Fetchgate API
activeFetch clean Markdown or structured metadata from any URL, server-side, with scripts/nav/ad boilerplate stripped out. Also a machine-payable storefront: GET /v1/products for the catalog, GET /v1/buy/:id to pay per product via x402 (USDC on Base) and receive a signed download URL.
- Transactions · 30d
- 0
- Volume · 30d
- $0.00
- Unique buyers · 30d
- 1
- Uptime · 30d
- 100.0%
- Latency p50
- 14ms
- Reported calls · 30d
- 4
Endpoints (12 live)
GET/v1/x402/search— Search x402 paid APIs that are live and actually bought: only endpoints that answered a real x402 challenge and had repeat, multi-payer settled demand in the last 30 days. Use to find a working paid API for a task without wading through dead and farmed listings. (0.005 USDC on Base)GET/v1/x402/check— Should an agent pay this x402 endpoint? One live probe of its payment challenge plus its settled-call and unique-payer history, price consistency and domain reputation, returned as ok / caution / avoid with reasons. Use before paying an unfamiliar x402 endpoint. (0.01 USDC on Base)GET/v1/scan— Prompt-injection scan: fetch a URL (or POST text) and check it against 120 detection rules for injection, tool hijacking, data exfiltration and hidden instructions, including text hidden in HTML comments and attributes. Use before letting an agent act on untrusted web content. (0.003 USDC on Base)GET/v1/meta— Fetch a URL server-side and return structured metadata. (0.001 USDC on Base)GET/v1/buy/mcp-tool-inventory-2026-08-28— MCP Live Tool Inventory — 2026-08-28 edition: Every remote server in the official MCP registry (15,329 URLs) probed read-only via initialize → tools/list, and everything the 8,235 live ones returned: 140,284 tool names, titles, full descriptions, input-schema keys and annotations; 5,462 server-level instructions strings verbatim; per-server reachability, protocol version and outcome; and 24k+ tool-poisoning audit flags with snippets. JSONL + summary.json + schema. The real-world base rate for allow-listing servers, name-collision checks, and building or testing tool-description detectors against live text instead of synthetic samples. (29 USDC on Base)GET/v1/buy/prompt-injection-test-corpus— Prompt-Injection & Tool-Hijack Test Corpus: 156 structured, labeled adversarial test cases across seven categories (direct injection, indirect injection, tool hijacking, data exfiltration, system-prompt leaks, jailbreak/roleplay, encoding obfuscation) for evaluating whether an agent or LLM app resists prompt injection and tool-misuse attacks. Ships with a JSON Schema, a dependency-light Python evaluation harness, and a guide covering taxonomy, scoring, limitations, and responsible use. (29 USDC on Base)GET/v1/buy/x402-registry-2026-10-04— x402 Services & Facilitator Registry — 2026-10-04 edition: The x402 market, measured, refreshed for October: every resource in Coinbase's x402 Bazaar discovery index (27,681 paid endpoints, up 87% in five weeks) with the index's own 30-day counters (settled calls, unique payers, last call), one read-only probe per URL (live 402 or not, version, live price), an EIP-712 signing-domain check on every USDC-on-Base option, per-resource revenue proxy, payTo addresses, networks, schemes and prices — plus a month-over-month changes file (new and vanished domains, biggest gainers and losers), 21 facilitators with live /supported results and the curated 118-service table. JSONL + JSON + schema + README. Market sizing, competitor research, facilitator choice, pricing and listing validation from one file. (15 USDC on Base)GET/v1/buy/agent-eval-harness-templates— Agent Eval Harness Templates: A ready-to-use starter kit for evaluating an agent or LLM application fast: a JSON-Schema test-case format, 40 example cases across four suites (task completion, tool selection, refusal/safety, regression), a pointwise LLM-as-judge scorer with documented bias mitigations, and a dependency-light Python CLI runner that produces a scored JSON report plus a human-readable summary. Grounded in current agent-eval practice; bring-your-own-model via a one-file adapter interface. (39 USDC on Base)GET/v1/buy/agent-web-report-2026-q3— The Agent Web, Measured — 2026 Q3 edition: A 25-page analyst report on the machine-facing web, built entirely from first-hand measurement: all 15,329 remote MCP registry URLs probed (54% answer, 45.5% outside two template fleets; 140,284 tool descriptions scored — the textbook tool-poisoning payload appears zero times, 47 hosts carry concealment directives, all 51 quoted verbatim), all 14,820 x402 Bazaar endpoints probed and the index's own counters summed into the first published revenue ceiling for the CDP-facilitated x402 market (~$314/day), all 21 facilitators probed, and a 60-crawler census from a live storefront. 22 charts, 10 tables, twelve conclusions, every number generated from the underlying datasets. PDF + README + licence. Single-organisation licence; includes the +30/+60/+90-day re-probe summaries and the 2026 Q4 edition. (149 USDC on Base)GET/v1/buy/prompt-injection-defenses-playbook— Prompt-Injection Defenses Playbook & Detection Ruleset: The defense counterpart to our attack corpus: a layered playbook for hardening an agent/LLM app against prompt injection, tool hijacking, data exfiltration, system-prompt leaks, jailbreaks, and encoding obfuscation. Includes a 6-layer defense taxonomy mapped to attack categories, 119 machine-readable detection rules (85 base + 34 extended, each with honest false-positive notes), and a stdlib-only Python detector with two profiles (strict for tool arguments and output, content for web pages and documents), decode-and-rescan for obfuscated instructions, and hidden-HTML-text scanning. Measured: held-out recall 53% strict / 38% content on the 156-case corpus; 0.35% false positives on 1,714 unseen top-site homepages (the base rules as written flag 69%). Full method and limits in MEASUREMENTS.md. Grounded in OWASP LLM/MCP guidance. (39 USDC on Base)GET/v1/buy/mcp-registry-2026-08-22— MCP Server Registry Snapshot — 2026-08-22 edition: A curated, machine-readable snapshot of 400 production/community Model Context Protocol (MCP) servers as of 2026-08-22: category, transport, auth requirements, repo/package URLs, source-directory cross-references, and verification dates for every entry. Saves an agent or builder shopping for MCP tooling the work of crawling and reconciling multiple MCP directories (official registry, Smithery, Glama, PulseMCP, mcp.so) itself. (19 USDC on Base)GET/v1/buy/x402-quickstart-2026-08-23— x402 Quickstart Kit — 2026-08-23 edition: A dependency-minimal reference implementation of the x402 HTTP micropayment protocol ("exact" scheme, EIP-3009, EVM/USDC): seller-side payment middleware for Cloudflare Workers/Hono and plain Node/Express, generalized from a live production x402 seller, plus buyer-side client code in TypeScript (viem) and Python (eth_account/web3.py) that signs a real EIP-3009 payment authorization and retries a 402 automatically. Includes a practical guide covering facilitator selection, common integration pitfalls, and a go-live checklist. (7 USDC on Base)
MCP tools (9)
Fetchgate https://fetchgate.dev/mcp
check_x402_endpoint— Decide whether an unfamiliar pay-per-call (x402) endpoint is worth paying. Sends one unpaid GET to read its live payment challenge (format, price, network, signing domain), then adds its settled-call and unique-payer history, whether its live price matches its listed price, and its domain's reputation (template farm or not, share of its endpoints that answer). Returns a verdict — ok, caution, avoid or unknown — with the reasons. Nothing is paid. Use before an agent sends money to an endpoint it has not used before. Wraps GET /v1/x402/check. Same free daily tier as read_url; $0.01/call via x402 after that.get_agent_census— Return the Agent Web Crawler Census: every named bot observed crawling a live, publicly-listed x402 + MCP endpoint over a 24-hour window, each with a case-insensitive regex `matcher` and a behavioural `category` (liveness-monitor, directory-crawler, price-scraper, security-research, ai-training, ...) so you can classify your own access log. Observed first-hand, not aggregated from third-party bot lists. Notable finding: of the named agent-web crawlers in the census, zero have ever presented a payment, and several declare that in their own User-Agent string. Wraps GET /v1/agent-census.json. Free, unmetered, no payment required. CC BY 4.0.get_metadata— Fetch a URL server-side and return structured metadata: title, description, canonical URL, OpenGraph/Twitter card fields, favicon URL, language, and published/modified timestamps when present. Wraps GET /v1/meta. Same free tier as read_url; priced at $0.001/call via x402 once exhausted.get_purchase_info— Look up a product by id (from list_products) and explain exactly how to buy it: its price, and the x402 purchase flow step by step (the 402 challenge shape, the PAYMENT-SIGNATURE header, and the signed download URL you get back on success). Does not take payment itself — informational only, mirroring the pre-payment leg of GET /v1/buy/:id.list_products— List Fetchgate's digital-goods catalog: id, name, description, priceUsd, currency, file format, size, sha256, and a walletless humanUrl checkout link for each product for sale. Wraps GET /v1/products. Free, no rate limit, no payment required just to browse.read_url— Fetch a URL server-side and return its main content as clean Markdown, with scripts/styles/nav/ads/boilerplate stripped out. Wraps GET /v1/read. Free tier: 30 calls/day per caller; priced at $0.002/call via x402 once that's exhausted (see get_purchase_info for how the x402 flow works). Only http:// and https:// URLs are accepted; private/internal-network hosts are rejected.scan_for_prompt_injection— Check untrusted content BEFORE acting on it. Give a `url` to fetch and scan a web page (its visible text and, separately, text hidden in HTML comments, alt/title/aria attributes and meta tags), or give `text` to scan a tool result, retrieved document or message you already have. Runs 120 detection rules covering instruction override, tool hijacking, data exfiltration, system-prompt extraction, jailbreak framing and encoding tricks (zero-width and Unicode-tag smuggling, homoglyphs, base64). Returns a 0-100 risk score, a recommended action (block / review / flag / none) and each match with its evidence. Heuristic: a clean result means nothing obvious tripped, not that the content is safe. Wraps /v1/scan. Same free daily tier as read_url; $0.003/call via x402 after that.scan_mcp_server— Connect to a remote Streamable HTTP MCP server, fetch its tools/list (sends only initialize, notifications/initialized and tools/list — never tools/call) and scan every tool name, description, parameter description and the server's initialize `instructions` string for tool-poisoning patterns: hidden-instruction markers, invisible Unicode, directives aimed at the model, credential/secret references, exfiltration shapes and instructions about other tools. Returns per-tool findings with severity, excerpt and a score band. Use it before installing or trusting a third-party server. Heuristic: a clean result means nothing obvious in what the server declares about itself, not that it is safe. Wraps GET /v1/mcp-scan. Free, rate-limited per caller; private/internal-network hosts are rejected.search_x402_services— Search for a pay-per-call (x402) API that does what you need. Unlike a raw directory, results are limited to endpoints that answered a real x402 payment challenge AND had at least 5 settled calls from at least 2 distinct payers in the last 30 days, so dead, never-bought and template-farm listings are left out. Each result has the endpoint URL, method, price in USD, networks, 30-day calls and unique payers, and a flag when the payer count looks farmed. Use it when you need a paid API (search, scraping, enrichment, LLM, market data…) and want one that demonstrably works. Wraps GET /v1/x402/search. Same free daily tier as read_url; $0.005/call via x402 after that.
First seen · last seen