{"uid":"cap_gv8o031ryzY_d1H8f3Lsl","slug":"factstamp-dependency-citation-verifier-c68e4286","name":"FactStamp Dependency & Citation Verifier","description":"Figure, entity, citation and dependency verification for other agents. Cited to dated primary sources. Unknown is valid.","url":"https://factstamp.agentrails.workers.dev/package?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input","output"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"body":{"type":"object"},"type":{"const":"http"},"method":{"const":"POST"},"bodyType":{"const":"application/json"}},"additionalProperties":true},"output":{"type":"object","required":["type","example"],"properties":{"type":{"const":"json"},"example":{"type":"object"}},"additionalProperties":true}},"additionalProperties":false},"responseSchema":{"type":"json","example":{"name":"express","query":"express@4.18.2","detail":"2 advisory record(s) published against express@4.18.2.","latest":"5.2.1","yanked":false,"sources":[{"name":"npm registry","http_status":200},{"name":"OSV","http_status":200}],"verdict":"advisory","version":"4.18.2","ecosystem":"npm","advisories":[{"id":"GHSA-qw6h-vgh9-j6wx"},{"id":"GHSA-rv95-896h-c2vc"}],"deprecated":null,"published_at":"2022-10-08T20:14:32.495Z"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.02","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.02/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.02","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_Yh4O8qiz8ccUbq03f4Iwr","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.02","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Verifies software package dependencies, figures, entities, and citations against dated primary sources, returning verdicts and advisory records","exampleAgentPrompt":"Can you check if express@4.18.2 has any known security advisories or vulnerabilities I should be worried about before shipping?","exampleUseCases":[{"title":"Pre-deployment dependency security audit","prompt":"Before I deploy this Node.js app, can you check whether lodash@4.17.20 has any known security vulnerabilities or is it safe to ship?"},{"title":"CI pipeline vulnerability gate","prompt":"I'm setting up automated checks in my CI pipeline — can you verify that react@18.2.0 has no active advisories and tell me the latest stable version?"},{"title":"Fact and citation integrity check","prompt":"Can you verify the figures and citations in this claim against dated primary sources and tell me which ones check out and which are unknown or disputed?"}],"resultDescription":"Returns a JSON object with: the package name and queried version, a verdict string (e.g. 'advisory', 'safe'), the latest available version, whether the package is yanked/deprecated, a list of advisory IDs (e.g. GHSA identifiers), the data sources consulted (e.g. npm registry, OSV) with their HTTP response status, and the published date of the queried version.","failureModes":["Package or version not found in any consulted registry — returns partial or empty source list","Unknown verdict returned when insufficient primary source data exists — 'unknown' is an explicitly valid result","Source HTTP errors (non-200) from npm registry or OSV indicate upstream unavailability","Malformed package query string causes validation failure","Payment not completed (x402 flow) — request rejected before processing"],"whenToPreferThis":"Choose FactStamp when you need a cited, dated, primary-source-backed verdict on a software package's security posture — particularly when you need advisory IDs (GHSAs), deprecation status, and latest version in a single call. Prefer this over generic search when you need structured, machine-readable verification with explicit source attribution and support for 'unknown' as a valid outcome rather than a silent failure.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T00:31:03.542Z","isFirstParty":false,"canonicalSlug":"factstamp-dependency-citation-verifier-c68e4286"}