TrustSource API

active

x402-powered content-safety, domain, SSL, security, and crawler-policy intelligence for AI agents. Seven endpoints return structured trust intelligence on any domain or URL — no API keys, no accounts. Pay per use with USDC via the x402 protocol on Base Mainnet.

DataBasex402 v2exacttrustsource.cc ↗︎

Settled via Coinbase.

Transactions · 30d
20
Volume · 30d
$0.043
Unique buyers · 30d
7
Uptime · 30d
100.0%
Latency p50
106ms
Reported calls · 30d
17

Endpoints (7 live)

  • GET /headers — Audit a site's HTTP security headers before embedding, scraping, or trusting it. Returns an A+ to F grade and 0–100 score with structured analysis of HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, and Cross-Origin headers, plus server-header disclosure. A defense-in-depth signal for agents reviewing a site's security posture — not a vulnerability scan. (0.003 USDC on Base)
  • GET /sslcheck — Check whether a domain's TLS/SSL certificate is valid, trusted, and not expiring before connecting to it. Performs a live handshake and returns a 0–100 score and tier (VALID/WEAK/EXPIRING/EXPIRED/UNTRUSTED/INVALID) with chain trust, days-to-expiry, signature algorithm, TLS version, and cipher quality. Use before submitting credentials, posting to a webhook, or following a payment link, to catch expired, self-signed, or MITM-risk certificates. (0.002 USDC on Base)
  • GET /urlcheck — Checks whether a URL is trustworthy or suspicious. (0.01 USDC on Base)
  • GET /robots — Checks the site’s robots.txt rules and crawl permissions. (0.002 USDC on Base)
  • GET /emailtrust — Scores email trustworthiness and signals likely legitimacy. (0.003 USDC on Base)
  • GET /trustscore — Returns a trust score for an address or entity. (0.003 USDC on Base)
  • GET /safefetch — Fetch a URL safely and get back sanitized, agent-ready page text plus a prompt-injection verdict (SAFE / REVIEW / BLOCK). Detects instructions hidden in markup, invisible Unicode, homoglyph and encoded payloads, delimiter spoofing and data-exfiltration bait — so an agent never ingests hostile content. Use before feeding any fetched page into an LLM. (0.01 USDC on Base)

First seen · last seen · last active