{"uid":"cap_KNPCbEV0g1egkvc8dkSyS","slug":"x402lint-api-scanner-7cfb7790","name":"x402lint API Scanner","description":"Paid ($0.05). ALWAYS runs a fresh 25-check scan of the origin (non-settling GET/HEAD + benign empty-POST probes), bypassing the 24h cache — use free GET /v1/report to read the cached result. Concurrent requests for the same origin join the in-flight scan rather than double-scanning. Returns grade, score, per-check status + evidence + fix instructions, and a shareable report URL. Unreachable/broken origins are a valid graded result (F). 504 processing responses and errors are never charged.","url":"https://api.x402lint.dev/v1/scan","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"url":{"type":"string","description":"Origin to scan, e.g. https://api.example.dev"}}},"responseSchema":{"type":"json","example":{"cache":"miss","grade":"B","score":82,"origin":"https://api.example.dev","results":[{"id":"P2","status":"pass","evidence":"/v1/thing bare GET → 402 with x402Version=2","severity":"critical"}],"reportUrl":"https://x402lint.dev/o/api.example.dev","scannedAt":"2026-07-25T04:00:00Z","checksVersion":"2026-07-25.1"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.05","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.05/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_TQsdXQ367WDM3MRDjXJq3","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.05","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Runs 25 compliance checks against an x402-enabled API origin and returns a grade, score, per-check results with fix instructions, and a shareable report URL.","exampleAgentPrompt":"Run an x402lint compliance scan on https://api.example.dev and tell me the grade, score, and what I need to fix to pass all 25 checks.","exampleUseCases":[{"title":"Pre-launch x402 API audit","prompt":"Before I go live, can you scan https://api.mypaymentservice.dev through x402lint and give me a full compliance report — grade, score, and any checks I'm failing with instructions on how to fix them?"},{"title":"Debugging a failing x402 integration","prompt":"My x402 API at https://api.acme-payments.io keeps rejecting clients — can you run an x402lint scan on it and show me which of the 25 checks are failing and what the evidence says?"},{"title":"Verifying a third-party x402 origin","prompt":"I'm thinking of integrating with https://api.partner-service.com — can you scan it with x402lint to see if it's properly x402-compliant and get me a shareable report URL?"}],"resultDescription":"Returns an overall compliance grade (A–F), a numeric score, the status of each of the 25 individual checks along with evidence collected and specific fix instructions, and a shareable report URL. Unreachable or broken origins receive a valid graded result (F). Results may be served from a cache up to 24 hours old. 504 responses and errors are never charged.","failureModes":["Origin is unreachable — returns a valid F-grade result rather than an error","504 timeout during processing — not charged, should be retried","Invalid or malformed URL input — likely returns a 4xx error with description","Cached result may be up to 24 hours stale for recently changed origins"],"whenToPreferThis":"Use this endpoint when you need to validate that an HTTP origin correctly implements the x402 payment protocol across all 25 spec checks, including cases where the origin is down or broken. Prefer this over manual testing when you want structured per-check evidence and actionable fix instructions, or when you need a shareable compliance report URL. It covers read-only GET/HEAD probes so it is safe to run against production APIs.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T12:38:31.453Z","isFirstParty":false}