{"uid":"cap_3OP_Zv4rK31APfB2olXpL","slug":"orcpin-door-report-x402-endpoint-audit-9bc49f47","name":"Orcpin Door Report — x402 Endpoint Audit","description":"Signed four-part audit of one x402 endpoint, by buying from it: the quote (what the 402 asks, and whether the seller's manifest and public catalog agree), real purchases with Orcpin's audit wallet (quoted vs signed vs settled vs chain vs delivered; replay and bad-payment behaviour), the door's inbound books from the chain (settlements, revenue, distinct and repeat payers), and unit cost against priced doors listed. Ed25519-signed and logged; facts, no verdict. No purchase settled, no charge.","url":"https://orcpin.dev/v1/door-report?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"url":{"type":"string","description":"The x402 endpoint to audit — a public http(s) URL that answers an unpaid request with a 402 challenge."},"body":{"type":"object","description":"JSON body to send to a POST door (the request an agent would actually make). Implies method POST."},"method":{"enum":["GET","POST"],"type":"string","description":"The door's verb. Default: GET, retried as POST if GET looks like the wrong verb."},"purchases":{"type":"integer","description":"Real purchases to make, 1–5. Default 3. Their total must fit the audit's purchase budget."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"50","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$50/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"50","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"50","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_o4mui_3Nl4_gDMxZjdr4r","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"50","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Performs a signed four-part audit of an x402 endpoint by actually purchasing from it: validating the quote, making real purchases, analyzing on-chain settlement records, and benchmarking unit cost.","exampleAgentPrompt":"Run a full Orcpin door-report audit on https://example.com/api/premium-data — use GET method and make 3 real purchases — I want the signed four-part report covering the quote, actual purchases, on-chain settlements, and cost benchmark.","exampleUseCases":[{"title":"Pre-integration x402 endpoint due diligence","prompt":"Before I integrate this x402 API at https://api.someservice.io/data into my agent, can you run a full Orcpin audit on it with 3 purchases using GET so I can see if the quote matches the manifest, payments actually settle on-chain, and the content is reliably delivered?"},{"title":"Replay attack and bad-payment behavior check","prompt":"I want to know if the x402 door at https://paywall.myapi.dev/endpoint handles replay attacks and bad payments correctly — run a 3-purchase Orcpin door-report audit on it via GET and give me the signed results."},{"title":"Cost benchmarking a POST x402 endpoint","prompt":"Audit this POST x402 endpoint at https://infer.aiservice.com/generate for me — send {\"prompt\": \"hello world\"} as the body, make 2 purchases, and give me the Orcpin cost benchmark showing how its unit price compares to other listed doors."}],"resultDescription":"An Ed25519-signed four-part audit report covering: (1) quote validation — what the 402 challenge asked and whether it matches the seller's manifest and public catalog; (2) real purchase results — comparison of quoted vs signed vs settled vs chain-confirmed vs delivered values, plus replay and bad-payment behavior; (3) on-chain inbound settlement records — settlements, revenue, distinct and repeat payer counts; (4) unit cost benchmark against other priced x402 doors. Factual findings only, no verdict. No net charge if no purchase settled.","failureModes":["Target URL does not return a 402 challenge on unpaid request — audit cannot proceed","x402 endpoint unreachable or times out during purchase attempts","Purchases exceed the audit's internal purchase budget (max 5 purchases, must fit budget)","Invalid URL format or non-HTTP(S) scheme provided","POST body provided but endpoint only accepts GET (or vice versa) and auto-retry fails","On-chain settlement data unavailable or RPC errors during chain verification","Audit wallet has insufficient funds to complete the requested number of purchases"],"whenToPreferThis":"Choose this endpoint when you need a cryptographically signed, factual audit of an x402 payment endpoint — especially before integrating it into an agent workflow, when evaluating a new x402 API marketplace listing, when investigating whether a door correctly delivers content after payment, or when checking replay-attack and bad-payment handling. Prefer this over lighter-weight preflight or reliability checks when you need full purchase-cycle verification with on-chain settlement confirmation and cost benchmarking.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-03T12:30:56.803Z","isFirstParty":false,"canonicalSlug":"orcpin-door-report-x402-endpoint-audit-9bc49f47"}