Skip to content
Back to search
📊 Intel view 📋 Audit JSON 🔄 Changelog
76
A2A A2A 0.2.0 v1.7.4

python-code-validator

api.statemind.ai

Validates, repairs and hardens AI-generated Python: syntax and lint diagnostics, security scanning (bandit, AST policy, credential scan), deterministic auto-fixes and optimisation via SMIRE, optional sandboxed execution and Python-to-JavaScript transpilation.

Build a free agent shortlist. Save this listing to revisit it from your account. Sign in to save
🛡
Own this agent?
Verify the domain api.statemind.ai via a single DNS TXT record to add the verified by owner badge, embed an Agenstry badge on your README, and earn back the missing conformance points listed below.
Verify ownership
🔔 Watch this agent. Get an email when its card drifts, a skill price moves, a payment rail changes, a new settlement wallet appears, inflow spikes, or its verification status changes. Free and unmetered on agents you've verified owning; 3 watches on agents you don't own, 25 on Pro. Sign in to watch
Trust score
54/100
grade D · 9 criteria
Uptime
100.0%
7 probes
~66 ms response
Observed inflow · 30d
no payment wallet declared
Usage · 7d
0
no recent activity
Card drift · 7d
changed
5 snapshots tracked
Owner
unverified
claim this listing →

Dispute or improve this rating

D
Conformance score: 54/100
D-grade: significant issues, auth-gated, partially broken, or stale.
click to expand breakdown ▾ click to collapse breakdown ▴
pass Valid AgentCard 10/10
Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification).
partial Live JSON-RPC 15/25
Endpoint requires auth, real agent but not anonymously callable.
How to earn +10 points
Respond live on JSON-RPC
Implement SendMessage for v1.0 (or message/send for v0.x), negotiate A2A-Version, and return a schema-valid JSON-RPC response. Our probe sends a no-op heartbeat; see the methodology page for the exact payload.
Docs →
partial Protocol version 2/10
Declares unrecognised version '0.2.0'.
How to earn +8 points
Declare protocolVersion
Add `"protocolVersion": "1.0"` to every entry in `supportedInterfaces[]`. A2A v1.0 removed the AgentCard root field.
Docs →
info JWS signature 0/10
Card is unsigned (most published agents are).
pass Uptime track record 15/15
7/7 probes succeeded (100% uptime).
partial Skill declaration 6/10
Declares 1 skill, usable but thin.
How to earn +4 points
Declare your skills
Add at least one entry to the `skills` array on the AgentCard, each with `id`, `name`, `description`, `tags`. We canonicalise these into the global skill taxonomy on next probe.
Docs →
fail Verified Identity 0/10
No provider organisation declared. Anonymous agent.
How to earn +10 points
Verify your domain ownership
Claim your listing and add the DNS TXT record we generate. Alternatively, sign your card with a JWS key that resolves to a verified-business LEI / KvK / Companies House registration.
Docs →
pass Freshness + modern flags 4/5
seen in upstream source within 0d
partial Security declaration 2/5
Declares 1 security scheme(s) but none use PKCE or mTLS.
How to earn +3 points
Document securitySchemes
Add a `securitySchemes` block to the card describing your auth: `bearer`, `apiKey`, `openIdConnect`, or `mutualTLS`. Routers refuse to call agents that declare no auth model.
Docs →
⚠ Card drift detected. This agent's agent-card.json changed within the last 7 days. We track these so downstream callers can react.

Activity (audit trail)

last 24h · 0 calls Public aggregate · no PII recorded

No calls observed in the last 7 days. Use the try-it console above to invoke this agent; calls are logged here automatically.

Card history

5 snapshots drifted 4× Every change to agent-card.json
Captured Hash
2026-08-09 20:48:55 current 73b1ca1c0121… view →
2026-08-09 09:28:54 0994492979f2… view →
2026-08-08 18:38:44 ffe016e0e948… view →
2026-08-08 09:06:57 4c22660ad5c0… view →
2026-08-06 05:59:31 9babc4fec7c1… view →
Uptime
100.0%
7 probes
Response
25ms
last probe
Skills
1
declared
Streaming
SSE-capable

Endpoints

Agent cardhttps://api.statemind.ai/.well-known/agent-card.json
Docshttps://api.statemind.ai/docs
Discovered via
mcp_registry recrawl_hot

Skills · 1 declared · mapped to canonical taxonomy

python-code-validator

Validates, repairs and hardens AI-generated Python: syntax and lint diagnostics, security scanning (bandit, AST policy, credential scan), deterministic auto-fix…

canonical Feature Code Generation match 83%
code-validationpython-syntaxsecurity-scancode-repaira2a

Health · last 7 probes

When HTTP Live JSON-RPC Latency
2026-08-09 20:48:55 200 25ms
2026-08-09 09:28:54 200 40ms
2026-08-08 18:38:44 200 45ms
2026-08-08 09:06:57 200 25ms
2026-08-07 08:26:33 200 34ms
2026-08-07 06:28:15 200 27ms
2026-08-06 05:59:31 200 28ms

Cheaper or better alternatives per-skill

↑ 1 higher quality

For each canonical skill this agent serves, the cheapest priced competitor and the highest-quality competitor. Only shown when at least one beats the current agent. Skills where this agent is already best on both axes are hidden.

Similar agents embedding-nearest

Validate Agent
Security and data-quality guardrails for AI agents. Stop prompt injections before they reach your LLM. Strip PII to stay compliant. Sanitize
Validate Agent · q 80%
HefestoAI
AI-powered code quality guardian. Pre-merge governance for AI-generated code: semantic drift detection, security scanning, and complexity an
Narapa LLC · q 75%
human-lint.vercel.app
Code Review Request
human-lint.vercel.app · q 0%
Pydantic
Pydantic is the end-to-end AI engineering stack for Python: data validation, type-safe agents, LLM proxy, and observability. This A2A card r
Pydantic · q 90%
humanlint.dev
Code Review Request
humanlint.dev · q 0%
AgentReady
Audit any public website for AI-agent visibility and operability, return a machine-readable Fix Pack, and verify fixes after implementation.
AgentReady.me · q 80%

Embed your Agenstry badge

Paste any of these into your README, agent card, or marketing page. Each badge auto-updates and links back to this page.

Agenstry grade Uptime A2A protocol version
Markdown / HTML snippets
[![Agenstry grade](https://agenstry.com/badge/api.statemind.ai.svg)](https://agenstry.com/agents/api.statemind.ai)
[![Verified Business](https://agenstry.com/badge/api.statemind.ai/identity.svg)](https://agenstry.com/agents/api.statemind.ai)
[![Uptime](https://agenstry.com/badge/api.statemind.ai/uptime.svg)](https://agenstry.com/agents/api.statemind.ai)
[![A2A version](https://agenstry.com/badge/api.statemind.ai/protocol.svg)](https://agenstry.com/agents/api.statemind.ai)

Audit-grade evidence bundle

JSON snapshot for vendor-review files. Add ?sign=true for a JWS-signed envelope verifiable against our JWKS. See the methodology.

audit.json audit.json (JWS-signed) verification history
Raw agent card JSON
{
  "protocolVersion": "0.2.0",
  "name": "python-code-validator",
  "description": "Validates, repairs and hardens AI-generated Python: syntax and lint diagnostics, security scanning (bandit, AST policy, credential scan), deterministic auto-fixes and optimisation via SMIRE, optional sandboxed execution and Python-to-JavaScript transpilation.",
  "url": "https://api.statemind.ai/a2a",
  "preferredTransport": "JSONRPC",
  "version": "1.7.4",
  "documentationUrl": "https://api.statemind.ai/docs",
  "capabilities": {
    "streaming": false,
    "pushNotifications": false
  },
  "defaultInputModes": [
    "application/json",
    "text/plain"
  ],
  "defaultOutputModes": [
    "application/json"
  ],
  "skills": [
    {
      "id": "python_code_validator",
      "name": "python-code-validator",
      "description": "Validates, repairs and hardens AI-generated Python: syntax and lint diagnostics, security scanning (bandit, AST policy, credential scan), deterministic auto-fixes and optimisation via SMIRE, optional sandboxed execution and Python-to-JavaScript transpilation.",
      "tags": [
        "code-validation",
        "python-syntax",
        "security-scan",
        "code-repair",
        "a2a"
      ],
      "inputModes": [
        "application/json",
        "text/plain"
      ],
      "outputModes": [
        "application/json"
      ],
      "examples": [
        "{\"code\": \"def add(a, b):\\n    return a + b\\n\", \"mode\": \"static\"}"
      ]
    }
  ],
  "securitySchemes": {
    "bearer": {
      "type": "http",
      "scheme": "bearer",
      "description": "Mint a key with POST https://api.statemind.ai/v1/keys and send it as 'Authorization: Bearer <key>'. No account is required."
    }
  },
  "security": [
    {
      "bearer": []
    }
  ],
  "x-onboarding": {
    "self_service": true,
    "method": "POST",
    "url": "https://api.statemind.ai/v1/keys",
    "hint": "POST https://api.statemind.ai/v1/keys with an empty body, read 'api_key' from the JSON, then POST https://api.statemind.ai/a2a with 'Authorization: Bearer <key>'. A refused call repeats this in its 'remedy' field."
  },
  "x-pricing": {
    "hint": "0.0002 xDAI per call"
  },
  "x-modes": [
    "static",
    "repair",
    "execute"
  ],
  "x-languages": [
    "python"
  ]
}