Manifest position 552 · CrUX rank bucket 1000

https://xhopen.com

Coverage complete

Atomic coverage complete. The site intermittently returned bare 503 pages during direct navigation; successful DOM, runtime, network, heap, and Lighthouse captures were retained and the failure state is itself reported.

Attempts
1 / 3
Judged checks
58 / 58
Blocked
0
Not run
0
This report has no published overall score. Blocked and not-run checks are not passes. A coverage-complete report means every check has a judged outcome; it does not mean every check passed.

All 58 atomic check outcomes

Principle / checkStatusConfidenceEvidence or reason
respect-user-preferences
respects-color-scheme
passmediumEvaluate under the host dark preference found the dark class and light text; inline bootstrap code explicitly reads prefers-color-scheme.
respect-user-preferences
respects-reduced-motion
issueshighThe reduced-motion probe matched prefers-reduced-motion: reduce but still found eight running 2-second shimmer animations; static CSS inspection found no reduced-motion rule.
F001 medium: Motion continues when reduced motion is requested
respect-user-preferences
respects-contrast
issueshighLighthouse measured age-verification text at 2.15:1 and 1.75:1, metadata at 3.29:1, and an inline link at only 1.28:1 against surrounding text.
F002 high: Important text and controls fail contrast requirements
implement-natural-interactions
view-transitions
issueshighRendered/source probes found no view-transition CSS or transition declarations on four representative templates, despite a navigation-heavy MPA.
F003 low: Route and state changes do not use deliberate view transitions
implement-natural-interactions
scroll-driven-animations
not-applicablehighNo scroll-linked animation was present on the representative templates, so there is no implementation to assess.
implement-natural-interactions
physical-gestures
not-applicablehighNo custom swipe, pull, carousel, or other gesture-driven interaction was exposed in the audited states.
provide-guided-navigation
scroll-state-aware-chrome
issueshighThe home template is a long listing, but source inspection found no scroll-state query, scroll timeline, progress affordance, or other scroll-aware chrome.
F004 low: The long listing has no scroll-position guidance
provide-guided-navigation
anchored-positioning
not-applicablehighNo tooltip or edge-attached popover requiring anchor positioning was present in the audited states.
provide-guided-navigation
directs-attention
issueshighThe home template is a long listing, but source inspection found no scroll-state query, scroll timeline, progress affordance, or other scroll-aware chrome.
F004 low: The long listing has no scroll-position guidance
maximize-content-reduce-noise
no-intrusive-interruptions
passmediumThe successfully rendered home DOM had no dialog/popover and exposed its H1 and listing immediately; age and cookie notices remained ancillary.
maximize-content-reduce-noise
semantic-dismissible-primitives
issueshighThe signup probe found a div with role=dialog and aria-modal=true rather than a native dialog; no dialog, popover, or details primitives were present in captured templates.
F005 medium: The signup modal is an ad-hoc dialog container
maximize-content-reduce-noise
reduced-chrome
passmediumThe home probe exposed a main content landmark and “Trending Free Porn Videos” H1 with the content listing as the dominant structure.
adapt-to-the-form-factor
responsive-no-horizontal-scroll
passmediumLighthouse rendered the mobile template at 412px without a horizontal-overflow audit failure; the effective viewport meta was present.
adapt-to-the-form-factor
component-level-responsiveness
issueshighAcross home, ranking, shorts, and signup templates, static CSS evidence found no container-type or @container rules.
F006 low: Reusable cards only adapt at viewport level
adapt-to-the-form-factor
input-modality-aware
issueshighProgrammatic focus showed no visible outline or shadow on the search input/button, and Lighthouse found an obscured/overlapping interactive target with 0px safe spacing.
F007 high: Keyboard focus and touch-target affordances are insufficient
support-core-task-success
clear-purpose-and-primary-action
passmediumThe first rendered state names the purpose “Trending Free Porn Videos” and exposes search, videos, categories, and content links.
support-core-task-success
primary-flow-completion
issueshighRepeated direct navigations during screenshot and signup interaction attempts returned a plain 503 nginx page with no retry, back, or status guidance, while other attempts succeeded.
F008 high: Intermittent failures end in a bare server error with no recovery
support-core-task-success
clear-system-state-and-recovery
issueshighRepeated direct navigations during screenshot and signup interaction attempts returned a plain 503 nginx page with no retry, back, or status guidance, while other attempts succeeded.
F008 high: Intermittent failures end in a bare server error with no recovery
be-fast-and-stable
good-core-web-vitals
issueshighLighthouse measured LCP at 3.1s and FCP at 2.4s; the root response alone took 846ms. A desktop trace was faster at 1.11s LCP, showing condition-sensitive performance.
F009 medium: Mobile LCP misses the good threshold
be-fast-and-stable
visual-stability
passmediumBoth layout observation and Lighthouse measured CLS 0 during load.
be-fast-and-stable
efficient-main-thread
passmediumThe trace measured 105.6ms TBT with two long tasks, while mobile Lighthouse measured 0ms TBT; neither indicates sustained blocking.
be-fast-and-stable
efficient-resource-delivery
issueshighLighthouse estimated 1,180ms savings from render-blocking CSS and 114KiB from longer cache lifetimes; HAR recorded 142 requests and 1.73MB transferred.
F010 medium: Critical delivery includes long render-blocking and weakly cached work
be-fast-and-stable
trim-unused-and-duplicate-code
issueshighLighthouse estimated 26KiB unused JavaScript and 56KiB unused CSS; HAR recorded 62 script requests and about 997KB of script transfer.
F011 medium: The page ships avoidable script and style work
be-inclusive
names-roles-labels
issueshighLighthouse found an unnamed button, thumbnail names that omit visible duration text, and a list with invalid direct children.
F012 high: Controls and content structures have accessibility-tree defects
be-inclusive
sufficient-contrast
issueshighLighthouse measured age-verification text at 2.15:1 and 1.75:1, metadata at 3.29:1, and an inline link at only 1.28:1 against surrounding text.
F002 high: Important text and controls fail contrast requirements
be-inclusive
structure-and-focus
issueshighThe focus probe found no visible focus treatment on key search controls, and Lighthouse found invalid list structure and an inappropriate button role on a list item.
F013 high: Focus and semantic structure are unreliable
be-inclusive
legible-text
passmediumThe DOM uses real headings/landmarks and Lighthouse did not flag text sizing or clipping; specific contrast failures are recorded separately.
be-inclusive
zoom-reflow-targets-and-media
issueshighLighthouse found user-scalable=no in the effective mobile viewport meta and a target with no safe clickable spacing.
F014 high: Mobile zoom is explicitly disabled and a target is obstructed
follow-best-practices
no-console-errors
passmediumLighthouse’s console-errors audit passed with no browser errors logged.
follow-best-practices
sound-document-and-assets
issueshighThe images primitive found 29 of 36 images without both dimensions and 12 rendered at less than half their natural width; Lighthouse corroborated unsized images.
F015 medium: Many images lack intrinsic dimensions or are oversized
follow-best-practices
browser-platform-hygiene
passmediumLighthouse best-practices scored 1.0; probes found no permission prompt on load, a valid doctype, and no exposed secret.
be-discoverable
title-and-description
passmediumHome, best, shorts/age, and signup DOM captures had descriptive titles; home had a substantive meta description.
be-discoverable
crawlable-and-mobile-friendly
issueshighLighthouse found user-scalable=no in the effective mobile viewport meta and a target with no safe clickable spacing.
F014 high: Mobile zoom is explicitly disabled and a target is obstructed
be-discoverable
canonical-and-indexing-signals
passmediumThe main response was HTTP 200, home declared a canonical URL, and robots.txt allowed the principal public surfaces.
be-discoverable
structured-and-shareable-metadata
issueshighThe home probe found no JSON-LD and no Open Graph properties even though the page exposes a large media catalog.
F016 low: The public rich-content listing lacks entity and share metadata
be-private-and-secure
secure-transport-and-headers
issueshighHeaders lacked X-Content-Type-Options and Referrer-Policy; CSP only declared frame-ancestors. Four of five cookies were flagged, including non-Secure settings, x_csrf_token, and g_state cookies.
F017 high: Cookie and response defenses are incomplete
be-private-and-secure
data-minimisation-and-third-parties
issueshighHAR recorded 116 third-party requests and 1.54MB third-party transfer across 11 origins, including ad/recommendation endpoints carrying a persistent stats UID and browsing context.
F018 high: The initial page has a broad third-party and analytics footprint
be-private-and-secure
in-context-permissions-and-modern-auth
issueshighThe signup route exposed Google, X, and email options; rendered/source probes found no enabled WebAuthn or passkey authentication path.
F019 medium: Account entry offers federated and email sign-up but no phishing-resistant passkey path
be-private-and-secure
defensive-browser-policies
issueshighHeaders lacked X-Content-Type-Options and Referrer-Policy; CSP only declared frame-ancestors. Four of five cookies were flagged, including non-Secure settings, x_csrf_token, and g_state cookies.
F017 high: Cookie and response defenses are incomplete
be-resilient
progressive-enhancement
issueshighThe signup document noscript fallback says “JavaScript is required for this website” rather than preserving the account flow, despite substantial server-rendered content.
F020 high: Core interaction explicitly requires JavaScript
be-resilient
resilient-runtime-behaviour
issueshighRepeated direct navigations during screenshot and signup interaction attempts returned a plain 503 nginx page with no retry, back, or status guidance, while other attempts succeeded.
F008 high: Intermittent failures end in a bare server error with no recovery
be-resilient
offline-and-installable
passmediumThe page links a manifest and has an active scoped service worker; its script contains cache, fetch, respondWith, and offline handling.
be-resilient
network-and-http-failure-states
issueshighRepeated direct navigations during screenshot and signup interaction attempts returned a plain 503 nginx page with no retry, back, or status guidance, while other attempts succeeded.
F008 high: Intermittent failures end in a bare server error with no recovery
be-internationalised
lang-dir-and-logical-properties
issueshighThe page links to roughly 40 locale hosts and sets lang=en, but omits dir and captured CSS uses almost no logical properties while relying on physical layout rules.
F021 medium: The many localized variants are not built on robust bidi/logical layout foundations
be-internationalised
locale-aware-data
not-applicablehighThe audited public states did not render dates, currency, calendars, or locale-sensitive numbers requiring formatting.
be-internationalised
time-zone-correctness
not-applicablehighThe audited states expose no event, scheduling, or time-zone-sensitive workflow.
be-trustworthy
no-dark-patterns
passmediumSignup clearly disclosed public-data use, Terms and Privacy links, age-verification context, and the cookie copy described both Accept and Reject outcomes.
be-trustworthy
humane-error-handling
not-applicablehighThe visible signup state used provider/action choices rather than editable fields, and the only other form was optional search with no required-field error state.
be-trustworthy
trustworthy-input-assistance
not-applicablehighNo address, payment, sign-in, or sign-up data-entry fields were rendered in the audited signup state; provider buttons handled entry.
be-trustworthy
safe-commercial-and-account-flows
passmediumThe signup state presented login, Google, X, and email paths and disclosed account-data and age-verification consequences before action.
be-sustainable
optimised-assets
issueshighThe images primitive found 12 oversized images, 16 legacy-format URLs, 3 images without srcset, and 8 below-fold images without lazy loading.
F022 medium: Media assets are not consistently right-sized
be-sustainable
no-wasteful-work
issueshighThe home load made 142 requests, transferred 1.73MB, ran 62 script requests, and sent 116 requests to third-party origins before user interaction.
F023 medium: Initial loading performs disproportionate script and third-party work
be-sustainable
third-party-and-media-budget
issueshighHAR recorded 116 third-party requests and 1.54MB third-party transfer across 11 origins, including ad/recommendation endpoints carrying a persistent stats UID and browsing context. The home load made 142 requests, transferred 1.73MB, ran 62 script requests, and sent 116 requests to third-party origins before user interaction.
F018 high: The initial page has a broad third-party and analytics footprint
F023 medium: Initial loading performs disproportionate script and third-party work
be-agent-ready
structured-agent-capabilities
not-applicablehighNo developer intent for agent-facing capabilities is declared; for this emerging principle, absence is not a failure.
be-agent-ready
on-device-inference
not-applicablehighNo user task in the audited catalog, age gate, or signup states clearly benefits from on-device inference, and no intent is declared.
be-memory-efficient
no-leak-under-repeated-interaction
passmediumAfter ten bottom/top scroll cycles, heap self-size was 818,380 bytes versus 755,016 at baseline (8.4%); no Detached constructor appeared. The bounded increase does not show unbounded retention.
be-memory-efficient
bounded-footprint
passmediumThe baseline heap summary was modest for the media listing: 26,389 nodes and 755,016 self-size bytes.
be-memory-efficient
no-detached-dom-or-unbounded-listeners
passmediumNeither baseline nor post-scroll heap summaries contained a Detached constructor; closure count rose modestly from 1,803 to 1,875 after the bounded interaction.

Provenance

Canonical report: results/atomic/reports/0552-xhopen_com.json
Report SHA-256: 58cb66a17908ac78f82f2ee8e0341d8036b7c53c26a7d369e5e657eb7a1b025c
Local retained report: runs/2026-07-17T17-27-24-856Z/atomic-reports/xhopen_com/2026-07-21T12-55-39-427Z/report.json
Local evidence root: runs/2026-07-17T17-27-24-856Z/atomic-reports/xhopen_com/2026-07-21T12-55-39-427Z
Catalog SHA-256: sha256:78ccfdb2d483f4c57d9dafed80fd86c6265585a56457c8dcfddc254b80fb44d7

Raw screenshots, HARs, traces, heaps, and other browser artifacts are retained at the local evidence root and intentionally are not committed. Artifact paths in the canonical report are relative to that root.