{"uid":"cap_KXH796zvPbKlR_S8nI5Un","slug":"sitesignal-http-cache-cors-cookie-policy-inspector-b7314fe7","name":"SiteSignal HTTP Cache CORS Cookie Policy Inspector","description":"Inspect one bounded public HTTP response for cache directives, CORS headers, and redacted cookie security attributes.","url":"https://phases-prot-shine-royal.trycloudflare.com/x402/http-policy","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","required":["url"],"properties":{"url":{"type":"string","format":"uri"},"origin":{"type":"string","format":"uri","description":"Optional HTTP(S) Origin header to send during the bounded GET."}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.02","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"down","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.02/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_-UFTb_RkHeBRyHbma7sUA","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.02","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Inspects a public HTTP response for cache-control directives, CORS headers, and redacted cookie security attributes via a bounded GET request.","exampleAgentPrompt":"Can you check the cache-control headers, CORS policy, and cookie security attributes for https://api.example.com/data — and test what CORS headers come back when the request origin is https://myapp.com?","exampleUseCases":[{"title":"Audit CORS policy before frontend integration","prompt":"I'm about to integrate https://api.thirdparty.com/v2/products into my frontend at https://myapp.com — can you check what CORS headers that API returns when it sees my origin, so I know if cross-origin requests will be blocked?"},{"title":"Verify cache headers on a CDN-backed endpoint","prompt":"Can you inspect the cache-control and related caching headers on https://cdn.example.com/static/config.json? I want to know if it's being cached and for how long."},{"title":"Check cookie security attributes on a login endpoint","prompt":"Can you look at the cookie security attributes returned by https://accounts.example.com/session — I need to know if they're using HttpOnly and Secure flags correctly."}],"resultDescription":"Returns structured details about the HTTP response including cache-control directives (e.g. max-age, no-cache, no-store), CORS response headers (e.g. Access-Control-Allow-Origin, Access-Control-Allow-Methods), and redacted cookie security attributes (e.g. HttpOnly, Secure, SameSite flags) from a single bounded public GET request.","failureModes":["Non-public or authenticated URLs will fail to return useful data","URLs requiring POST or non-GET methods are not supported","Responses that redirect more than expected may not resolve correctly","Endpoints that block automated user agents may return empty or error responses","Invalid or malformed URL input results in a validation error"],"whenToPreferThis":"Choose this endpoint when you need a lightweight, single-request snapshot of a public URL's HTTP cache policy, CORS configuration, or cookie security posture — especially useful for pre-integration audits, security checks, or debugging caching issues without writing custom HTTP tooling. Prefer it over general HTTP inspection tools when you specifically need structured output covering cache, CORS, and cookie attributes together.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-16T08:28:17.069Z","isFirstParty":false}