{"uid":"cap_Oc2Sw26EBKqtwX0QZp8g-","slug":"agentaegis-threat-intel-lookup-ef663c1b","name":"AgentAegis Threat Intel Lookup","description":"AgentAegis threat_intel_lookup — reputation + threat verdict for an IOC (IP, domain, URL, or file hash) aggregated across AbuseIPDB, AlienVault OTX, and abuse.ch.","url":"https://agentaegis-mcp-production.up.railway.app/x402/threat-intel","method":"POST","headers":{},"bodySchema":null,"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"2","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$2/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"2","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"2","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_UPs0L1uqTnhxLgy8X-WUc","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"2","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Aggregates reputation and threat verdict for an IP, domain, URL, or file hash across AbuseIPDB, AlienVault OTX, and abuse.ch","exampleAgentPrompt":"Can you check if the IP address 45.155.205.233 is malicious — I want an aggregated threat verdict and score from AbuseIPDB, AlienVault OTX, and abuse.ch?","exampleUseCases":null,"resultDescription":"Returns a JSON object containing the indicator queried, a boolean malicious verdict, and a numeric threat score (0-100) aggregated across AbuseIPDB, AlienVault OTX, and abuse.ch threat intelligence sources.","failureModes":["Unknown or unrecognized IOC format returns an error","Rate limiting or upstream threat feed unavailability causes partial or failed results","Invalid indicator type (e.g. plain text instead of IP/domain/URL/hash) rejected","Payment of $2 USDC not completed causes 402 Payment Required response","Network timeout from one or more upstream providers may reduce aggregation quality"],"whenToPreferThis":"Use this endpoint when you need a quick, multi-source threat verdict for a single IOC (IP, domain, URL, or file hash) without integrating each threat feed individually. Prefer this over single-source checks when you need cross-validated reputation data from AbuseIPDB, AlienVault OTX, and abuse.ch simultaneously in one call.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T18:35:47.288Z","isFirstParty":false}