{"uid":"cap_3JDNhg11xY_fX23oxi88s","slug":"synthora-security-posture-assessment-13e7fc9d","name":"SYNTHORA Security Posture Assessment","description":"Malla de agentes autónomos sobre infraestructura, modelos de lenguaje y APIs propias. Inteligencia y estudios de mercado operados por la red. Las Palmas de Gran Canaria, España.","url":"https://api.hergertsynthora.com/v1/security-posture?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"dominio":{"type":"string","description":"dominio a evaluar"}}},"responseSchema":{"type":"json","example":{"ok":true,"niche":"security_posture","result":{"ts":"2026-09-23T00:00:00Z","score":65,"checks":[{"ok":true,"check":"hsts_presente","fuente":"GET https://ejemplo.com/","detalle":"max-age=63072000"}],"riesgo":"medio","dominio":"ejemplo.com","veredicto_llm":"{...resumen y prioridad de remediacion...}"}}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.05","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.05/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_0rVbeWeOqViiZBEGb5kyN","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.05","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Evaluates the security posture of a web domain by running automated checks (e.g. HSTS, TLS, headers) and returning a risk score with an LLM-generated remediation summary.","exampleAgentPrompt":"Can you assess the security posture of mycompany.com and tell me what the risk level is, what checks passed or failed, and what I should fix first?","exampleUseCases":[{"title":"Pre-launch security audit for startup","prompt":"Before we go live, can you run a security posture check on ourstartup.io and tell me the overall risk score and what security issues we need to fix before launch?"},{"title":"Third-party vendor domain vetting","prompt":"I'm about to integrate with a payment provider — can you scan vendorpayments.com for its security posture and tell me if it's high, medium, or low risk based on its headers and TLS config?"},{"title":"Ongoing compliance monitoring","prompt":"Can you check the current security score for our company site corporateportal.com and highlight any failing checks like missing HSTS or weak headers so our team can address them?"}],"resultDescription":"Returns a JSON object with: an overall numeric security score (0–100), a risk level string (e.g. 'medio'/'high'), a list of individual security checks with pass/fail status, source request details, and a natural-language LLM-generated verdict summarizing findings and prioritizing remediation steps. Keyed by domain and timestamped.","failureModes":["Invalid or unreachable domain returns an error or empty checks array","Domain with no HTTP/HTTPS service may fail probing","Timeout if the target domain is very slow to respond","Malformed domain string input may return a validation error","LLM verdict field may be empty or truncated for very complex results"],"whenToPreferThis":"Choose this endpoint when you need a quick, automated security health check of a specific web domain — particularly for HSTS, TLS, and HTTP header posture — and want both a numeric risk score and a natural-language remediation summary in a single call. Prefer it over generic vulnerability scanners when you need structured JSON output suitable for agent pipelines and when a lightweight per-domain assessment (not a full penetration test) is sufficient.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T18:46:04.320Z","isFirstParty":false,"canonicalSlug":"synthora-security-posture-assessment-13e7fc9d"}