Manifest position 469 · CrUX rank bucket 1000
https://m.easytrader.ir
Partial after retries
The public authentication, registration, and recovery surfaces were audited. Five checks are blocked because the primary trading and sensitive account flows require credentials and account state.
All 58 atomic check outcomes
| Principle / check | Status | Confidence | Evidence or reason |
|---|---|---|---|
respect-user-preferencesrespects-color-scheme | issues | high | Direct evidence recorded in finding(s) F01. F01 medium: The sign-in experience ignores the user’s dark-colour preference. |
respect-user-preferencesrespects-reduced-motion | pass | high | The reduced-motion probe reports zero active animations on the sign-in surface. |
respect-user-preferencesrespects-contrast | pass | high | Lighthouse contrast checks pass and controls remain visually distinguishable; no custom scrollbar or forced-colour-hostile styling was observed. |
implement-natural-interactionsview-transitions | pass | high | Navigation links use ordinary document navigation; changes are predictable and no jarring custom state swap was observed. |
implement-natural-interactionsscroll-driven-animations | pass | high | No scroll-linked animation is present, so no main-thread scroll-handler anti-pattern was observed. |
implement-natural-interactionsphysical-gestures | pass | high | The forms use native scrolling and controls; no custom gesture implementation fights platform behavior. |
provide-guided-navigationscroll-state-aware-chrome | pass | high | No affixed navigation chrome is present on these short form pages; scrolling remains unobstructed. |
provide-guided-navigationanchored-positioning | not-applicable | high | No tooltip, popover, or menu surface appears on the accessible authentication pages. |
provide-guided-navigationdirects-attention | pass | high | Clear labels, primary buttons, and back links maintain orientation across the three accessible account pages. |
maximize-content-reduce-noiseno-intrusive-interruptions | pass | high | Load screenshots show no popup, interstitial, or consent wall obscuring the forms. |
maximize-content-reduce-noisesemantic-dismissible-primitives | not-applicable | high | No overlay or disclosure component appears on the accessible authentication pages. |
maximize-content-reduce-noisereduced-chrome | pass | high | Screenshots show a focused form with restrained decoration and security guidance. |
adapt-to-the-form-factorresponsive-no-horizontal-scroll | pass | high | Layout at 390x844 reports scrollWidth 390, clientWidth 390, and zero horizontal overflow. |
adapt-to-the-form-factorcomponent-level-responsiveness | pass | high | Login, registration, and recovery forms reflow to the 390px viewport without clipping; responsive utility classes are present in rendered markup. |
adapt-to-the-form-factorinput-modality-aware | issues | high | Direct evidence recorded in finding(s) F02. F02 high: Keyboard access and focus treatment fail on security controls. |
support-core-task-successclear-purpose-and-primary-action | pass | high | Each accessible page has a prominent Persian task title and one visually dominant submit action. |
support-core-task-successprimary-flow-completion | blocked | high | Authentication and a funded account are required to inspect the trading application or complete this sensitive journey; no credentials were provided. |
support-core-task-successclear-system-state-and-recovery | pass | high | Required-field messages appear after submit and forgot-password/back paths are visible, although announcement defects are recorded separately. |
be-fast-and-stablegood-core-web-vitals | issues | high | Direct evidence recorded in finding(s) F04. F04 high: The authentication entry is very slow to become useful. |
be-fast-and-stablevisual-stability | pass | high | Layout observer measured CLS 0 and Lighthouse measured CLS 0.001. |
be-fast-and-stableefficient-main-thread | issues | high | Direct evidence recorded in finding(s) F04. F04 high: The authentication entry is very slow to become useful. |
be-fast-and-stableefficient-resource-delivery | issues | high | Direct evidence recorded in finding(s) F05. F05 high: Script, cache, and render-blocking costs are disproportionate for a login form. |
be-fast-and-stabletrim-unused-and-duplicate-code | issues | high | Direct evidence recorded in finding(s) F05. F05 high: Script, cache, and render-blocking costs are disproportionate for a login form. |
be-inclusivenames-roles-labels | issues | high | Direct evidence recorded in finding(s) F02. F02 high: Keyboard access and focus treatment fail on security controls. |
be-inclusivesufficient-contrast | pass | high | Lighthouse color-contrast audit passed and the screenshots show legible foreground/background pairs. |
be-inclusivestructure-and-focus | issues | high | Direct evidence recorded in finding(s) F11, F02. F11 medium: The document lacks semantic heading structure. F02 high: Keyboard access and focus treatment fail on security controls. |
be-inclusivelegible-text | pass | high | Persian labels and guidance are readable without clipping at 390px. |
be-inclusivezoom-reflow-targets-and-media | issues | high | Direct evidence recorded in finding(s) F03. F03 high: Mobile zoom is explicitly disabled. |
follow-best-practicesno-console-errors | pass | high | Lighthouse recorded no browser console errors. |
follow-best-practicessound-document-and-assets | issues | high | Direct evidence recorded in finding(s) F13. F13 low: Document and platform hygiene have avoidable defects. |
follow-best-practicesbrowser-platform-hygiene | issues | high | Direct evidence recorded in finding(s) F13. F13 low: Document and platform hygiene have avoidable defects. |
be-discoverabletitle-and-description | issues | high | Direct evidence recorded in finding(s) F08. F08 medium: The public authentication surface has weak crawler and sharing metadata. |
be-discoverablecrawlable-and-mobile-friendly | pass | high | Visible links use real href values, viewport metadata exists, and link text is descriptive; zoom restriction is tracked under inclusion. |
be-discoverablecanonical-and-indexing-signals | issues | high | Direct evidence recorded in finding(s) F08. F08 medium: The public authentication surface has weak crawler and sharing metadata. |
be-discoverablestructured-and-shareable-metadata | not-applicable | high | The authentication form is not an article, product, event, or other rich entity requiring schema.org data; basic sharing metadata is judged separately. |
be-private-and-securesecure-transport-and-headers | issues | high | Direct evidence recorded in finding(s) F07, F06. F07 high: Browser security policy is incomplete and the CSP permits unsafe script execution. F06 high: Analytics and cookie defaults expose more user data than necessary on a sensitive sign-in path. |
be-private-and-securedata-minimisation-and-third-parties | issues | high | Direct evidence recorded in finding(s) F06. F06 high: Analytics and cookie defaults expose more user data than necessary on a sensitive sign-in path. |
be-private-and-securein-context-permissions-and-modern-auth | issues | high | Direct evidence recorded in finding(s) F10. F10 high: The sign-in form disables password-manager and autofill support. |
be-private-and-securedefensive-browser-policies | issues | high | Direct evidence recorded in finding(s) F07. F07 high: Browser security policy is incomplete and the CSP permits unsafe script execution. |
be-resilientprogressive-enhancement | issues | high | Direct evidence recorded in finding(s) F12. F12 medium: The unauthenticated route does not progressively expose its purpose. |
be-resilientresilient-runtime-behaviour | pass | high | DOM, screenshot, Lighthouse, and targeted evaluate probes on the login, registration, and recovery surfaces. |
be-resilientoffline-and-installable | not-applicable | high | A regulated real-time trading service is intrinsically online; an installable/offline transaction flow is not appropriate, though failure recovery remains relevant. |
be-resilientnetwork-and-http-failure-states | blocked | high | Authentication and a funded account are required to inspect the trading application or complete this sensitive journey; no credentials were provided. |
be-internationalisedlang-dir-and-logical-properties | pass | high | The rendered document declares lang="fa" and body dir="rtl"; Persian reading order is correct on all screenshots. |
be-internationalisedlocale-aware-data | blocked | high | Authentication and a funded account are required to inspect the trading application or complete this sensitive journey; no credentials were provided. |
be-internationalisedtime-zone-correctness | blocked | high | Authentication and a funded account are required to inspect the trading application or complete this sensitive journey; no credentials were provided. |
be-trustworthyno-dark-patterns | pass | high | No confirmshaming, forced continuity, consent nag, disguised advertising, or preselected commercial option appears on accessible account pages. |
be-trustworthyhumane-error-handling | issues | high | Direct evidence recorded in finding(s) F09. F09 high: Sign-in error feedback is not announced to assistive technology. |
be-trustworthytrustworthy-input-assistance | issues | high | Direct evidence recorded in finding(s) F10. F10 high: The sign-in form disables password-manager and autofill support. |
be-trustworthysafe-commercial-and-account-flows | blocked | high | Authentication and a funded account are required to inspect the trading application or complete this sensitive journey; no credentials were provided. |
be-sustainableoptimised-assets | pass | high | Only two small SVG logos are used; no oversized raster media was found. |
be-sustainableno-wasteful-work | issues | high | Direct evidence recorded in finding(s) F14. F14 medium: The page performs substantial nonessential background and third-party work. |
be-sustainablethird-party-and-media-budget | issues | high | Direct evidence recorded in finding(s) F06, F14. F06 high: Analytics and cookie defaults expose more user data than necessary on a sensitive sign-in path. F14 medium: The page performs substantial nonessential background and third-party work. |
be-agent-readystructured-agent-capabilities | not-applicable | high | No declared agent-facing surface exists, and exposing trading/authentication actions to agents is not assumed safe or intended. |
be-agent-readyon-device-inference | not-applicable | high | The sign-in and account-recovery surfaces have no inference use case where built-in AI would improve the task. |
be-memory-efficientno-leak-under-repeated-interaction | pass | low | After 10 repeated password-visibility open/close cycles, the post heap was 9.14MB; growth is bounded and no continuing interaction-time accumulation was observed in this short test. |
be-memory-efficientbounded-footprint | pass | low | Baseline heap totals are 190,291 nodes and 8.57MB self size, proportionate to the loaded app/auth bootstrap. |
be-memory-efficientno-detached-dom-or-unbounded-listeners | pass | low | Heap summaries contain no Detached* constructor among reported populations after repeated password visibility toggles. |
Provenance
Canonical report: results/atomic/reports/0469-m_easytrader_ir.json
Report SHA-256: 8a219dc54ec11b3b61e983b0383a0ba5aed60a4106cad908993721d4d1e573ae
Local retained report: runs/2026-07-17T17-27-24-856Z/atomic-reports/m_easytrader_ir/2026-07-27T23-57-53-815Z/report.json
Local evidence root: runs/2026-07-17T17-27-24-856Z/atomic-reports/m_easytrader_ir/2026-07-27T23-57-53-815Z
Catalog SHA-256: sha256:78ccfdb2d483f4c57d9dafed80fd86c6265585a56457c8dcfddc254b80fb44d7
Raw screenshots, HARs, traces, heaps, and other browser artifacts are retained at the local evidence root and intentionally are not committed. Artifact paths in the canonical report are relative to that root.