01. Context & MotivationResearch Context & Problem Framing
Network-layer quality deficiencies (redundant requests, missing cache headers, oversized payloads, excessive third-party scripts) are rarely tested systematically, and carry direct security implications including cache poisoning and supply-chain attack surface expansion.
02. Methodology & System DesignMethodology & Implementation
Built a Playwright-based browser instrumentation framework capturing full HTTP traffic across 18 production sites in 11 categories. Applied 8 heuristic anti-pattern detectors producing a composite 0–100 quality score. Linked API-layer deficiencies to security risks with reproducible open-source artifact.
03. Empirical Findings & EvidenceFindings & Key Results
Found one site making 2,684 requests/page (447× the minimum). Redundant API calls and missing cache headers each affect 67% of sites; third-party overhead exceeds 20% on 72% of sites. Mean composite score 76.9 (range 56.8–100).
04. Topics & Methodology StackPython 3.10+PlaywrightNode.js 18+HAR AnalysisSecurity Heuristics