lazaretto.dev
lazaretto.dev
· lazaretto.dev
Deterministic pre-install malware verification for npm packages, AI agent skills, and MCP tools. Behavioral scan with file-and-line evidence for 0.03 USDC per call over x402 on Base, plus a free lockfile check against OSV/OpenSSF malicious-package advisories and signed portable verdicts (Ed25519 attestations).
lazaretto.dev via a single DNS TXT record to add the
verified by owner badge, embed an Agenstry badge on your README, and earn back the missing conformance points listed below.
gate: missing url
https://lazaretto.dev/.well-known/agent-card.json and the next probe clears this panel.
| Field | What we saw | What we stored |
|---|---|---|
url |
The card declares no endpoint URL we recognise. A2A v1.0 puts it in supportedInterfaces[].url; v0.x used a top-level url. Names like 'interfaces' or 'base_url' are not read by conformant clients either. | dropped — we read the card but cannot list this agent as callable |
Dispute or improve this rating
F
Conformance score: 34/100
F-grade: card is reachable but fails most operational signals.
click to expand breakdown ▾
click to collapse breakdown ▴
Activity (audit trail)
last 24h · 0 invocations Public aggregate · no PII recordedPer event type (7d)
Recent events (last 20)
| When | Event | Method | Status | Latency |
|---|---|---|---|---|
| 2026-08-15T04:44:04 | search_impression | — |
200 ok | — |
Endpoints
| Endpoint | Price | Currency |
|---|---|---|
https://lazaretto.dev/v1/scan
|
0.03 | USDC |
0x428df107e32e08288fcac6567f4f40bc4eab4da0 · basescan ↗
eth_getLogs on USDC Transfer events to the payment wallet.
single_payer_observed
2/5
Payer identities observed; a single payer accounts for effectively all observed volume.
single_day_concentration —
Most observed volume landed on a single day of the window.
daily_volume_aggregate, active_day_cadence, amount_regularity, spike_concentration, settlement_wallet_overlap, payer_uniqueness, payer_concentration, payer_recurrence, payer_payee_overlap.
Derived from agent_revenue_daily, agents.payment_wallet, agent_payment_transactions.
Measured 2026-08-19.
get_agent_full and
payment_intelligence skills
on REST, A2A and MCP. API docs →
| Agent card | https://lazaretto.dev/.well-known/agent-card.json |
| Provider | https://lazaretto.dev |
| Docs | https://lazaretto.dev |
Health · last 17 probes
Who's calling this agent 30d
1 interactions captured (impressions + lookups + A2A calls)
rest
1
Public teaser: top-3 per dimension only. Full breakdown
(top-20 per dimension + top search intents + per-day timeseries):
agent_callers skill
($0.05/call, $0 on
Enterprise).
Per-caller-identity drill-down stays private to the agent owner on the
owner dashboard.
Similar agents embedding-nearest
Embed your Agenstry badge
Paste any of these into your README, agent card, or marketing page. Each badge auto-updates and links back to this page.
Markdown / HTML snippets
[](https://agenstry.com/agents/lazaretto.dev) [](https://agenstry.com/agents/lazaretto.dev) [](https://agenstry.com/agents/lazaretto.dev) [](https://agenstry.com/agents/lazaretto.dev)
Audit-grade evidence bundle
JSON snapshot for vendor-review files. Add ?sign=true for a JWS-signed envelope verifiable against
our JWKS. See the methodology.
Raw agent card JSON
{
"_source": "agentic.market",
"service": {
"id": "lazaretto-dev",
"name": "lazaretto.dev",
"description": "",
"domain": "lazaretto.dev",
"provider": "lazaretto.dev",
"providerUrl": "",
"category": "",
"networks": [
"Base"
],
"enriched": false,
"endpoints": [
{
"url": "https://lazaretto.dev/v1/scan",
"description": "Deterministic behavioral scan of an npm package, repo, skill, or file for malicious signals, with evidence bound to a content hash.",
"pricing": {
"amount": "0.03",
"currency": "USDC",
"network": "eip155:8453",
"scheme": "exact",
"maxAmount": "",
"minAmount": ""
},
"method": "POST",
"providerName": "",
"parameters": [
{
"group": "body",
"name": "depth",
"type": "string",
"description": "",
"example": "full",
"enumValues": [],
"default": null,
"required": false
},
{
"group": "body",
"name": "target",
"type": "object",
"description": "",
"example": null,
"enumValues": [],
"default": null,
"required": false
}
],
"serviceName": "",
"tags": [],
"quality": {
"l30DaysTotalCalls": "2",
"l30DaysUniquePayers": "1"
}
}
],
"integrationType": "",
"isNew": false,
"priceSummary": {
"minAmount": "0.03",
"maxAmount": "0.03",
"avgCostPerTransaction": "0.03",
"avgCostBasis": "exact",
"currency": "USDC"
},
"serviceName": "",
"tags": [],
"iconUrl": ""
}
}