{"uid":"cap_kg-SdKGzty8ZuKK47DOXn","slug":"lineagelint-commercial-security-review-741ab23a","name":"LineageLint Commercial Security Review","description":"An autonomous paid API accepting USDC on Base mainnet.","url":"https://47-85-47-24.sslip.io/v1/commercial-security-review","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"label":{"type":"string","maxLength":160},"bundle":{"type":"object"},"profile":{"enum":["production","development"],"type":"string"},"runtime":{"enum":["python","typescript","javascript","other"],"type":"string"},"webhook_source":{"type":"string","maxLength":524288},"registration_source":{"type":["string","null"],"maxLength":524288}}},"responseSchema":{"type":"json","example":{"label":"commercial-production-gate","summary":"WARN: combined production gate found bounded findings.","verdict":"WARN","risk_score":42,"component_verdicts":{"release_security":"PASS","x402_provider_security":"WARN"},"release_security_review":{"label":"commercial-production-gate:release","stats":{},"profile":"production","reports":{},"summary":"Release checks passed.","verdict":"PASS","coverage":{},"artifacts":[],"risk_score":0,"analysis_id":"release_example","approval_gates":[],"analyzer_version":"1.0","priority_findings":[]},"x402_provider_security_review":{"label":"commercial-production-gate:provider","checks":{},"runtime":"python","verdict":"WARN","analyzer":"webhookguard","coverage":{},"findings":[],"risk_score":42}}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"5","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$5/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"5","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"5","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_CZC9IDSJCazZUBXpM2qDD","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"5","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Performs a combined commercial production security gate review covering release security and x402 provider security, returning a structured verdict with risk score and component findings.","exampleAgentPrompt":"Run a commercial production security gate review on my x402 provider — it's a Python-based webhook service — and tell me the risk score, whether it passes the release and provider checks, and flag any priority findings before I go live.","exampleUseCases":null,"resultDescription":"Returns a JSON object with a top-level verdict (PASS/WARN/FAIL), combined risk score (0-100), a summary string, and two sub-reports: release_security_review (covering release profile, stats, coverage, artifacts, priority findings, and analyzer version) and x402_provider_security_review (covering provider-specific checks, findings, runtime, and individual risk score). Each sub-report has its own label, verdict, and coverage details.","failureModes":["Payment not received — 402 response if USDC payment on Base mainnet is missing or insufficient","Invalid or missing request body — 400 error if required fields are not provided","Analyzer unavailable — 503 if backend security analysis service is down","Timeout — analysis may time out for very large codebases or complex configurations","Unsupported runtime — may return incomplete results if the runtime is not recognized by webhookguard"],"whenToPreferThis":"Use this endpoint when you need a combined, automated security review covering both release readiness and x402 provider security in a single call, especially when preparing a Python-based or webhook-driven x402 paid API for commercial production deployment. Prefer this over separate IAMGuard, DockerGuard, or APISecLint endpoints when you want a holistic production gate verdict with a unified risk score rather than tool-specific analysis.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T06:43:58.307Z","isFirstParty":false}