We ran a broken-website pass over eight local sites in the Oklahoma City area. Three of those sites have detailed audit files with evidence we can publish in anonymized form. This entry uses those three and does not infer anything about the other five.
What we looked at
The audits opened each homepage at a phone-sized width, followed the main contact path, checked visible Google Business profile categories and map-pack placement, and read the review dates that were actually available. One audit stopped as soon as the homepage showed signs of compromise, so it did not continue into mobile, profile, or review checks.
What broke
Two of the three detailed audits found horizontal overflow on a phone-sized viewport. In one case the document was about twice as wide as the phone, the phone number wrapped into three lines, and the main call button was clipped. In the other, the page was substantially wider than the screen and exposed a horizontal scrollbar. A separate contact anchor also landed underneath a sticky header, covering the heading a visitor was meant to reach.
One contact link displayed a valid-looking email address but its mailto target omitted the @, so clicking it did not address the destination shown on the page. Another primary shopping call to action crossed into a separate commerce property with different site chrome. The handoff worked as a link, but it broke the continuity of the customer path.
One local profile comparison found a service category on a competing listing that was absent from the audited listing. The other profile checks did not establish a category gap. Review recency was also only partly measurable: many dates were hidden, and some comparison searches timed out. We recorded the visible counts and readable dates without turning missing observations into a claim about review performance.
The security stop was concrete. One homepage contained dozens of casino and game links hidden in several paragraphs with one-pixel white text. The page also loaded an injected external script. The spam was invisible to an ordinary visitor but present in the page content, so the audit stopped there.
The pattern
The failures clustered where a local customer acts: fitting the page onto a phone, reaching the contact section, following a purchase or service path, and finding the business through a local profile. They were maintenance and visibility failures on brochure sites, not evidence that a new build was needed. The one compromised homepage added a different class of risk, hidden search spam that visitors could miss while crawlers still saw it.
The source supports those categories and no more. Five of the eight sites in the scan do not have detailed audit evidence in the files we read, so this entry makes no claim about what was broken on them.