{"uid":"cap_gICdZtdb4lcOEQC003wfI","slug":"delx-commerce-json-key-denylist-f2c49825","name":"Delx Commerce — JSON Key Denylist","description":"Pay-per-result APIs for agents. No signup. Exact price. Verifiable delivery. USDC on Base + Solana via x402.","url":"https://commerce.delx.ai/api/v1/x402/json-key-denylist?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"denied":{"type":"array","items":{"type":"string","maxLength":8192},"maxItems":256,"description":"Denied supplied to JSON Key Denylist; used only for this bounded calculation and processed in memory without retention."},"object":{"type":"object","description":"Object supplied to JSON Key Denylist; used only for this bounded calculation and processed in memory without retention.","maxProperties":128,"additionalProperties":true}}},"responseSchema":{"type":"json","example":{"result":{"passed":false,"denied_keys":["password"]},"schema":"delx/util-json-key-denylist/v1","status":"advisory","evidence":{"retained":false,"input_sha256":"e2140fb14617296830e26895419ba5db41e0d9b605a101ae52d4dc0f016e86e2","external_calls":0},"operation":"data_batch:json_key_denylist"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.001","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.001/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_X1ZZzlVQdyM1mpF9IBVSn","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.001","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Checks a JSON object against a list of denied key names and returns which forbidden keys are present","exampleAgentPrompt":"Check this JSON object for any forbidden keys — deny 'password', 'secret', and 'api_key': {\"username\": \"alice\", \"password\": \"hunter2\", \"token\": \"abc123\"}","exampleUseCases":[{"title":"Sensitive field detection before logging","prompt":"Before I log this API response, check if the JSON object contains any of these forbidden keys: 'password', 'ssn', 'credit_card', 'secret'. Here's the object: {\"user_id\": 42, \"email\": \"alice@example.com\", \"password\": \"abc123\", \"plan\": \"pro\"}."},{"title":"Config object policy enforcement","prompt":"I have a config object and want to make sure none of these banned keys are present: 'private_key', 'master_token', 'admin_override'. The object is {\"host\": \"localhost\", \"port\": 5432, \"private_key\": \"xyz\"}. Does it pass?"},{"title":"Agent output sanitization before forwarding","prompt":"My agent just produced this JSON result and I need to verify it doesn't contain any of these disallowed keys before I forward it: 'internal_notes', 'debug_trace', 'raw_prompt'. Object: {\"summary\": \"Done\", \"internal_notes\": \"user seems confused\", \"output\": \"Here is your answer\"}."}],"resultDescription":"Returns a result object indicating whether the JSON object passed the denylist check (passed: true/false), a list of any denied keys that were found, the operation schema identifier, a status field (e.g. 'advisory'), and evidence metadata including whether input was retained (always false), the SHA-256 hash of the input, and the number of external calls made (always 0).","failureModes":["Input object exceeds 128 properties — request rejected","Denied list exceeds 256 items or any item exceeds 8192 characters — validation error","Malformed JSON body — parse error response","Payment failure via x402 — 402 Payment Required before processing"],"whenToPreferThis":"Use this endpoint when you need a lightweight, stateless, pay-per-call check to detect forbidden or sensitive key names in a JSON object without storing any data. Ideal for agent pipelines that need verifiable, auditable validation (evidenced by input SHA-256) with no signup overhead. Prefer this over custom code when you need a provably non-retaining, in-memory-only key scan with cryptographic evidence of the input processed.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-01T00:54:00.404Z","isFirstParty":false,"canonicalSlug":"delx-commerce-json-key-denylist-f2c49825"}