{"uid":"cap_MjjYOIIwcGEPy8OMjbv55","slug":"cyberpulse-external-attack-surface-assessment-a60ce625","name":"CyberPulse External Attack Surface Assessment","description":"External attack-surface assessment (EASM) for any company and domain — internet-exposed assets, tech-stack fingerprinting, email-security posture, supply-chain and identity exposure, and a prioritized remediation roadmap, for security and red-team-context agents. Authorized defensive use only.","url":"https://cyberpulse.theaslangroupllc.com/api/cyber/attack-surface","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET","HEAD","DELETE"],"type":"string"},"queryParams":{"type":"object","properties":{"lang":{"type":"string","description":"en | es | fr | de | ja | zh | ko | pt | ar | hi (default: en)"},"domain":{"type":"string","description":"Primary domain — e.g. \"acme.com\" | \"techstartup.io\" | \"globalbank.co.uk\""},"company":{"type":"string","description":"Company name — e.g. \"Acme Corporation\" | \"TechStartup Inc\" | \"GlobalBank\""}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"errors":{"type":"object","description":"Documented error responses, keyed by HTTP status code","additionalProperties":{"type":"object","required":["description"],"properties":{"example":{"type":"object"},"description":{"type":"string"}}}},"example":{"type":"object"}}}}},"responseSchema":{"type":"json","example":{"domain":"acme.com","company":"Acme Corporation","risk_grade":"C","email_security":{"spf":"pass","dkim":"missing","dmarc":"none","bec_risk":"HIGH","email_spoofing_possible":true},"executive_summary":"Acme Corporation has critical RDP exposure and no DMARC — enabling email spoofing attacks. Immediate actions: block RDP port, implement DMARC reject policy.","high_risk_findings":[{"risk":"CRITICAL","effort":"Quick win","finding":"RDP port 3389 exposed to internet on subsidiary IP","remediation":"Block RDP at perimeter firewall; use VPN + MFA for remote access","attack_scenario":"Brute force or credential stuffing could yield initial access"}],"overall_risk_score":68,"attack_scenarios_most_likely":["Phishing targeting finance team","Credential stuffing on customer portal","Exploitation of exposed RDP"]}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.25","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.25/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.25","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.25","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_PjQNIAZbEbxfdZI2wQxZs","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.25","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Performs a comprehensive external attack surface assessment (EASM) for a company or domain, mapping internet-exposed assets, tech-stack, email security, supply-chain, and identity exposure with a prioritized remediation roadmap.","exampleAgentPrompt":"Run a full external attack surface assessment on acmecorp.com — I want to see all internet-exposed assets, their tech stack, email security posture, any supply-chain or identity exposure risks, and a prioritized list of what we should fix first.","exampleUseCases":[{"title":"Security audit before vendor onboarding","prompt":"Before we partner with this company, can you scan their external attack surface? I need to understand what assets they expose online, their email security setup, and any supply-chain risks that might affect us."},{"title":"Incident response prioritization for breached domain","prompt":"We just got notified about potential exposure on our domain. Run a full assessment to show me all our internet-facing assets, what tech we're running publicly, our email security gaps, and tell me what we should patch first to reduce our risk."},{"title":"Red team reconnaissance for penetration test","prompt":"Map out the complete external attack surface for our target organization — I need their exposed hosts, technology fingerprints, email security configs, third-party connections, and any identity exposure that could be exploited during the engagement."}],"resultDescription":"Returns a structured report covering internet-exposed assets and hosts, tech-stack fingerprinting results, email security posture (SPF/DKIM/DMARC), supply-chain and third-party exposure indicators, identity exposure signals, and a prioritized remediation roadmap for the assessed company or domain.","failureModes":["Invalid or non-existent domain returns an error indicating the target could not be resolved","Insufficient payment (x402) causes a 402 Payment Required response","Rate limiting or quota exceeded returns a 429 error","Private or internal-only domains with no external footprint may return sparse results","Domain recently registered may have limited data available"],"whenToPreferThis":"Choose this endpoint when you need a holistic external attack surface view of a specific company or domain, especially when the goal is to enumerate all publicly exposed assets, assess email and supply-chain risk, and receive a prioritized remediation roadmap in one call — as opposed to narrower lookups like a single CVE check, OSINT IP scan, or dark-web monitoring.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T00:40:53.500Z","isFirstParty":false}