside "ucp", not inside it
UCP_VERSION_OUTDATED

Full Check Breakdown

Every signal we evaluate, grouped by category.

Functional probes ran Sep 20, 2026. Transport and URL resolution rows may be stale. Run a fresh check to re-probe.
Agent Discovery8/8 passed

Can AI agents find your store and its UCP profile?

  • HTTPSCore

    Profile served over a secure connection.

    Profile URL uses https://

    Why it matters

    Agents reject non-HTTPS endpoints outright. Signed payloads over HTTP are meaningless because the channel itself is tamperable.

  • UCP profile reachableCore

    Profile fetched OK from /.well-known/ucp.

    HTTP 200

    Why it matters

    Agents start every session by fetching this URL. If it 404s or times out, the store is invisible to agent commerce.

  • AI bot accessCore

    robots.txt allows agent crawlers to fetch the profile.

    robots.txt allows /.well-known/ucp

    Why it matters

    Agents respect robots.txt. Even a published profile gets ignored if the file is disallowed for known agent user-agents.

  • llms.txtExperimental

    Hand-written brief at /llms.txt for AI agents.

    Found at /llms.txt

    Why it matters

    Emerging convention (analogous to robots.txt). Recommendation/discovery agents read it for brand context, return policy, and crawl preferences.

  • sitemap.xmlCore

    XML sitemap published at /sitemap.xml.

    Found at /sitemap.xml

    Why it matters

    Tells agents which pages are canonical and how often they change. Without it, agents fall back to following internal links.

  • Open Graph tagsCore

    OG meta tags on the homepage.

    og:title and og:type/url present

    Why it matters

    OG tags drive how your store unfurls in agent surfaces, Slack, iMessage, and ChatGPT shares.

  • Organization schema (JSON-LD)Core

    Schema.org Organization (or OnlineStore) JSON-LD on homepage.

    Organization-typed JSON-LD detected

    Why it matters

    Gives agents a structured representation of your brand identity — used to verify you are who your profile claims you are.

  • Mobile viewport metaCore

    Viewport meta tag for mobile rendering.

    <meta name="viewport"> present

    Why it matters

    Mobile agent sessions render in browser sandboxes that respect this. Without it, screenshots taken by agents are unreadable.

UCP Conformance2/5 passed

Does your profile meet the published spec?

  • Profile passes schema validationCore

    Profile structure conforms to the published UCP spec.

    No structural errors

    Why it matters

    Strict UCP agents reject profiles with structural errors. The error code in the diagnostic shows which field failed.

  • Protocol version present and well-formedCore

    ucp.version follows YYYY-MM-DD format.

    Version: 2026-04-08

    Why it matters

    UCP versions are dates, not semver. Agents pick the closest matching schema based on this string.

  • Signing keys publishedCore

    Root-level keys array (canonical since 2026-07-12; legacy signing_keys also accepted) for response verification.

    No signing_keys at root (common for managed/redirect-checkout stores)

    Why it matters

    Required for tokenized payment flows in v2026-04-08+. Stores using checkout-link redirects (e.g. WooCommerce native) often skip this safely.

  • No validation warningsCore

    Profile passes structural and field-level rules.

    1 warning

    Why it matters

    Each warning is a strict-spec deviation — the recommendations section above lists them with copy-code fixes.

  • Spec & schema URLs resolve (10)Core

    Resolves the 10 spec/schema URLs declared across the profile to confirm agents can fetch each one.

    Did not resolve (5 of 10): https://ucp.dev/services/shopping/rest.openapi.json, https://ucp.dev/schemas/shopping/checkout.json, https://ucp.dev/schemas/shopping/fulfillment.json, https://ucp.dev/schemas/shopping/catalog-search.json, https://ucp.dev/schemas/shopping/catalog-lookup.json

    Why it matters

    Spec and schema URLs let agents validate request/response shapes before sending. Broken URLs degrade runtime validation to "best effort" and cause strict agents to refuse the capability entirely.

Capability Coverage4/6 passed

What operations can agents actually perform?

  • Capabilities declaredCore

    Number of agent-readable capabilities under ucp.capabilities.

    3 of 6 capability families detected: Checkout, Cart Management, Catalog. A family counts once however many namespaces or extensions declare it.

    Why it matters

    Capabilities tell agents what operations to attempt. More coverage = more sessions complete end-to-end without falling back to scraping.

  • Checkout capabilityCore

    Store declares a checkout-namespaced capability.

    dev.ucp.shopping.checkout detected

    Why it matters

    Without a checkout capability, agents can browse but can't complete a purchase end-to-end.

  • Transports declaredInterop

    Service transports (REST/MCP/A2A/Embedded) declared on services.

    REST, MCP

    Why it matters

    Transports tell agents how to actually call your endpoints. MCP and REST are the most widely supported today.

  • Payment handlersCore

    Tokenized payment handlers registered for in-conversation checkout.

    Empty array: checkout-link redirect strategy

    Why it matters

    Tokenized payment lets agents complete purchases without redirecting the buyer to a hosted checkout. Empty by design is valid for WooCommerce-style native checkouts.

  • REST transport reachableInterop

    Live reachability check against https://www.wixapis.com/ecom/ucp/72af4e89-74f8-48b9-9616-92ee53fbaff9.

    Host responded with HTTP 404 — endpoint reachable but path may be method-restricted

    Why it matters

    A declared transport that does not respond means agents will hit a dead end the moment they try to use the capability — even if the profile itself looks perfect.

  • MCP transport reachableInterop

    Live reachability check against https://www.wixapis.com/ecom/ucp/72af4e89-74f8-48b9-9616-92ee53fbaff9/mcp.

    tools/list returned a JSON-RPC response in 171ms

    Why it matters

    A declared transport that does not respond means agents will hit a dead end the moment they try to use the capability — even if the profile itself looks perfect.

/llms.txt content

The plain-text brief this store publishes to AI agents. Captured on the most recent check.

7.8 KBd84e7565690e051f
# ONWATER GmbH

## Über ONWATER
ONWATER ist Deutschlands führender Anbieter für Bootsausbildung, Weiterbildung und Wassersporterlebnisse. Hauptsitz ist Mainz, gegründet 2005. ONWATER bildet zum Sportbootführerschein aus, begleitet Schülerinnen und Schüler mit Weiterbildungen und Skippertraining bis zum eigenständigen Chartern und bietet Erlebnisse wie Floßtouren und Bootscharter. ONWATER setzt konsequent auf Nachhaltigkeit: Die Fahrschulboote und Flöße fahren größtenteils elektrisch und CO2-neutral mit Solar- und Ökostrom.

## Philosophie
- Einfacher Zugang zum Wassersport für alle
- Nachhaltigkeit durch E-Mobilität
- Hochwertige Ausbildung mit Spaßfaktor
- Community und Lifestyle auf dem Wasser
- "On Water" ist nicht nur der Name, sondern die Leidenschaft von ONWATER

## Standorte
- Mainz (Hauptsitz)
- Düsseldorf
- Frankfurt
- Köln
- Koblenz
- Marburg
- Chiemsee
- Berlin
- Palma de Mallorca / Spanien
- Gardasee /Italien

## Kernleistungen

### Bootsschule & Bootsausbildung
ONWATER ist die einzige Bootsschule mit Praxis-Flatrate: Alle Fahrstunden sind inklusive. Die Theorie lernst du bequem per App, deine Fahrstunden buchst du ebenfalls direkt darüber. Die praktische Ausbildung findet an einem der 11 Standorte von ONWATER statt.
- **Sportbootführerschein See (SBF See)**: Für Meer und Küstengewässer
- **Sportbootführerschein Binnen (SBF Binnen)**: Für Flüsse und Seen
- **Kombi-Angebot**: Binnen + See zum Vorteilspreis
- **Studierenden-Angebot**: Studirabatt für das See+Binnen-Kombipaket
- **Kursformate**: Online-Kurse oder Kompaktkurse vor Ort
- **Inklusive**: Alle Fahrstunden (Praxis-Flatrate), hochwertiges Lehrmaterial, App-Zugang, Lernheft, persönliche Betreuung
- **Nicht inklusive**: Prüfungsgebühren

### Weiterbildung
- **Skippertraining**: Praxistraining für Einsteiger und Fortgeschrittene, individuell auf das eigene Level abgestimmt. Voraussetzung für das Chartern eines Bootes am jeweiligen Standort.
- **SKS-Kurse**: Sportküstenschifferschein mit Theorie und Praxistörn
- **Funkscheine**: SRC- und UBI-Ausbildung

### Wassersporterlebnisse
- **Floßtouren für Gruppenevents**: Führerscheinfreie Touren auf dem Wasser für Gruppen von 10 bis 18 Personen, ein ONWATER-Tourguide ist immer an Bord. Ideal für Geburtstage, Junggesellenabschiede und Firmenevents. In Mainz und Frankfurt, ab 590 €.
- **Bootscharter**: Sportboote für 6 bis 8 Personen, elektrisch oder mit konventionellem Motor
- **Bootsclub**: Boatsharing – Ein Sportboot teilen statt besitzen

## Ausbildungsablauf
1. Online-Anmeldung und Zugang zur ONWATER-App
2. Theorie per App lernen (maximal 2–4 Wochen)
3. Fahrstunden per App buchen und am Standort absolvieren
4. Prüfungsanmeldung beim zuständigen Prüfungsausschuss
5. Theorie- und Praxisprüfung
6. Führerschein im Scheckkartenformat per Post

## Besonderheiten
- Einzige Bootsschule mit Praxis-Flatrate – alle Fahrstunden inklusive
- Eigene Lern-App mit allen Prüfungsfragen und Fahrstundenbuchung
- Geld-zurück-Garantie
- ONWATER Weekly: Live Q&A-Sessions mit Trainern
- Eigene Steganlagen und Flotte
- Fahrschulboote und Flöße fahren größtenteils elektrisch und CO2-neutral

## Events & Specials
- ONWATER Boat Days: Erlebnis-Bootsmesse in Düsseldorf
- Training Days: Intensivtraining für Fortgeschrittene
- Business-Events auf Flößen und Booten

## Kontakt
- Hauptsitz: Victor Hugo Ufer 22, 55116 Mainz
- E-Mail: [email protected]
- Website: www.onwater.de
- WhatsApp-Support: +49 1579 2324614

## Geschichte
- 2005: Gründung als Wakeboardschule
- 2006: Erweiterung zur Bootsschule
- 2018: Umstellung auf E-Boote
- 2020: Digitalisierung mit eigener App
- 2025: 20-jähriges Jubiläum & erste eigene Erlebnis-Bootsmesse

## Keywords
Sportbootführerschein, SBF See, SBF Binnen, Bootsschule, Bootsausbildung, Motorbootführerschein, Skippertraining, Funkkurs, SKS, Floßtour, Floßtour Gruppenevent, Bootscharter, Bootsclub, Wassersport, E-Boot, Nachhaltigkeit, Rhein, Main, Boot fahren lernen

## KI-Agenten-Zugriff (MCP)
Diese Website wird von Wix betrieben und unterstützt das Model Context Protocol (MCP) für den Zugriff durch KI-Agenten. KI-Agenten können sich direkt verbinden, um Live- und aktuelle Website-Inhalte abzurufen – kein Scraping erforderlich.
- **MCP-Endpoint:** https://www.onwater.de/_api/mcp
- **Wix MCP-Docs:** https://dev.wix.com/docs/develop-websites/articles/get-started/about-the-wix-site-mcp

Über den MCP-Endpoint können KI-Agenten:
- Geschäftsdetails abrufen (Kontakt, Standorte, Öffnungszeiten)
- Kurse, Floßtouren, Charterboote und weitere Services entdecken
- Services und Termine buchen
- Einen Kauf starten und zum Checkout auf der Website weiterleiten
- Fragen beantworten, ohne die Website manuell durchsuchen zu müssen

Hinweise: Keine Authentifizierung nötig, nur öffentliche Website-Informationen verfügbar, Inhalte immer live und aktuell.

## KI-Agenten-Zugriff

Diese Website wird von Wix betrieben und unterstützt das Model Context Protocol (MCP)
für den Zugriff durch KI-Agenten. KI-Agenten können sich direkt verbinden, um Live- und aktuelle Website-Inhalte abzurufen – kein Scraping erforderlich.

- **MCP-Endpoint der Website:** https://www.onwater.de/_api/mcp
- **Wix MCP-Docs:** https://dev.wix.com/docs/develop-websites/articles/get-started/about-the-wix-site-mcp

## Verfügbare MCP-Tools

### GetBusinessDetails
Ruft Geschäfts- und Website-Details wie Zeitzone, E-Mail-Adresse, Telefonnummer und Adresse ab.
- Keine Parameter erforderlich.

### SearchInSite
Durchsucht die Website nach Informationen.
- \`searchTerm\` – Der Suchbegriff auf der Website.

### SearchSiteApiDocs
Ruft die API-Dokumentation für die auf dieser Website installierten Wix-Unternehmenslösungen ab und informiert den KI-Client, wie die APIs verwendet werden. Verwende dieses Tool zum
Abfragen von Produkten und Services (anstelle von SearchInSite).
- \`searchTerm\` – Der Suchbegriff in der API-Dokumentation der Website.

### GenerateVisitorToken
Erstellt eine neue Besucher-Session und ruft ein Besucher-Zugriffstoken für die Website ab.
Muss vor jeder CallWixSiteAPI-Anfrage aufgerufen werden, wenn kein Besucher-Token
im Kontext verfügbar ist.
- Keine Parameter erforderlich.

### CallWixSiteAPI
Ruft API-Methoden auf der Website auf, um Aktionen im Namen eines Besuchers auszuführen,
wie das Abfragen von Website-Daten, das Buchen eines Termins oder das Starten eines Kaufs.
- \`visitorToken\` – Besucher-Zugriffstoken. Verwende GenerateVisitorToken zuerst, falls nicht verfügbar.
- \`url\` – Absolute URL der API-Methode, die aufgerufen werden soll (z. B. https://www.wixapis.com/...). Abrufen mit SearchSiteApiDocs.
- \`method\` – HTTP-Methode, die für den API-Aufruf verwendet werden soll.
- \`body\` – Anfragetext als gültige JSON-Zeichenfolge.

### ReadFullDocsArticle
Ruft einen vollständigen Artikel aus dem Wix-Entwickler-Dokumentationsportal ab.
- \`articleUrl\` – URL eines Artikels im Wix-Entwickler-Dokumentationsportal.

### ReadFullDocsMethodSchema
Ruft das vollständige Schema für eine Wix API-Methode ab. Sollte vor dem
Aufruf der eigentlichen Methode über CallWixSiteAPI aufgerufen werden.
- \`articleUrl\` – URL des Referenzartikels für die Wix API-Methode.

## Was Besucher über KI + MCP tun können

- Unternehmensdetails abrufen (Kontaktangaben, Standort, Öffnungszeiten)
- Produkte und Services im Angebot entdecken
- Services buchen und Reservierungen vornehmen
- Einen Kauf starten und zur Website weitergeleitet werden, um den Checkout abzuschließen
- Fragen stellen und relevante Antworten erhalten, ohne die Website durchsuchen zu müssen

## Hinweise

- Keine Authentifizierung erforderlich, um sich mit dem MCP-Endpoint zu verbinden
- Nur öffentliche Informationen, die auf der Website zugänglich sind, sind verfügbar
- Content ist immer live und aktuell
- Um Tool-Updates zu erhalten, implementiere einen Tools/Listen-Aufruf nach Erhalt einer Tool-Update-Benachrichtigung
View source ↗

Capabilities Detected

UCP capabilities supported by this endpoint
Cart ✓ Bound 2026-04-08
Checkout ✓ Bound 2026-04-08
Fulfillment Extension ✓ Bound 2026-04-08
Catalog Lookup ✓ Bound 2026-04-08
Catalog Search ✓ Bound 2026-04-08

Technical Vitals

Technical details for this UCP endpoint
UCP Status Verified
Endpoint https://onwater.de/.well-known/ucp
HTTP Status 200
UCP Version 2026-04-08
Transports REST, MCP
Last Observed
Last Full Index

Embed your UCP Score

Drop the live grade into your README, status page, or marketing site. The badge auto-updates as your score changes.

UCP Score for onwater.de badge for https://ucpchecker.com/score/onwater.deLive preview
Markdown
[![UCP Score for onwater.de](https://ucpchecker.com/score/onwater.de/badge.svg)](https://ucpchecker.com/score/onwater.de)
HTML
<a href="https://ucpchecker.com/score/onwater.de"><img src="https://ucpchecker.com/score/onwater.de/badge.svg" alt="UCP Score for onwater.de"></a>
New · Early access open
Is onwater.de yours? Claim it & monitor it daily

Prove ownership with one DNS record and the new monitoring dashboard watches it every day — score trends, break alerts, staging drift and a watchlist that benchmarks you against the field. Free while in beta.

Start monitoring →

This score reflects data from the most recent crawl. Run a fresh check to update, or read the methodology to see how each signal is scored.

Save this report

Track onwater.de's UCP score over time. We'll re-run the full check weekly and email you if the score drops, a capability regresses, or status flips.

Free. One email when something changes — no marketing. Privacy.