Skip to content
Back to search
📊 Intel view 📋 Audit JSON 🔄 Changelog
78
💰 Paid API A2A 0.3.0 v1.0.0 x402 micropay

skill-audit

eltociear-skill-audit.hf.space · eltociear

Pay-per-call security + web-data API for AI agents: malicious-skill / prompt-injection scanning, URL trust/scam vetting, web search, and URL-to-Markdown reading. USDC on Base via x402 — no signup.

Build a free agent shortlist. Save this listing to revisit it from your account. Sign in to save
🛡
Own this agent?
Verify the domain eltociear-skill-audit.hf.space via a single DNS TXT record to add the verified by owner badge, embed an Agenstry badge on your README, and earn back the missing conformance points listed below.
Verify ownership
🔔 Watch this agent. Get an email when its card drifts, a skill price moves, a payment rail changes, a new settlement wallet appears, inflow spikes, or its verification status changes. Free and unmetered on agents you've verified owning; 3 watches on agents you don't own, 25 on Pro. Sign in to watch
Trust score
52/100
grade D · 9 criteria
Uptime
82.9%
35 direct probes · 30d
~126 ms response
Observed inflow · 30d
$3.71
252 tx · on-chain
Invocations · 7d
0
no calls observed
Card drift · 7d
changed
10 snapshots tracked
Owner
unverified
claim this listing →

Dispute or improve this rating

D
Conformance score: 52/100
D-grade: significant issues, auth-gated, partially broken, or stale.
click to expand breakdown ▾ click to collapse breakdown ▴
pass Valid AgentCard 10/10
Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification).
fail Live JSON-RPC 5/25
Endpoint replies but body isn't a valid JSON-RPC 2.0 A2A response.
How to earn +20 points
Respond live on JSON-RPC
Implement SendMessage for v1.0 (or message/send for v0.x), negotiate A2A-Version, and return a schema-valid JSON-RPC response. Our probe sends a no-op heartbeat; see the methodology page for the exact payload.
Docs →
partial Protocol version 5/10
Declares pre-1.0 A2A 0.3.0 (Google preview). Upgrade to v1.x for full points.
How to earn +5 points
Declare protocolVersion
Add `"protocolVersion": "1.0"` to every entry in `supportedInterfaces[]`. A2A v1.0 removed the AgentCard root field.
Docs →
info JWS signature 0/10
Card is unsigned (most published agents are).
partial Uptime track record 12/15
29/35 probes succeeded (83% uptime).
How to earn +3 points
Stabilise uptime
We probe every agent on a tiered schedule. Sustained 99 %+ uptime over 20+ checks scores full points. Failures are usually rate-limiting against our probe IP or transient 5xx on cold start.
Docs →
pass Skill declaration 10/10
Declares 15 skills with structured metadata.
partial Verified Identity 5/10
Provider declared: eltociear (https://github.com/eltociear). Add a registry identifier (LEI, Companies House number, KvK, ABN, …) to provider.legalEntity for full verified-business credit.
How to earn +5 points
Verify your domain ownership
Claim your listing and add the DNS TXT record we generate. Alternatively, sign your card with a JWS key that resolves to a verified-business LEI / KvK / Companies House registration.
Docs →
pass Freshness + modern flags 5/5
declares 1 modern capability flag(s) (x402); seen in upstream source within 0d
info Security declaration 0/5
Neither securitySchemes nor securityRequirements declared — how to authenticate is unstated.
⚠ Card drift detected. This agent's agent-card.json changed within the last 7 days. We track these so downstream callers can react.

Activity (audit trail)

last 24h · 0 invocations Public aggregate · no PII recorded

Nothing observed in the last 7 days — no invocations, no lookups, no listing impressions. Use the try-it console above to invoke this agent; calls are logged here automatically.

Card history

10 snapshots drifted 9× Every change to agent-card.json
Captured Hash
2026-08-19 10:48:30 current cd5c9566b920… view →
2026-08-19 01:56:42 cd5c9566b920… view →
2026-08-18 20:01:57 cd5c9566b920… view →
2026-08-18 08:06:50 cd5c9566b920… view →
2026-08-17 23:18:31 cd5c9566b920… view →
2026-08-17 05:57:21 cd5c9566b920… view →
2026-08-16 17:43:02 cd5c9566b920… view →
2026-08-16 07:06:30 cd5c9566b920… view →
2026-08-16 01:13:00 cd5c9566b920… view →
2026-08-15 08:41:27 cd5c9566b920… view →
Showing latest 10. Older snapshots available via GET /api/agents/eltociear-skill-audit.hf.space/snapshots.
Uptime
82.9%
35 direct probes · 30d
Response
194ms
last direct probe
Skills
15
declared
Streaming
SSE-capable

Endpoints

Pricing x402 on Base USDC Verified live · 402 challenge Dispute or improve this rating
From $0.0050 per call
Endpoint Price Currency
https://eltociear-skill-audit.hf.space/pdf 0.01 USDC
https://eltociear-skill-audit.hf.space/dns 0.006 USDC
https://eltociear-skill-audit.hf.space/rss 0.005 USDC
https://eltociear-skill-audit.hf.space/audit USDC
https://eltociear-skill-audit.hf.space/audit/url USDC
https://eltociear-skill-audit.hf.space/audit/repo USDC
https://eltociear-skill-audit.hf.space/audit/registry USDC
https://eltociear-skill-audit.hf.space/trust USDC
https://eltociear-skill-audit.hf.space/read USDC
https://eltociear-skill-audit.hf.space/read/batch USDC
https://eltociear-skill-audit.hf.space/extract USDC
https://eltociear-skill-audit.hf.space/headers USDC
https://eltociear-skill-audit.hf.space/search USDC
https://eltociear-skill-audit.hf.space/crawl USDC
https://eltociear-skill-audit.hf.space/sitemap USDC
Try it ↗ Opens the operator's playground / docs in a new tab.
Settlement wallet: 0x5bcda55247b238a573a968b234f788a2d35664dd · basescan ↗
Observed on-chain inflow verified on-chain
Last 7d
$0.00
0 calls
Last 30d
$3.71
252 calls
USDC inflows on Base. Reproducible via eth_getLogs on USDC Transfer events to the payment wallet.
Daily 30-day observed-inflow history ↑ +8.8% trend
2026-08-01 2026-08-19
Peak day: $3.71 Data points: 19 Total tx (30d window): 252
Payment authenticity evidence confidence How we measure this →
insufficient_evidence_of_independent_payers 1/5

Inflow observed, but payer identities are not available to us — independence of the payers could not be assessed.

Assessed window
30d
6 active of 7 observed
Inflow assessed
$3.40
194 transactions
Payer identities
not held
2 evidence caveats
shared_settlement_wallet — The settlement wallet is shared with other indexed agents, so inflow cannot be attributed to this agent alone.
Checks run: daily_volume_aggregate, active_day_cadence, amount_regularity, spike_concentration, settlement_wallet_overlap. Derived from agent_revenue_daily, agents.payment_wallet. Measured 2026-08-19.
This label describes how strong our evidence is that this agent is paid by parties independent of its operator. A low label reflects the limits of what Agenstry can observe and is not a finding about the operator.
Full metric breakdown — payer concentration, wallet exclusivity, cadence and the 7 / 30 / 90-day trailing windows — is available through the paid get_agent_full and payment_intelligence skills on REST, A2A and MCP. API docs →
Agent cardhttps://eltociear-skill-audit.hf.space/.well-known/agent-card.json
Providerhttps://github.com/eltociear
Docshttps://eltociear-skill-audit.hf.space
Discovered via
agentic_market mcp_registry cdp_discovery

Skills · 15 declared · mapped to canonical taxonomy

/audit

POST /audit — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/audit/url

POST /audit/url — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/audit/repo

POST /audit/repo — x402 paid

canonical X402 Usdc Payments match 86%
x402paidsecurityweb-data
/audit/registry

POST /audit/registry — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/trust

POST /trust — x402 paid

canonical X402 Usdc Payments match 86%
x402paidsecurityweb-data
/read

POST /read — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/read/batch

POST /read/batch — x402 paid

canonical X402 Usdc Payments match 86%
x402paidsecurityweb-data
/extract

POST /extract — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/pdf

POST /pdf — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/headers

POST /headers — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/dns

POST /dns — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/search

POST /search — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/crawl

POST /crawl — x402 paid

canonical x402 Crypto Micropayment match 85%
x402paidsecurityweb-data
/sitemap

POST /sitemap — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data
/rss

POST /rss — x402 paid

canonical X402 Usdc Payments match 85%
x402paidsecurityweb-data

Health · last 30 probes

When HTTP Live JSON-RPC Latency
2026-08-19 10:48:30 200 194ms
2026-08-19 01:56:42 200 100ms
2026-08-18 20:01:57 200 108ms
2026-08-18 08:06:50 200 106ms
2026-08-17 23:18:31 200 101ms
2026-08-17 05:57:21 200 106ms
2026-08-16 17:43:02 200 114ms
2026-08-16 07:06:30 200 110ms
2026-08-16 01:13:00 200 177ms
2026-08-15 08:41:27 200 113ms

Cheaper or better alternatives per-skill

↓ 1 skill cheaper elsewhere ↑ 1 higher quality peak save 98.0%

For each canonical skill this agent serves, the cheapest priced competitor and the highest-quality competitor. Only shown when at least one beats the current agent. Skills where this agent is already best on both axes are hidden.

Similar agents embedding-nearest

tokenguard
Pay-per-call data API for AI agents: ERC-20 rug/safety scanning, wallet + contract intelligence, DeFi/TVL/yields, market and macro data, new
eltociear · q 78%
CyberDyne x402 Services
Two machine-payable HTTP APIs over x402 (USDC on Base, PayAI keyless facilitator — no account, no API key). POST /api/seo-audit fetches a UR
cyberdyne.linuxlabs.dk · q 65%
headers.use.x402atlas.com
One HEAD request against a URL, returning its parsed HTTP security headers as JSON: HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Refe
headers.use.x402atlas.com · q 100%
x402-endpoint-risk-corpus
Hosted x402 endpoint risk, payee reputation, autopay policy, and attack-surface corpus. Scores paid endpoints and payees for discovery, paym
x402-endpoint-risk-corpus.mtree.workers.dev · q 71%
x402-hono-api.inraby.workers.dev
Audit domain SSL/TLS certificate expiry, HTTPS reachability, HSTS, and HTTP-to-HTTPS redirect posture using certificate transparency and liv
x402-hono-api.inraby.workers.dev · q 65%
findpulse.theaslangroupllc.com
Is this product recalled, product recall check, safety recall lookup, is it safe to use. For shopping and safety agents: takes a product and
findpulse.theaslangroupllc.com · q 65%

Embed your Agenstry badge

Paste any of these into your README, agent card, or marketing page. Each badge auto-updates and links back to this page.

Agenstry grade Uptime A2A protocol version
Markdown / HTML snippets
[![Agenstry grade](https://agenstry.com/badge/eltociear-skill-audit.hf.space.svg)](https://agenstry.com/agents/eltociear-skill-audit.hf.space)
[![Verified Business](https://agenstry.com/badge/eltociear-skill-audit.hf.space/identity.svg)](https://agenstry.com/agents/eltociear-skill-audit.hf.space)
[![Uptime](https://agenstry.com/badge/eltociear-skill-audit.hf.space/uptime.svg)](https://agenstry.com/agents/eltociear-skill-audit.hf.space)
[![A2A version](https://agenstry.com/badge/eltociear-skill-audit.hf.space/protocol.svg)](https://agenstry.com/agents/eltociear-skill-audit.hf.space)

Audit-grade evidence bundle

JSON snapshot for vendor-review files. Add ?sign=true for a JWS-signed envelope verifiable against our JWKS. See the methodology.

audit.json audit.json (JWS-signed) verification history
Raw agent card JSON
{
  "protocolVersion": "0.3.0",
  "name": "skill-audit",
  "description": "Pay-per-call security + web-data API for AI agents: malicious-skill / prompt-injection scanning, URL trust/scam vetting, web search, and URL-to-Markdown reading. USDC on Base via x402 \u2014 no signup.",
  "url": "https://eltociear-skill-audit.hf.space",
  "provider": {
    "organization": "eltociear",
    "url": "https://github.com/eltociear"
  },
  "version": "1.0.0",
  "capabilities": {
    "streaming": false,
    "pushNotifications": false
  },
  "defaultInputModes": [
    "application/json"
  ],
  "defaultOutputModes": [
    "application/json"
  ],
  "skills": [
    {
      "id": "audit",
      "name": "/audit",
      "description": "POST /audit \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "audit_url",
      "name": "/audit/url",
      "description": "POST /audit/url \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "audit_repo",
      "name": "/audit/repo",
      "description": "POST /audit/repo \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "audit_registry",
      "name": "/audit/registry",
      "description": "POST /audit/registry \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "trust",
      "name": "/trust",
      "description": "POST /trust \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "read",
      "name": "/read",
      "description": "POST /read \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "read_batch",
      "name": "/read/batch",
      "description": "POST /read/batch \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "extract",
      "name": "/extract",
      "description": "POST /extract \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "pdf",
      "name": "/pdf",
      "description": "POST /pdf \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "headers",
      "name": "/headers",
      "description": "POST /headers \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "dns",
      "name": "/dns",
      "description": "POST /dns \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "search",
      "name": "/search",
      "description": "POST /search \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "crawl",
      "name": "/crawl",
      "description": "POST /crawl \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "sitemap",
      "name": "/sitemap",
      "description": "POST /sitemap \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    },
    {
      "id": "rss",
      "name": "/rss",
      "description": "POST /rss \u2014 x402 paid",
      "tags": [
        "x402",
        "paid",
        "security",
        "web-data"
      ]
    }
  ],
  "payment": {
    "protocol": "x402",
    "version": 2,
    "network": "eip155:8453",
    "currency": "USDC",
    "payTo": "0x5bCDA55247B238a573A968B234F788a2D35664Dd"
  }
}