{"audit":{"version":"1.4","generated_at":"2026-08-19T18:34:26.214039+00:00","generated_by":"Agenstry","report_url":"https://agenstry.com/agents/quantumscan.io","methodology_url":"https://agenstry.com/methodology","verifier_jwks_url":"https://agenstry.com/.well-known/jwks.json","subject":{"domain":"quantumscan.io","name":"QuantumScan PQC Agent","url":"https://quantumscan.io/.well-known/agent.json"}},"identity":{"provider":{"organization":null,"url":null},"registry_verification":null,"signature":{"signed":false,"signature_valid":null}},"protocol":{"version":null,"supports_streaming":false,"supports_push_notifications":false},"operational":{"live_state":"live","live_responds":true,"last_status_code":200,"last_elapsed_ms":2802,"last_error":null},"track_record":{"first_seen":"2026-08-17T23:33:59.221504+00:00","last_checked":"2026-08-19T10:38:46.088039+00:00","last_seen_ok":"2026-08-19T10:38:46.088039+00:00","checks_total":4,"checks_ok":4,"uptime_pct":100.0,"archived":false,"archived_reason":null},"conformance":{"score":45,"grade":"D","summary":"D-grade: significant issues, auth-gated, partially broken, or stale.","criteria":[{"key":"valid_card","label":"Valid AgentCard","points":10,"max_points":10,"status":"pass","detail":"Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification)."},{"key":"live_responds","label":"Live JSON-RPC","points":25,"max_points":25,"status":"pass","detail":"Endpoint responds to a negotiated A2A SendMessage probe (answers in ~178 ms)."},{"key":"protocol_version","label":"Protocol version","points":0,"max_points":10,"status":"fail","detail":"No protocolVersion in card."},{"key":"signature","label":"JWS signature","points":0,"max_points":10,"status":"info","detail":"Card is unsigned (most published agents are)."},{"key":"uptime","label":"Uptime track record","points":0,"max_points":15,"status":"info","detail":"Only 4 probes so far, need ≥5 for an uptime grade."},{"key":"skills","label":"Skill declaration","points":6,"max_points":10,"status":"partial","detail":"Declares 1 skill, usable but thin."},{"key":"verified_identity","label":"Verified Identity","points":0,"max_points":10,"status":"fail","detail":"No provider organisation declared. Anonymous agent."},{"key":"freshness","label":"Freshness + modern flags","points":4,"max_points":5,"status":"pass","detail":"seen in upstream source within 0d"},{"key":"security","label":"Security declaration","points":0,"max_points":5,"status":"info","detail":"Neither securitySchemes nor securityRequirements declared — how to authenticate is unstated."}]},"card_read":{"findings":[{"field":"skills[0].examples[0]","problem":"Input should be a valid string","action":"coerced","detail":"kept verbatim as text"}],"clean":false,"source_url":"https://quantumscan.io/.well-known/agent.json"},"skills":[{"id":"pqc-scan","name":"PQC Vulnerability Scan","description":"Scans a GitHub, GitLab, or Bitbucket repository for post-quantum cryptography vulnerabilities. Returns a risk score (0–100), list of vulnerable primitives, migration targets (ML-KEM/ML-DSA/SLH-DSA), and a machine-readable CBOM manifest compliant with EIP-7789 and CycloneDX CBOM 1.6.","tags":["security","cryptography","pqc","cbom","nist-fips","quantum","blockchain"],"examples":["{\"input\":\"Scan https://github.com/example/myapp for quantum vulnerabilities\",\"description\":\"Returns risk score (0–100), list of vulnerable primitives, and CBOM manifest\"}"],"inputModes":["text"],"outputModes":["text","data"]}],"provenance":[{"source":"mcp_registry","first_seen":"2026-08-17T23:33:59.221504+00:00"}],"recent_probes":[{"fetched_at":"2026-08-19T10:38:46.088039+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":2802,"live_responds":true},{"fetched_at":"2026-08-18T18:11:36.786452+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":2686,"live_responds":true},{"fetched_at":"2026-08-18T08:04:02.573159+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":2742,"live_responds":true},{"fetched_at":"2026-08-17T23:33:59.221504+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":2542,"live_responds":true}],"catalog_attestation":null,"operator_revenue_evidence":{"evidence_class":"operator_submitted","authenticity":{"rung":"no_operator_evidence","rank":0,"why":"No verifiable operator evidence has been submitted for this agent.","thresholds":{"min_independent_payers":3,"min_verified_usd":25.0},"engine_table":"agent_authenticity","merge_rule":"max(existing_rank, rank)"},"metric_metadata":{"provenance":"operator_submitted_evidence","confidence":"attested","coverage":{"numerator":0},"as_of":"2026-08-19T18:34:26.221316+00:00","definition":"Revenue proofs submitted by the verified owner and re-checked by Agenstry against the settlement chain or the operator's own Stripe account. Only independently confirmed proofs are counted."},"counts":{"retained":0,"verified":0,"unverifiable":0},"verified":{"gross_usd":0.0,"transactions":0,"independent_payers":0},"detail_url":"https://agenstry.com/api/agents/quantumscan.io/evidence","dispute_url":"https://agenstry.com/agents/quantumscan.io/dispute"},"verification_history":[]}