{"uid":"cap_20LmJJnI91viBEzycx87K","slug":"strale-api-http-header-security-check-c01864bb","name":"Strale API — HTTP Header Security Check","description":"The trust layer for AI agents — 250+ independently tested data capabilities across 27 countries. Execute capabilities via REST, MCP, A2A, or x402 micropayments. Every call returns an audit record with cryptographic chain hashing.","url":"https://api.strale.io/x402/v2/header-security-check","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET","HEAD","DELETE"],"type":"string"},"queryParams":{"type":"object","required":["url"],"properties":{"url":{"type":"string"}}}},"additionalProperties":false}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.054","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.054/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.054","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.054","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_pNJrAshBAEj_AkOFop8Du","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.054","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Analyzes the HTTP security headers of a given URL to assess its header-based security posture","exampleAgentPrompt":"Can you check the HTTP security headers for https://example.com using a GET request and tell me if anything important is missing or misconfigured?","exampleUseCases":[{"title":"Pre-deployment security header audit","prompt":"Before we launch our new site at https://staging.mycompany.com, can you check its HTTP security headers with a GET request and flag any missing ones like HSTS, CSP, or X-Frame-Options?"},{"title":"Third-party vendor security review","prompt":"I need to vet a new SaaS vendor — can you check the HTTP security headers on https://vendor-portal.example.com via GET to make sure they have basic header hygiene in place?"},{"title":"Ongoing compliance spot check","prompt":"Run a header security check on https://app.myplatform.io using GET and give me an auditable report I can include in our quarterly compliance review."}],"resultDescription":"Returns a structured JSON report detailing the HTTP security headers present or absent on the target URL, including assessment of headers such as HSTS, Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, and others. Each call also includes a cryptographic audit record with chain hashing for traceability and compliance purposes.","failureModes":["Invalid or unreachable URL — endpoint may return an error if the target site is down or the URL is malformed","Unsupported HTTP method — only GET, HEAD, and DELETE are accepted; POST or PUT will be rejected","Network timeout — if the target URL takes too long to respond, the check may fail","Payment failure — insufficient USDC balance will prevent the call from completing via x402"],"whenToPreferThis":"Choose this endpoint when you need a quick, auditable, cryptographically verifiable check of a website's HTTP security headers with a structured JSON output. It is ideal for compliance workflows, security reviews, or AI agent pipelines that require an audit trail. Prefer this over generic header-checking tools when you need built-in trust infrastructure, per-call audit records, and support for x402 micropayment billing.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T13:15:30.978Z","isFirstParty":false}