{"uid":"cap_O5hhXb7UBSLOmJNMVMTM0","slug":"the-stall-code-security-scan-1dea380f","name":"The Stall — Code Security Scan","description":"Domain-agnostic x402 capability chassis by IntuiTek¹. 300 AI-callable data services — pay USDC on Base mainnet. No accounts or API keys required.","url":"https://the-stall.intuitek.ai/cap/code-security-scan","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","required":["repo_url","authorized"],"properties":{"repo_url":{"type":"string","description":"Public GitHub HTTPS URL of the repository to scan, e.g. 'https://github.com/owner/repo'. Must be a public repo (no auth is provided)."},"authorized":{"type":"string","description":"Must be 'true'. By submitting you certify you own this repository or have explicit written authorization to perform a security audit against it."}},"additionalProperties":false}},"additionalProperties":false}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"2","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$2/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"2","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"2","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_ANv7NXp9a7BD2d7VI_cB4","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"2","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans a public GitHub repository for security vulnerabilities and code security issues, returning a structured audit report.","exampleAgentPrompt":"Can you run a security scan on my GitHub repo at https://github.com/myorg/myproject? I own it and authorize the audit — tell me what vulnerabilities you find.","exampleUseCases":[{"title":"Open source library vulnerability check","prompt":"Scan the public repo at https://github.com/acme/open-logger for security vulnerabilities — I'm the maintainer and I authorize this audit. Give me a full report of anything concerning."},{"title":"Pre-release security audit for new project","prompt":"Before I launch, can you do a security scan on https://github.com/myteam/api-gateway? I own the repo and authorize the scan — I need to know about any security issues before we go live."},{"title":"Third-party dependency security review","prompt":"I'm considering using https://github.com/someuser/auth-lib in my product. I have permission to audit it — can you scan it for security vulnerabilities so I know if it's safe to depend on?"}],"resultDescription":"A structured security audit report listing detected vulnerabilities, their severity levels, affected files or code sections, descriptions of each issue, and potentially recommended remediations — covering common vulnerability classes such as injection flaws, insecure dependencies, hardcoded secrets, and misconfigured access controls.","failureModes":["Private or non-existent repository URL causes scan failure — only public GitHub repos are supported","Missing or false 'authorized' parameter results in request rejection","Malformed GitHub URL (not HTTPS github.com format) causes input validation error","Very large repositories may time out or return partial results","GitHub rate limiting on the backend may delay or fail the scan","Non-GitHub repository URLs (GitLab, Bitbucket) are not supported"],"whenToPreferThis":"Choose this endpoint when you need a quick, account-free, pay-per-use security scan of a public GitHub repository without setting up dedicated SAST tooling or CI/CD integrations. Ideal for one-off audits, pre-release checks, or evaluating third-party open-source code. Prefer alternatives like Snyk, CodeQL, or GitHub Advanced Security for private repos, continuous monitoring, or deep IDE integration.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T12:59:13.773Z","isFirstParty":false}