Launch is the baseline, not the finish line
Website maintenance begins when launch ends
A launch proves that a website can go live. It does not prove that it will keep serving customers, representing the business accurately or supporting the next campaign without attention. Domains renew, platforms release updates, teams change prices and add tools, and visitors take paths no one anticipated in QA. A site delivered through web design and development should therefore leave launch with an operating rhythm, not an assumption that it can be forgotten.
Launch is a baseline, not a guarantee
The day a site launches is the cleanest version of a moving system: its forms have been tested, its content has been approved and its integrations are connected. From that point, the system is exposed to change. A new campaign may add a tracking script. A sales lead may need a different route. A platform update may alter a component. None of those changes is inherently risky, but each changes the conditions under which the site was originally checked. The corporate website commissioning checklist is useful at launch because it establishes what to verify; maintenance turns that verification into a repeatable practice.
The cost of deferment compounds
Skipped maintenance rarely announces itself as one dramatic failure. A contact form stops forwarding a few enquiries. An expired team photo or price remains visible while people make decisions from it. Extra scripts and uncompressed assets make new pages heavier. Old accounts keep access after responsibilities change. Each issue has a modest repair when caught early. Left together, they create lost demand, an emergency recovery project and a more complicated site for the next person to understand. Consistent website maintenance protects the value already invested in the site.
Keep the website working
The first stream is operational reliability: can a visitor complete the action the business expects, and can the business receive the result? Uptime matters, but a page that loads while its booking flow, payment handoff or lead notification fails is not fully working. The aim is to test the journeys that convert attention into an enquiry, order, registration or conversation.
Check the journeys, not just the homepage
Review the pathways that matter most on both desktop and mobile. Submit a real test through primary forms and confirm the notification reaches the right shared inbox or CRM. Follow calls to action through to their destination. Check key integrations after a provider or platform changes its settings. Crawl for broken internal and external links, redirects and pages returning errors. Monitor availability so an outage is visible before a customer is the first person to report it.
Test the main contact, booking, quote and checkout routes end to end.
Confirm consent, analytics and conversion events still record as intended.
Review domain, hosting, email and third party service renewal dates.
Log defects with a clear owner, impact and expected resolution date.
Make change traceable
Small edits become difficult to diagnose when nobody records them. Keep a lightweight change log for content releases, integrations, code changes and access changes. An agency can investigate a failure quickly when it knows what changed before it appeared. Internally, the team can see whether a requested change is a content correction, a planned improvement or an incident that needs immediate attention. Traceability is not bureaucracy; it shortens recovery and prevents the same fault from returning.
Keep the website safe
The second stream is security and recoverability. The exact work depends on the platform, but the principle is stable: reduce unnecessary access, keep dependencies current and ensure there is a usable route back if something goes wrong. Security is not a one time launch item because credentials, integrations and known vulnerabilities all change over time.
Treat access as a living inventory
List everyone and every service with access to the website, hosting, domain, analytics, tag manager, email delivery and connected tools. Remove accounts when people or suppliers leave, use role appropriate permissions and protect administrator accounts with multi factor authentication where available. The internal business owner should authorize who needs access; the agency should document technical access, flag excessive permissions and avoid sharing generic administrator credentials.
A backup matters only if it can restore
Confirm that backups run on a sensible schedule, are stored independently from the live environment and cover the files, database and configuration needed for recovery. Before applying major platform, plugin, dependency or integration updates, take a restorable backup and use a staging environment where the setup supports it. The agency should apply and validate technical updates; the internal owner should know where recovery authority sits and whom to contact if the site needs to be rolled back. A documented recovery route turns an incident into a managed interruption rather than an improvised scramble.
Keep the website fast
The third stream is performance. A site can launch quickly and still slow down as new images, embeds, fonts, experiments, tags and components accumulate. Performance drift is often gradual, so it escapes casual review until a campaign sends more traffic or a team notices lower engagement. Keeping the site fast is a continuing design and content discipline, not merely a developer task.
Performance drift starts quietly
Watch representative high value pages rather than relying on a single homepage test. Compare mobile and desktop behavior, because mobile visitors are often more exposed to slow networks and heavy scripts. Check whether a new media asset is appropriately sized, whether an embed is earning its loading cost and whether a vendor tag is still needed. Our Core Web Vitals and site speed guide explains the user centered signals worth monitoring; maintenance makes those signals part of routine decisions.
Put a performance gate around publishing
The internal content team can provide optimized source assets, follow image and video guidance, and tell the agency when a campaign needs new tools or tracking. The agency can review implementation, defer nonessential scripts, resolve layout shifts and investigate regressions after releases. Neither side can preserve speed alone. A simple pre publish check keeps everyday additions from quietly overriding the performance choices made at launch.
Keep the website true
The fourth stream is accuracy. Visitors treat published information as current, especially when it concerns services, availability, people, credentials, pricing, policies or how to get in touch. An otherwise polished site loses trust when it sends someone to a retired page, presents a former team member or asks a prospect to act on an outdated offer. Accuracy is a commercial responsibility as much as an editorial one.
Content is operational data
Assign a named internal owner to each content area that can change: commercial details, service pages, legal and policy copy, team profiles, case studies, vacancies and campaign landing pages. That owner does not need to make every update personally, but they must be responsible for confirming what remains correct. Use a review date for time sensitive pages and redirect or remove pages that no longer serve a purpose. A structured content audit helps distinguish pages worth improving from pages that should be consolidated or retired.
Protect the path to conversion
Truth also includes the practical details around conversion: the right phone number, the correct recipient for enquiries, an available calendar, current delivery information and valid promotional terms. When commercial teams change any of these, website updates should be part of the launch checklist for the change itself. The agency can implement and quality assure the update, but it cannot infer that a price, message or business decision has changed. Fast internal notification is what keeps a site trustworthy.
Set a cadence and divide ownership clearly
Maintenance works when it is scheduled, visible and shared. The internal team owns business truth, priorities and approvals. The agency owns agreed technical monitoring, implementation, QA and escalation. Some responsibilities are joint, particularly performance and conversion tracking, because content or campaign decisions can affect the technical outcome. Write the agreement down so routine work does not wait for an emergency and urgent work has a known route.
Weekly: confirm live journeys and incoming changes
Internal owner: flag commercial changes, review new enquiries or customer reports, and confirm that time sensitive information remains current. Agency: check uptime alerts, primary conversion routes, critical integrations and reported defects; then log fixes and escalations. This weekly pass should be brief. Its purpose is to catch a broken journey while the repair is still small.
Monthly: preserve system health
Internal owner: review priority service, team, offer and campaign pages; approve changes; and confirm user access still matches responsibilities. Agency: review updates, backup status, link errors, security signals, performance changes and analytics implementation; then test relevant changes before release. Use the monthly review to prioritize a short backlog rather than allowing small improvements to become an unowned list.
Quarterly: decide what the site must support next
Internal owner: bring upcoming launches, sales priorities, policy changes and customer feedback to the review. Agency: summarize recurring issues, technical risks, performance trends and recommended improvements. Together, decide which work belongs in routine maintenance and which needs a scoped project. If the site requires new pages, functionality or a broader repositioning, the agency responsible for website design and development can assess the work without confusing it with ordinary upkeep. That distinction keeps both budget and expectations clear.
A maintained site is easier to trust, easier to improve and less expensive to recover. Treat it as an operating asset with owners, checks and decisions, and launch becomes the beginning of a useful system rather than the end of a project.



