{"uid":"cap_Z8Dbwa3CqGmzihKViNkLL","slug":"signalharness-http-header-audit-8ca35107","name":"SignalHarness HTTP Header Audit","description":"Explore 330 pay-per-call x402 API services and 27 agent-native digital products, with Base USDC pricing, secure Polar checkout, and free discovery.","url":"https://signalharness.ai/api/agent/services/http_header_audit/invoke","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"url":{"type":"string","pattern":"^https://","maxLength":2048,"minLength":9},"status":{"type":"integer","maximum":599,"minimum":100},"headers":{"type":"array","items":{"type":"array","items":{"type":"string","maxLength":8192,"minLength":0},"maxItems":2,"minItems":2},"maxItems":128,"minItems":1}}},"responseSchema":{"type":"json","example":{"replay":false,"result":{"result":"pass","status":0,"findings":[{"code":"duplicate_header","header":"example","severity":"info"}],"sourceUrl":"example","cacheSummary":{"missing":["example"],"present":["example"]},"securitySummary":{"missing":["example"],"present":["example"]},"discoverySummary":{"missing":["example"],"present":["example"]},"normalizedHeaders":[{"name":"example","values":["example"]}]},"status":"succeeded","receipt":{"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","usage":[],"status":"succeeded","network":"eip155:8453","artifacts":[],"endedAtMs":0,"latencyMs":0,"paymentId":"example-payment","receiptId":"example-receipt","requestId":"example-request","serviceId":"http_header_audit","executionId":"example-execution","startedAtMs":0,"amountAtomic":"10000","resultSha256":"2e6f0112ecd6a6aa620f18b3534e611c60f827bcd353b606f3640d5d1dbfc6f7","serviceVersion":"1.0.0","settlementReference":"0x0000000000000000000000000000000000000000000000000000000000000000"},"artifacts":[],"requestId":"example-request","executionId":"example-execution"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_m7FpwaXRwooqAO-pKWQib","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Analyzes HTTP response headers from a URL for security, caching, and discovery best practices, returning categorized findings and pass/fail results.","exampleAgentPrompt":"Can you audit the HTTP headers for https://example.com — I got back a 200 status with these headers: [['content-type','text/html'],['cache-control','no-store'],['x-frame-options','DENY']] — tell me what security or caching headers are missing or misconfigured.","exampleUseCases":[{"title":"Security header compliance check","prompt":"Audit the HTTP headers for https://myapp.com — the server returned a 200 with headers: [['content-type','application/json'],['x-content-type-options','nosniff']] — tell me which important security headers like CSP, HSTS, or X-Frame-Options are missing."},{"title":"API gateway cache header review","prompt":"I want to check whether my API at https://api.myservice.com is returning the right caching headers. It comes back with a 200 and these headers: [['cache-control','public, max-age=3600'],['etag','\"abc123\"']] — flag anything that looks wrong or missing."},{"title":"Pre-launch web security audit","prompt":"Before we launch, can you run an HTTP header audit on https://staging.myproduct.io — it returns a 200 with headers [['strict-transport-security','max-age=31536000'],['content-security-policy','default-src self'],['x-frame-options','SAMEORIGIN']] — and tell me if we're passing or if anything needs to be fixed?"}],"resultDescription":"A structured JSON result with an overall pass/fail status, categorized findings broken into security, caching, and discovery summaries (each listing present and missing headers), a list of normalized headers, and a replay flag. Also includes a signed receipt with payment and execution metadata.","failureModes":["Invalid or non-HTTPS URL returns schema validation error","Headers array malformed or exceeds 128 entries causes rejection","Status code outside 100–599 range is rejected","Unreachable or rate-limited upstream service may return an error status","Missing required 'headers' field causes bad request"],"whenToPreferThis":"Choose this endpoint when you need a structured, machine-readable audit of HTTP response headers — especially for security posture checks (CSP, HSTS, X-Frame-Options), cache configuration validation, or pre-launch compliance reviews. It's ideal for AI agents that have already fetched HTTP headers from a target URL and need to classify and score them without writing custom header-checking logic. Prefer it over generic HTTP inspection tools when you need categorized findings (security/cache/discovery) and a clear pass/fail verdict at $0.01 per call.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:44:15.583Z","isFirstParty":false}