# Audeep audit report: setsquare.pages.dev

- **Grade:** A (99/100)
- **Target:** https://setsquare.pages.dev/
- **Tier:** quick
- **Audited:** 2026-08-21T15:18:22.263Z (UTC)
- **Pages crawled:** 1 (single page)
- **Observe-only:** Verified ✓. 0 write attempts, 42/42 requests to target

## Summary

1 evidence-backed finding: 0 critical, 0 high, 0 medium, 1 low.

By category: Functional 1.

### Report card

| Dimension | Grade | Score | Findings |
| --- | --- | --- | --- |
| Functional | A | 99/100 | 1 |
| Security | A | 100/100 | 0 |
| Accessibility | A | 100/100 | 0 |
| UX | A | 100/100 | 0 |
| Performance | A | 100/100 | 0 |
| SEO | A | 100/100 | 0 |
| Design | A | 100/100 | 0 |

## Product understanding

- Source: surface-observation
- Product: Not identified
- Category: unknown
- Summary: This report used the audited public surface without paid discovery context.

## Coverage

- Access: public
- Status: complete
- Rendered pages: 1/1
- Target requests: 42/80
- Synthetic signup completed: no
- Post-signup target writes: 0

## Observed actions

No target actions were recorded for this report.

## Safe stops

No safe stop was triggered.

## Cleanup and residue

- Status: not-required
- Summary: No synthetic account or target records were created by this audit.

## Finding verification

- 5bb4f120-6242-42da-8fef-e1783acf9174-console-error-0: evidence-backed (screenshot, console). The finding is tied to evidence captured during this audit.

## Headline finding

### [LOW] JavaScript errors fired during page load

- Category: Functional · Confidence: suspected · Type: `console-error`
- Detail: Loading the script 'https://static.cloudflareinsights.com/beacon.min.js' violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' https://checkout.razorpay.com". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback. The action 
- Evidence: `Loading the script 'https://static.cloudflareinsights.com/beacon.min.js' violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' https://checkout.razorpay.com". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback. The action `
- Screenshot: /audit-artifacts/5bb4f120-6242-42da-8fef-e1783acf9174/page.png
- Page: https://setsquare.pages.dev/

## All findings, grouped by severity

### LOW: 1 issue

#### 1. JavaScript errors fired during page load

- Severity: low · Category: Functional · Confidence: suspected · Type: `console-error`
- Detail: Loading the script 'https://static.cloudflareinsights.com/beacon.min.js' violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' https://checkout.razorpay.com". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback. The action 
- Evidence: `Loading the script 'https://static.cloudflareinsights.com/beacon.min.js' violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' https://checkout.razorpay.com". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback. The action `
- Screenshot: /audit-artifacts/5bb4f120-6242-42da-8fef-e1783acf9174/page.png
- Page: https://setsquare.pages.dev/

---

Generated by Audeep (observe-only QA audits) · report id 5bb4f120-6242-42da-8fef-e1783acf9174
