{"uid":"cap_DgnyE3L6Bndtr__KhnOTz","slug":"x402-endpoint-risk-report-a858c591","name":"x402 Endpoint Risk Report","description":"Score an x402 paid resource for payment safety, discovery completeness, replay/binding risk, and autopay suitability before an agent spends. Returns JSON. Price 0.15 USDC on Base via x402. Demo/preview: https://x402-endpoint-risk-corpus.mtree.workers.dev/demo/risk_report. Contact: https://x402-endpoint-risk-corpus.mtree.workers.dev/contact.","url":"https://x402-endpoint-risk-corpus.mtree.workers.dev/v1/x402/risk_report","method":"POST","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method","bodyType","body"],"properties":{"body":{"type":"object","required":["url"],"properties":{"url":{"type":"string","format":"uri","description":"x402 paid endpoint URL to assess"}}},"type":{"type":"string","const":"http"},"method":{"enum":["POST"],"type":"string"},"bodyType":{"enum":["json","form-data","text"],"type":"string"}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":{"request":{"input":{"body":{"url":"https://api.example.com/v1/data"},"type":"http","method":"POST","bodyType":"json"}},"response":{"ok":true,"url":"https://api.example.com/v1/data","risks":["missing_pay_to_in_catalog","missing_network_metadata","zero_or_missing_price","missing_agent_card","missing_openapi","missing_x402_discovery_alias","thin_description","class_check_required_authorization_binding","class_check_replay_window","class_check_paid_but_denied"],"evidence":{"url":"https://api.example.com/v1/data","source":"paid-lookup","fetched":{"x402":false,"origin":"https://api.example.com","openapi":false,"statuses":{"x402":{"ok":false,"status":530,"contentType":"text/plain; charset=UTF-8"},"openapi":{"ok":false,"status":530,"contentType":"text/plain; charset=UTF-8"},"agentCard":{"ok":false,"status":530,"contentType":"text/plain; charset=UTF-8"}},"agentCard":false},"calls_30d":0,"payers_30d":0},"risk_band":"high","risk_score":85,"mitigations":["Publish payment requirements with stable payTo evidence.","Declare accepted networks and chain IDs in x402/Bazaar metadata.","Publish explicit USDC atomic amount for each paid route.","Expose /.well-known/agent-card.json with route/method/payment metadata.","Expose /openapi.yaml or /openapi.json for schema-grounded tool calls.","Expose /.well-known/x402 or equivalent payment-requirements metadata.","Add concrete endpoint purpose, inputs, outputs, and price rationale.","Bind payment signatures to exact method, URL, body digest, amount, asset, chain, and payTo.","Reject stale/replayed authorizations and log facilitator verification vs settlement failures separately.","After settlement, return deterministic 2xx/4xx handler output rather than losing paid callers to 5xx/timeout ambiguity."],"dataset_fresh_at":"2026-06-05T23:51:25.000Z"}},"exampleRequest":{"url":"https://api.example.com/v1/data"},"tags":["x402"],"displayCostAmount":"0.15","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"settled","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.15/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_nCXmxXE7SUeLLQb7pnP47","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.15","costPer":"request","priority":0,"asset":null,"unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scores an x402 paid resource for payment safety, discovery completeness, replay/binding risk, and autopay suitability before an agent spends funds","exampleAgentPrompt":"Before my agent pays for this x402 endpoint at https://api.example.com/v1/data, can you run a full risk report on it — covering payment safety, replay and binding risk, discovery completeness, and whether it's safe for autopay?","exampleUseCases":null,"resultDescription":"A JSON risk report containing scores for payment safety, discovery completeness, replay/binding risk, and autopay suitability for the queried x402 paid resource, along with supporting evidence and risk classifications.","failureModes":["Invalid or unreachable endpoint URL returns error JSON","Endpoint not recognized in corpus returns low-confidence or empty scores","Payment of 0.15 USDC not received results in 402 response before report is returned","Malformed request body returns 400 validation error","Corpus data stale for given endpoint may result in outdated risk scores"],"whenToPreferThis":"Use this endpoint when an AI agent needs to perform a pre-flight safety check on an x402 paid resource before authorizing any spend — especially for evaluating autopay eligibility, replay attack exposure, and payment binding completeness. Prefer this over generic API validators when the target is specifically an x402-protocol endpoint and you need structured risk scoring tied to payment safety signals.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:37:43.987Z","isFirstParty":false}