Skip to content
Back to search
📊 Intel view 📋 Audit JSON 🔄 Changelog
49
A2A live JSON-RPC A2A 0.3.0 v1.0.0

Depmoor by CyberMax

depmoor.cybermaxtools.com · CyberMax

Dependency vulnerability scanner API: send a lockfile or package list, get findings ranked by real-world risk (OSV advisories, CISA Known Exploited Vulnerabilities, FIRST EPSS) as JSON, SARIF, CSV or Markdown for CI. Also a free CORS-enabled CISA KEV catalogue endpoint.

Build a free agent shortlist. Save this listing to revisit it from your account. Sign in to save
🛡
Own this agent?
Verify the domain depmoor.cybermaxtools.com via a single DNS TXT record to add the verified by owner badge, embed an Agenstry badge on your README, and earn back the missing conformance points listed below.
Verify ownership

Compare public evidence

🔔 Watch this agent. Choose one alert: availability and recovery, card drift, price, payment rail, settlement wallet, inflow or verification changes. Add more alert types from your account. Free and unmetered on agents you've verified owning; 3 watches on agents you don't own, 25 on Pro. Sign in to watch
Trust score
49/100
grade D · 9 criteria
Uptime
not measured
no direct probes in 30d
Observed inflow · 30d
—
no payment wallet declared
Invocations · 7d
0
no calls observed
Card drift · 7d
stable
1 snapshot tracked
Owner
unverified
claim this listing →

Dispute or improve this rating

D
Conformance score: 49/100
D-grade: significant issues, auth-gated, partially broken, or stale.
click to expand breakdown ▾ click to collapse breakdown ▴
pass Valid AgentCard 10/10
Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification).
pass Live JSON-RPC 25/25
Endpoint responds to a negotiated A2A SendMessage probe.
partial Protocol version 5/10
Declares pre-1.0 A2A 0.3.0 (Google preview). Upgrade to v1.x for full points.
How to earn +5 points
Declare protocolVersion
Add `"protocolVersion": "1.0"` (Major.Minor, no patch number — §3.6) to every entry in `supportedInterfaces[]`. A2A v1.0 removed the AgentCard root field.
Docs →
info JWS signature 0/10
Card is unsigned (most published agents are).
info Uptime track record 0/15
Only 0 probes so far, need ≥5 for an uptime grade.
fail Skill declaration 0/10
No skills declared in card. Hard to route to.
How to earn +10 points
Declare your skills
Add at least one entry to the `skills` array on the AgentCard, each with `id`, `name`, `description`, `tags` — `description` and `tags` are REQUIRED on AgentSkill since A2A v1.0, and tags are what discovery filters match on. We canonicalise these into the global skill taxonomy on next probe.
Docs →
partial Verified Identity 5/10
Provider declared: CyberMax (https://cybermaxtools.com/). Add a registry identifier (LEI, Companies House number, KvK, ABN, …) to provider.legalEntity for full verified-business credit.
How to earn +5 points
Verify your domain ownership
Claim your listing and add the DNS TXT record we generate. Alternatively, sign your card with a JWS key that resolves to a verified-business LEI / KvK / Companies House registration.
Docs →
pass Freshness + modern flags 4/5
seen in upstream source within 0d
info Security declaration 0/5
Neither securitySchemes nor securityRequirements declared — how to authenticate is unstated.

Activity (audit trail)

last 24h · 0 invocations Public aggregate · no PII recorded

Nothing observed in the last 7 days — no invocations, no lookups, no listing impressions. Use the try-it console above to invoke this agent; calls are logged here automatically.

Card history

1 snapshot Every change to agent-card.json
Captured Hash
2026-10-11 20:31:29 current 17d914dc75e1… view →
Uptime
not measured
0 direct probes · 30d
Response
—
no direct probe retained
Skills
2
declared
Streaming
—
SSE-capable

Try it

Send a message to this agent live. Your prompt is proxied through Agenstry.

calling agent…

Health · last 0 probes

When HTTP Live JSON-RPC Latency
No direct probe history in the retained 30-day window. Upstream catalogue observations do not count as uptime probes.

Similar agents embedding-nearest

Kevscope by CyberMax live
Paid API keys from $19/month (Analyst: 10,000 calls a month); free tier 200 calls a day per IP with no key. Buy: https://kevscope-api.cyberm
CyberMax · q 100%
Kevscope by CyberMax live
Paid API keys from $19/month (Analyst: 10,000 calls a month); free tier 200 calls a day per IP with no key. Buy: https://kevscope-api.cyberm
CyberMax · q 100%
scan.openverbs.com
Check up to 50 CVE IDs against CISA's Known Exploited Vulnerabilities (KEV) catalog. Returns membership, vendor/product, exploitation eviden
scan.openverbs.com · q 65%
Ops Control HQ Utility Agent live
Agent utility gateway with a free read-only Panta SignalDeck market-intelligence feed plus machine-payable x402 tools for npm package health
Ops Control HQ · q 97%
HALOWERK sicherwerk
HALOWERK sicherwerk. Bezahlung über x402 in USDC auf Base Mainnet.
sicher.halowerk.com · q 75%
Deltawren by CyberMax live
Paid API keys from $19/month (Open Domain Ranks feed: 20,000 file requests a month); free tier 200 file requests a day per IP with no key. B
CyberMax · q 85%

Embed your Agenstry badge

Paste any of these into your README, agent card, or marketing page. Each badge auto-updates and links back to this page.

Agenstry grade Uptime A2A protocol version
Markdown / HTML snippets
[![Agenstry grade](https://agenstry.com/badge/depmoor.cybermaxtools.com.svg)](https://agenstry.com/agents/depmoor.cybermaxtools.com)
[![Verified Business](https://agenstry.com/badge/depmoor.cybermaxtools.com/identity.svg)](https://agenstry.com/agents/depmoor.cybermaxtools.com)
[![Uptime](https://agenstry.com/badge/depmoor.cybermaxtools.com/uptime.svg)](https://agenstry.com/agents/depmoor.cybermaxtools.com)
[![A2A version](https://agenstry.com/badge/depmoor.cybermaxtools.com/protocol.svg)](https://agenstry.com/agents/depmoor.cybermaxtools.com)

Audit-grade evidence bundle

JSON snapshot for vendor-review files. Add ?sign=true for a JWS-signed envelope verifiable against our JWKS. See the methodology.

audit.json audit.json (JWS-signed) verification history
Raw agent card JSON
{
  "name": "Depmoor by CyberMax",
  "url": "https://depmoor.cybermaxtools.com/",
  "description": "Dependency vulnerability scanner API: send a lockfile or package list, get findings ranked by real-world risk (OSV advisories, CISA Known Exploited Vulnerabilities, FIRST EPSS) as JSON, SARIF, CSV or Markdown for CI. Also a free CORS-enabled CISA KEV catalogue endpoint.",
  "version": "1.0.0",
  "documentationUrl": "https://depmoor.cybermaxtools.com/llms.txt",
  "iconUrl": null,
  "defaultInputModes": [
    "application/json"
  ],
  "defaultOutputModes": [
    "application/json"
  ],
  "skills": [
    {
      "id": "scan_dependencies",
      "name": "Scan a lockfile for exploitable vulnerabilities",
      "description": "POST /api/scan[?format=json|sarif|csv|md] with JSON {\"filename\",\"lockfile\"} or {\"packages\":[{\"ecosystem\",\"name\",\"version\"}]}, or the raw lockfile with ?filename=. Returns findings ranked by KEV status and EPSS. Needs a Pro/Team key (daily scan caps per plan).",
      "tags": [
        "sca",
        "vulnerability scanner",
        "lockfile",
        "cisa kev",
        "epss",
        "sarif"
      ],
      "examples": [],
      "inputModes": [
        "application/json"
      ],
      "outputModes": [
        "application/json"
      ]
    },
    {
      "id": "cisa_kev",
      "name": "CISA Known Exploited Vulnerabilities catalogue",
      "description": "GET /api/kev returns the CISA KEV catalogue in compact JSON with CORS enabled, cached for 1 hour. Free, no key.",
      "tags": [
        "sca",
        "vulnerability scanner",
        "lockfile",
        "cisa kev",
        "epss",
        "sarif"
      ],
      "examples": [
        "https://depmoor.cybermaxtools.com/api/kev"
      ],
      "inputModes": [
        "application/json"
      ],
      "outputModes": [
        "application/json"
      ]
    }
  ],
  "capabilities": {
    "streaming": false,
    "pushNotifications": false,
    "stateTransitionHistory": false,
    "extensions": null
  },
  "protocolVersion": "0.3.0",
  "provider": {
    "organization": "CyberMax",
    "url": "https://cybermaxtools.com/"
  }
}