{"uid":"cap_Z6jTtrVmoN8ldRJ5dBKGH","slug":"sitesignal-http-cache-cors-cookie-policy-inspector-bccfc84f","name":"SiteSignal HTTP Cache CORS Cookie Policy Inspector","description":"Inspect one bounded public HTTP response for cache directives, CORS headers, and redacted cookie security attributes.","url":"https://supported-rely-thee-portion.trycloudflare.com/x402/http-policy","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","required":["url"],"properties":{"url":{"type":"string","format":"uri"},"origin":{"type":"string","format":"uri","description":"Optional HTTP(S) Origin header to send during the bounded GET."}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.02","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"down","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.02/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_h2qlf_woYieDYHDEZIQRo","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.02","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Inspects a public HTTP response for cache-control directives, CORS headers, and cookie security attributes by performing a bounded GET request to a given URL.","exampleAgentPrompt":"Can you check what cache-control headers, CORS policy, and cookie security attributes the URL https://api.example.com/data returns? Use an Origin of https://myapp.com so we can see if cross-origin requests are allowed.","exampleUseCases":[{"title":"Audit CORS policy before frontend integration","prompt":"Before I wire up my frontend to https://api.partner.com/v1/products, can you check what CORS headers it returns when the Origin is https://myapp.com — specifically whether Access-Control-Allow-Origin is set correctly?"},{"title":"Verify cookie security flags on login endpoint","prompt":"Can you inspect the HTTP response from https://auth.example.com/session and tell me whether the cookies it sets have the Secure, HttpOnly, and SameSite flags configured properly?"},{"title":"Diagnose caching misconfiguration on CDN resource","prompt":"I think our CDN isn't caching this asset correctly — can you fetch https://cdn.mysite.com/bundle.js and check what Cache-Control and related headers it's returning?"}],"resultDescription":"Returns parsed details from the HTTP response including cache-control directives (e.g. max-age, no-store, public/private), CORS-related headers (Access-Control-Allow-Origin, Access-Control-Allow-Methods, etc.), and redacted cookie security attributes (Secure, HttpOnly, SameSite flags) observed in the bounded GET response.","failureModes":["Target URL is unreachable or returns a non-2xx status — partial or empty header data returned","URL requires authentication — response may lack meaningful cache or cookie headers","CORS headers absent — endpoint may not support cross-origin requests at all","Invalid or malformed URL input — request rejected with validation error","Rate limiting or firewall on target server — request may time out or be blocked"],"whenToPreferThis":"Choose this endpoint when you need a quick, bounded snapshot of HTTP-level caching, CORS, and cookie security attributes for a single public URL without running a full site audit. It is ideal for debugging cross-origin issues, validating CDN cache behavior, or checking cookie security posture prior to integration. Prefer it over general HTTP snapshotters when the specific focus is cache directives, CORS policy, or cookie flags rather than content or redirect chains.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T12:28:04.797Z","isFirstParty":false}