Checkpoint: Secure transport and public-data boundaries
Evidence required: current TLS configuration, security headers, form destinations, privacy notices, and a documented rule for what portfolio information may be public.
Pass/fail condition: Pass when public pages load securely, forms submit over secure connections, and confidential deal materials are not exposed through indexable pages or assets. Fail when transport is insecure, sensitive files are publicly discoverable, or the publication boundary is undocumented.
Severity: Critical. Owner: Engineering or site operations, with brokerage and legal review for confidentiality boundaries. Corrective action: Repair certificate or transport issues, remove unintentionally public files, document the public versus restricted data model, and route sensitive materials through the approved transaction process.
Validation step: Re-test public URLs, inspect rendered source and downloadable assets, and confirm with the deal team that public disclosures match current approval.
Checkpoint: Mobile rendering and interaction quality
Evidence required: device tests for core service, technology, portfolio, and contact pages, plus field data where available. Pass/fail condition: Pass when users can read technical content, inspect approved portfolio summaries, navigate, and contact the firm without broken layouts or blocked controls.
Fail when mobile rendering hides essential text, creates unusable forms, or prevents navigation. Severity: High. Owner: Front-end engineering and SEO. Corrective action: Fix responsive layouts, interaction targets, navigation, and resource loading based on observed failures rather than an assumed ranking shortcut.
Validation step: Re-test representative devices and confirm that conversion events still record correctly after deployment.
Checkpoint: Structured business and service data
Evidence required: rendered JSON-LD, visible organization details, service descriptions, and the schema vocabulary actually used. Pass/fail condition: Pass when structured data accurately mirrors visible public information and uses valid types supported by Schema.org.
Fail when markup invents credentials, misstates services, or labels the brokerage as a legal provider when that is not factually correct. Severity: High. Owner: Technical SEO with legal or brokerage review for entity and service descriptions.
Corrective action: Remove unsupported properties, align markup with visible content, and use the narrowest accurate organization and service descriptions. Validation step: Test syntax, compare markup against the live page, and manually verify every credential and service claim.
Checkpoint: Legacy listing and navigation integrity
Evidence required: crawl reports, server logs where available, redirect maps, internal links, and a list of retired portfolio URLs. Pass/fail condition: Pass when obsolete pages have an intentional disposition and users can reach current public portfolio or service information without broken navigation.
Fail when orphaned or broken URLs interrupt discovery, including unresolved 404 responses that should have a documented replacement. Severity: Medium. Owner: Technical SEO and web engineering. Corrective action: Restore valid pages, redirect superseded resources when there is a genuine successor, or leave an intentional not-found response when no replacement exists. Validation step: Re-crawl the site and confirm that repaired internal links lead to the intended current resource.