Agent Exchange x402 census and directory

x402 census · agent402.tools · d2cbb977a532 · JSON

POST /api/cve-lookup

live

Look up a CVE by id, or search CVEs by keyword or product: the NVD description, CVSS severity and vector (v4.0, v3.1, v2), CWE weaknesses, affected products and versions (CPE), and reference links, joined with the EPSS exploitation probability (next 30 days) and whether CISA lists it as a known exploited vulnerability (date added, due date, ransomware use). This product uses the NVD API but is no…

Verdict: live. The unpaid GET reached a valid 402. The live amount equals the catalog price.

Facts from the catalogs

FieldValue
URLhttps://agent402.tools/api/cve-lookup
MethodPOST
Price$0.005 USDC = 5000 atomic units of 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913
Networkeip155:8453 (base); also accepts eip155:137, eip155:42161, eip155:143, eip155:43114, eip155:1329, eip155:10, eip155:4663, eip155:42220, solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp, stellar:pubnet
payTo0xaBF4FAbd7c416fB67202E5f9002389Fc75e2a9D0
Selleragent402.tools
Catalogscdp (row updated 2026-09-30)
Listed since (lower bound)2026-09-30 (earliest catalog timestamp; catalogs report last-update times only)
Last catalog update2026-09-30
CDP quality counters2 calls and 2 unique payers in 30 days, last call 2026-09-30 (catalog-reported, not verified on chain)
Category (keyword rule)other/unknown
Templated pathno
x402Version in catalog2
Service name / tagsCVE lookup · data, security, cve, vulnerability, nvd

Unpaid probe (census of 2026-09-30)

FieldValue
Probed at2026-09-30T23:35:36.883Z
HEAD402
GET402
Verdictlive live: valid 402 to an unpaid GET
402 carried inbody
x402Version in the 4022
accepts[0]{"scheme":"exact","network":"eip155:8453","amount":"5000","payTo":"0xaBF4FAbd7c416fB67202E5f9002389Fc75e2a9D0","asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","maxTimeoutSeconds":300,"extra":{"name":"USD Coin","version":"2"}}
Live amount equals catalog priceyes
Live payTo equals catalog payToyes
extensions.bazaar in the 402yes
PAYMENT-REQUIRED headerno
WWW-Authenticate offerPayment id="3sAJ3SiCw6oOPn8NHNemdLDcAJr1
Content type / server / CORSapplication/json / railway-hikari / *
Latency1,350 ms
ErrorPayment required

No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.

On-chain facts for the payTo (public address)

FieldValue
Distinct payers120
Payments1,253
USDC volume$12.29
Median payment$0.003
First / last payment2026-06-18 / 2026-09-30
Sampler-shaped share of payments61.8%
Payers that are not samplers2
Sourceforensics-2026-09-30
Address0xaBF4FAbd7c416fB67202E5f9002389Fc75e2a9D0 (contract: EIP7702StatelessDeleGator)

Declared input and output (extensions.bazaar)

{
 "input": {
  "body": {
   "cve": "CVE-2024-3094"
  },
  "bodyType": "json",
  "method": "POST",
  "type": "http"
 },
 "output": {
  "type": "json",
  "example_truncated": true,
  "chars": 1461
 }
}

Try it (unpaid: shows the 402)

curl -si -X POST 'https://agent402.tools/api/cve-lookup' -H 'accept: application/json' -H 'content-type: application/json' --data '{}'

The catalog declares POST. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.

Paid checks (x402, USDC on Base)

GET https://bazaar.agentexchange.work/r/d2cbb977a532/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"d2cbb977a532"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.

Catalog references: agentic.market (CDP Bazaar front end) · this record as JSON · all resources on agent402.tools.