{"uid":"cap_IZN8jwt1haf8UrYTJXOt4","slug":"paket-typosquat-radar-19f1718a","name":"Paket Typosquat Radar","description":"Generates the typical misspellings of a package name and looks up every one of them in the registry. Generation rather than search is deliberate: most of the seven ecosystems have no search API, and the ones that do rank by popularity instead of similarity, so a fresh squat with no downloads never appears.","url":"https://paket.halowerk.com/v1/typosquat-radar","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"name":{"type":"string","maxLength":120,"minLength":3,"description":"The package name to protect."},"system":{"enum":["npm","pypi","maven","go","cargo","nuget","rubygems"],"type":"string"},"recent_days":{"type":"integer","default":365,"maximum":3650,"minimum":1,"description":"A variant first published within this many days counts as recent, which is the strongest signal."},"max_variants":{"type":"integer","default":45,"maximum":80,"minimum":5,"description":"How many generated variants to look up."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.006","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.006/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.006","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.006","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_n2DHhMes6vt9zgMi4wXsS","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.006","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Generates plausible typosquatting variants of a package name and checks each one against seven package registries to detect malicious or squatted lookalikes.","exampleAgentPrompt":"Check whether anyone has typosquatted my npm package 'express-validator' — generate all the common misspellings and look each one up in the registry to see if any of them are already taken.","exampleUseCases":[{"title":"Pre-release typosquat sweep","prompt":"Before I publish my new Python package 'requests-cache' to PyPI, can you generate all the common misspellings and check if any of those names are already registered in the registry so I know if I'm at risk?"},{"title":"Security audit for open source library","prompt":"Run a typosquat radar check on our npm package 'lodash-utils' — I want to know every plausible typo variant and whether any of them are squatted by someone else in the registry."},{"title":"Protecting internal package namespace","prompt":"We publish 'mycompany-auth' to our npm registry and I'm worried about typosquatting attacks on our developers. Can you scan all the typical misspellings of that name and report which ones are already claimed?"}],"resultDescription":"Returns a list of generated typo variants for the given package name along with registry lookup results for each variant across supported ecosystems, indicating which variants are already registered, by whom, and any associated risk signals for potential squatting.","failureModes":["Unknown or unsupported ecosystem returns an error or empty results","Package name too short to generate meaningful variants","Registry rate limiting causing incomplete lookup coverage","Network timeouts on individual registry checks resulting in partial results","Invalid package name format rejected with validation error"],"whenToPreferThis":"Use this endpoint when you need to proactively detect typosquatting threats against a specific package name across multiple ecosystems. Unlike registry search APIs (which rank by popularity and miss newly registered squats), this endpoint generates the misspellings algorithmically and performs direct lookups, making it effective for catching fresh squats with zero downloads. Prefer this over manual searches or popularity-ranked search APIs when supply chain security and early detection are priorities.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T06:47:43.425Z","isFirstParty":false}