{"uid":"cap_m0VUR2VywLZ7HXZablulC","slug":"api-x402node-dev-d7179ea1","name":"Supply Chain Attack IOC Catalog – Active Campaign Listing","description":"⚠️ BETA — IOC data under active verification 2026-05-25, do not rely on matches for production. Supply chain attack IOC catalog. List active campaigns: npm, PyPI, Composer. Shai-Hulud, TanStack, Laravel-Lang. For coding agents pre-install audit. Accepts payment on Base or Solana — either network works.","url":"https://api.x402node.dev/supply/ioc-list","method":"GET","headers":{},"bodySchema":{"type":"object","properties":{"properties":{"type":"string"}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.0022","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"settled","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.0022/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.0022","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.0022","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_zq_LW9ThZHw0EYRapIMh9","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.0022","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns a catalog of active supply chain attack indicators of compromise (IOCs) across npm, PyPI, and Composer package registries, including named campaigns like Shai-Hulud, TanStack, and Laravel-Lang.","exampleAgentPrompt":"Before I install these npm and PyPI packages, can you pull the latest active supply chain attack IOC catalog and check if any of my dependencies match known malicious campaigns like Shai-Hulud or TanStack?","exampleUseCases":null,"resultDescription":"A structured list of active supply chain attack campaigns and their associated indicators of compromise (IOCs), scoped to package registries (npm, PyPI, Composer), including campaign names, affected package identifiers, and verification status. Note: data is under active verification and marked BETA as of 2026-05-25.","failureModes":["IOC data is in active verification state — matches may be incomplete or inaccurate (beta warning)","Payment failure via x402 protocol results in 402 response and no data returned","Unknown or unsupported registry filter returns empty result set","Service unavailable returns 5xx with no IOC data","Stale or unverified campaign entries may produce false positives"],"whenToPreferThis":"Use this endpoint when an AI coding agent needs to perform a pre-install security audit of package dependencies across npm, PyPI, or Composer, and wants to cross-reference against a curated list of known active supply chain attack campaigns. Prefer this over general vulnerability databases when you specifically need IOC-level campaign data for supply chain attacks rather than CVE-based vulnerability scoring.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T13:06:35.628Z","isFirstParty":false}