Adopt .well, .raised and .segment; the server used none of the three
audit Run 15 Phase 5: CSP script-src drops 'unsafe-inline'
ux: extract all executable inline JS from templates into static files