{"uid":"cap_a105f1ye-oXpaqJ07hZjX","slug":"delx-commerce-hsts-policy-check-5a076477","name":"Delx Commerce HSTS Policy Check","description":"Pay-per-result APIs for agents. No signup. Exact price. Verifiable delivery. USDC on Base + Solana via x402.","url":"https://commerce.delx.ai/api/v1/x402/hsts-policy-check?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"header":{"type":"string","maxLength":8192,"description":"Header supplied to HSTS Policy Check; used only for this bounded calculation and processed in memory without retention."},"minimum_seconds":{"type":"integer","description":"Minimum Seconds supplied to HSTS Policy Check; used only for this bounded calculation and processed in memory without retention."},"require_subdomains":{"type":"boolean","description":"Require Subdomains supplied to HSTS Policy Check; used only for this bounded calculation and processed in memory without retention."}}},"responseSchema":{"type":"json","example":{"result":{"passed":true,"max_age_seconds":31536000,"include_subdomains":true},"schema":"delx/util-hsts-policy-check/v1","status":"pass","evidence":{"retained":false,"input_sha256":"f91d8b16767bb6c1225e616e67c4c99626e188225729eb1a7745334aa6398a81","external_calls":0},"operation":"web_reliability:hsts_policy_check"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.001","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.001/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_JpTaYpCEHUkn5NM3cGW7Z","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.001","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Validates an HTTP Strict-Transport-Security (HSTS) response header against configurable policy requirements, returning pass/fail with parsed max-age and subdomain details.","exampleAgentPrompt":"Check this HSTS header to see if it passes policy with a minimum max-age of 31536000 seconds and subdomains required: 'max-age=31536000; includeSubDomains; preload'","exampleUseCases":[{"title":"Pre-deployment HSTS compliance audit","prompt":"Before I deploy my new site, validate this HSTS header — 'max-age=31536000; includeSubDomains' — and confirm it meets a minimum of 31536000 seconds with subdomains required."},{"title":"HSTS preload eligibility check","prompt":"I want to submit my domain to the HSTS preload list. Can you check this header 'max-age=63072000; includeSubDomains; preload' and confirm it passes with a minimum max-age of 10886400 and subdomains required?"},{"title":"Security header regression test in CI","prompt":"As part of my automated security checks, verify that this HSTS response header from my staging server — 'max-age=86400' — passes a policy requiring at least 86400 seconds but without requiring subdomains."}],"resultDescription":"A JSON object with a top-level pass/fail status, the parsed max_age_seconds, whether includeSubDomains is present, a SHA-256 hash of the input for auditability, a confirmation that no data was retained and no external calls were made, and the operation identifier 'web_reliability:hsts_policy_check'.","failureModes":["Header string missing or empty — validation cannot proceed","max-age value in header is below the specified minimum_seconds threshold — returns passed:false","includeSubDomains directive absent when require_subdomains is true — returns passed:false","Malformed or unparseable HSTS header string — may return an error or failed parse result","Header exceeds 8192 character limit — rejected by schema validation"],"whenToPreferThis":"Use this endpoint when you need a deterministic, auditable, no-signup HSTS header policy check paid per-call in USDC without storing your data. Prefer it over rolling your own parser when you need a verifiable evidence trail (input hash, zero external calls, no retention) or when running inside an autonomous agent workflow that needs a lightweight, pay-as-you-go security validation step.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-01T00:54:04.439Z","isFirstParty":false,"canonicalSlug":"delx-commerce-hsts-policy-check-5a076477"}