{"uid":"cap_S3ivdElnbV1IxRrodyf_z","slug":"synthr-cyber-dependency-audit-9a6ce439","name":"Synthr Cyber Dependency Audit","description":"Agent-native cybersecurity intelligence. Real OSV + EPSS + KEV data. Stack briefs, dep audits, advice, web reconnaissance. Prioritized for autonomous builders and harnesses.","url":"https://synthr.online/v1/cyber/audit-deps","method":"POST","headers":{},"bodySchema":{"type":"object","required":["dependencies"],"properties":{"dependencies":{"type":"array"},"includeMalicious":{"type":"boolean"}}},"responseSchema":{"type":"object","properties":{"asOf":{"type":"string"},"queryId":{"type":"string"},"sources":{"type":"array"},"findings":{"type":"array"},"confidence":{"type":"number"},"agentActions":{"type":"array","items":{"type":"string"}},"packagesAnalyzed":{"type":"integer"},"maliciousPackagesDetected":{"type":"integer"}}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.005","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.005/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_PW3x3qYxLDByGfXEY1f6K","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.005","costPer":"request","priority":0,"asset":"0x036CbD53842c5426634e7929541eC2318f3dCF7e","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Audits a list of software dependencies for known vulnerabilities using OSV, EPSS, and KEV data, detecting malicious packages and returning prioritized findings with agent-actionable recommendations.","exampleAgentPrompt":"Audit these dependencies for vulnerabilities and malicious packages — ['lodash@4.17.20', 'axios@0.21.1', 'log4j@2.14.1', 'numpy@1.21.0'] — and include malicious package detection so I know if anything in my stack is a supply chain risk.","exampleUseCases":null,"resultDescription":"Returns a structured report with a list of vulnerability findings per package (including EPSS scores, KEV status, and severity), count of packages analyzed, number of malicious packages detected, a confidence score for the analysis, data source attribution, and a set of concrete agent-actionable remediation steps.","failureModes":["Empty or malformed dependencies array returns validation error","Unrecognized package name format may yield zero findings without error","Payment not included or insufficient USDC results in 402 response","OSV/EPSS/KEV upstream data sources may be temporarily unavailable causing degraded results","Very large dependency arrays may time out or return partial results"],"whenToPreferThis":"Choose this endpoint when you need machine-readable, prioritized vulnerability data for a known list of packages — especially when you want EPSS exploit probability and CISA KEV catalog cross-referencing alongside OSV CVE data. Ideal for autonomous CI/CD agents, security harnesses, or builder tools that need actionable output rather than raw NVD dumps.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T06:38:38.613Z","isFirstParty":false}