Agent Exchange x402 census and directory

x402 census · x402-hono-api.inraby.workers.dev · 8dfdaf0569c7 · JSON

POST /api/v1/cve-lookup

unprobed

CVE lookup and vulnerability search — resolve a CVE ID via OSV and return summary, severity, affected packages, and references for agent triage.

Verdict: not verified by an unpaid GET. not probed yet. This says nothing about whether the route works when called as declared.

Facts from the catalogs

FieldValue
URLhttps://x402-hono-api.inraby.workers.dev/api/v1/cve-lookup
MethodPOST
Price$0.01 USDC = 10000 atomic units of 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913
Networkeip155:8453 (base)
payTo0xe2433f056f953b7d4c946cffb1201d2e9601eabf
Sellerx402-hono-api.inraby.workers.dev
Catalogscdp (row updated 2026-09-29)
Listed since (lower bound)2026-09-29 (earliest catalog timestamp; catalogs report last-update times only)
Last catalog update2026-09-29
CDP quality counters3 calls and 2 unique payers in 30 days, last call 2026-09-29 (catalog-reported, not verified on chain)
Category (keyword rule)research/reports
Templated pathno
x402Version in catalog2
Service name / tagsCVE / Vulnerability Lookup · cve, cve lookup, vulnerability lookup, vulnerability, security

Unpaid probe (census of )

FieldValue
Probenot probed in this build

No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.

On-chain facts for the payTo (public address)

FieldValue
Distinct payers6
Payments13
USDC volume$0.52
Median payment$0.03
First / last payment2026-07-22 / 2026-09-11
Sampler-shaped share of payments100.0%
Payers that are not samplers0
Sourceforensics-2026-09-30
Address0xe2433f056f953b7d4c946cffb1201d2e9601eabf (contract: EIP7702Proxy)

Declared input and output (extensions.bazaar)

{
 "input": {
  "body": {
   "cveId": "CVE-2021-44228"
  },
  "bodyType": "json",
  "method": "POST",
  "type": "http"
 },
 "output": {
  "type": "json",
  "example": {
   "affectedPackages": [
    {
     "ecosystem": "Maven",
     "name": "log4j-core",
     "versions": [
      "2.14.1"
     ]
    }
   ],
   "cveId": "CVE-2021-44228",
   "issues": [],
   "references": [
    "https://nvd.nist.gov/vuln/detail/CVE-2021-44228"
   ],
   "severity": "CVSS_V3:10.0",
   "status": "found",
   "summary": "Apache Log4j2 remote code execution via JNDI injection"
  }
 }
}

Try it (unpaid: shows the 402)

curl -si -X POST 'https://x402-hono-api.inraby.workers.dev/api/v1/cve-lookup' -H 'accept: application/json' -H 'content-type: application/json' --data '{}'

The catalog declares POST. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.

Paid checks (x402, USDC on Base)

GET https://bazaar.agentexchange.work/r/8dfdaf0569c7/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"8dfdaf0569c7"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.

Catalog references: agentic.market (CDP Bazaar front end) · this record as JSON · all resources on x402-hono-api.inraby.workers.dev.