{"uid":"cap_s2TSXc5AYn7fA-odfelyy","slug":"delx-commerce-cookie-security-check-2781559c","name":"Delx Commerce Cookie Security Check","description":"Pay-per-result APIs for agents. No signup. Exact price. Verifiable delivery. USDC on Base + Solana via x402.","url":"https://commerce.delx.ai/api/v1/x402/cookie-security-check?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"header":{"type":"string","maxLength":8192,"description":"Header supplied to Cookie Security Check; used only for this bounded calculation and processed in memory without retention."},"require_secure":{"type":"boolean","description":"Require Secure supplied to Cookie Security Check; used only for this bounded calculation and processed in memory without retention."},"allowed_same_site":{"type":"array","items":{"type":"string","maxLength":8192},"maxItems":256,"description":"Allowed Same Site supplied to Cookie Security Check; used only for this bounded calculation and processed in memory without retention."},"require_http_only":{"type":"boolean","description":"Require HTTP Only supplied to Cookie Security Check; used only for this bounded calculation and processed in memory without retention."}}},"responseSchema":{"type":"json","example":{"result":{"name":"sid","attributes":{"path":"/","secure":true,"httponly":true,"samesite":"Lax"},"value_length":3,"secure_policy_passed":true},"schema":"delx/util-cookie-security-check/v1","status":"pass","evidence":{"retained":false,"input_sha256":"b2535750ee2a8d64e7fa26e4f6b035b8925174e765e5275f7a364bd9d4e021dc","external_calls":0},"operation":"web_reliability:cookie_security_check"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.001","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.001/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_3hba3Fbl8cCEGt6IYLFxZ","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.001","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Validates HTTP Set-Cookie headers against configurable security policies (Secure, HttpOnly, SameSite attributes) and returns a structured pass/fail result.","exampleAgentPrompt":"Check this Set-Cookie header for me and make sure it has Secure and HttpOnly set, and that SameSite is either Strict or Lax: 'sid=abc123; Path=/; Secure; HttpOnly; SameSite=Lax'","exampleUseCases":[{"title":"Session cookie security audit","prompt":"I just captured this Set-Cookie header from our login endpoint — 'sessionid=xyz; Path=/; HttpOnly; SameSite=Strict' — can you check whether it passes a strict security policy that requires Secure and HttpOnly flags, and only allows SameSite Strict or Lax?"},{"title":"CI pipeline cookie compliance check","prompt":"Validate this cookie header from our staging build: 'auth=token123; Path=/; SameSite=None' — require both Secure and HttpOnly to be set, and only allow SameSite values of Strict or Lax. Tell me if it passes."},{"title":"Third-party cookie header review","prompt":"A vendor just gave us this Set-Cookie header to use: 'tracker=abc; Path=/; Secure'. Does it pass a policy where HttpOnly is required and SameSite must be Lax or Strict?"}],"resultDescription":"Returns a JSON object with the parsed cookie name, its attributes (path, secure, httponly, samesite), the raw value length, a boolean secure_policy_passed, and an overall status of 'pass' or 'fail'. Also includes an evidence block with a SHA-256 hash of the input and confirmation that no data was retained and no external calls were made.","failureModes":["Malformed or unparseable cookie header string may result in an error or failed validation","Header exceeding 8192 characters will be rejected","Invalid SameSite values not in the allowed_same_site list will cause policy failure","Missing required attributes (Secure/HttpOnly) when required flags are true will return status 'fail'","Payment failure via x402 will block the request before processing"],"whenToPreferThis":"Choose this endpoint when you need a lightweight, pay-per-call, no-signup cookie security validator that returns structured, verifiable results with cryptographic evidence of non-retention. Ideal for agents running automated security audits, CI pipelines, or one-off compliance checks where you don't want to manage an account or pay for a subscription. Prefer over rolling your own parser when you need a canonical, auditable record of the check.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-01T00:54:01.004Z","isFirstParty":false,"canonicalSlug":"delx-commerce-cookie-security-check-2781559c"}