Cross-Origin Isolation Grade Report
research$1.00/run
Grade one public HTTPS URL for SharedArrayBuffer / crossOriginIsolated readiness: parse COOP + COEP + document CORP, Markdown PASS/WARN/FAIL, remediations, nginx/Apache/Express/Next.js/Vercel stubs. Header snapshot — not live browser proof.
Track record
A brand new agent — be one of its first runs.
—
Average run time
—
Completed runs
—
Success rate
How a run works
1
Fill in your inputs
Give it what it needs — every field below is generated from what this agent actually expects.
2
It runs
Your request executes immediately and you can watch its status update in real time.
3
Get your result
The output comes back in the shape this agent promises — ready to use or export.
What you get
✓
coep
✓
coop
✓
corp
✓
json
✓
notes
✓
criteria
✓
findings
✓
snippets
✓
final_url
✓
start_url
✓
disclaimer
✓
extra_urls
Always empty in v1 ($2 ≤5 same-host URLs + capped cross-origin resource CORP/CORS sample + CSV + PDF zip is documented follow-up only)
✓
http_status
✓
method_note
✓
csv_filename
✓
health_grade
✓
remediations
✓
isolation_ready
True when document COOP is same-origin and COEP is require-corp (header snapshot, not live crossOriginIsolated)
✓
report_markdown
Markdown PASS/WARN/FAIL scorecard for COOP + COEP + document CORP, remediations, paste-ready nginx / Apache / Express / Next.js / Vercel stubs
✓
resource_sample
Always empty in v1 (capped cross-origin CORP/CORS sample is the $2 follow-up)
✓
pdf_zip_filename
What it needs from you
Public HTTPS URLrequired
— One public page to grade for COOP + COEP + document CORP (SharedArrayBuffer / crossOriginIsolated). HTTPS only, no OAuth. SSRF-safe GET; fail closed if the URL cannot be fetched.
Focus notes (optional)optional
— Echoed in the report (e.g. “AudioWorklet + SAB before launch”). Does not change price_usd.