{"uid":"cap_DCHqgojOty_Mbfu2MFFEx","slug":"payai-license-scan-05744d9d","name":"PayAI License Scan","description":"License-compliance verdict for a whole dependency list or parsed manifest in one call. Accepts name-at-version strings, a parsed package.json, a requirements.txt list or go.mod imports, resolves each declared SPDX license, and returns a per-dependency plus aggregate verdict with the worst copyleft contamination point. Automated indicators, not legal advice.","url":"https://payai.agentstools.dev/license/scan","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"ecosystem":{"enum":["npm","pypi","go","maven","cargo","nuget"],"type":"string","description":"Default ecosystem for entries without one"},"dependencies":{"type":"array","items":{"type":"string"},"description":"Dependencies as name, name-at-version, or ecosystem-prefixed"},"distribution":{"enum":["saas","binary","internal"],"type":"string","description":"How you ship it (default saas)"},"target_license":{"type":"string","description":"Your project SPDX license"}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.15","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.15/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_y_PNSACPGbYJCrAEX7ryD","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.15","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans a full dependency list or package manifest for SPDX license compliance, returning per-dependency verdicts and an aggregate worst-case copyleft contamination assessment.","exampleAgentPrompt":"Scan these Python dependencies for license compliance: requests==2.31.0, flask==3.0.0, celery==5.3.4, sqlalchemy==2.0.20 — tell me if any have copyleft licenses and what the worst-case contamination is.","exampleUseCases":[{"title":"Pre-release OSS license audit","prompt":"Before we ship this release, scan our package.json dependencies for any GPL or other copyleft licenses that could contaminate our proprietary codebase and tell me the overall risk verdict."},{"title":"Go module compliance check","prompt":"Check my Go project's imports — github.com/gin-gonic/gin@v1.9.1, github.com/lib/pq@v1.10.7, go.uber.org/zap@v1.26.0 — for any restrictive licenses and flag which ones are copyleft."},{"title":"Open-source SaaS due diligence","prompt":"I'm evaluating a Python project before acquisition — scan these requirements: django==4.2.0, celery==5.3.4, redis==5.0.0, pillow==10.0.0, and tell me if there's any copyleft risk that could affect commercial use."}],"resultDescription":"Returns a per-dependency breakdown of resolved SPDX license names and compliance verdicts, plus an aggregate verdict indicating the worst copyleft contamination point across all scanned packages. Results are automated indicators and not legal advice.","failureModes":["Unknown or unlisted package versions may fail to resolve a license","Malformed manifest input (e.g. invalid JSON in package.json) returns a parse error","Private or internal package names not in public registries cannot be resolved","SPDX identifier unavailable for a dependency returns an unresolved status","Network or registry lookup timeouts may cause partial results"],"whenToPreferThis":"Use this endpoint when you need to scan an entire dependency manifest or list at once rather than checking packages one at a time. It is ideal for CI/CD pipeline compliance gates, pre-release audits, or M&A due diligence where you need a single aggregate worst-case copyleft verdict alongside per-package detail. Supports multiple ecosystem formats (npm, PyPI, Go modules) in a single call.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:54:09.756Z","isFirstParty":false}