x402 census · netintel.dev · d78ff2ed9938 · JSON
GET /breach-check/password
live
Check if a password has appeared in known data breaches using the HaveIBeenPwned Pwned Passwords API with k-anonymity — the full password is never transmitted, only a 5-character SHA-1 hash prefix — returns breach count and a risk classification so agents can enforce password policies without storing or exposing credentials.
Verdict: live. The unpaid GET reached a valid 402. The live amount equals the catalog price.
Facts from the catalogs
| Field | Value |
|---|---|
| URL | https://netintel.dev/breach-check/password |
| Method | GET |
| Price | $0.01 USDC = 10000 atomic units of 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913 |
| Network | eip155:8453 (base); also accepts solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp |
| payTo | 0xdaDc335482AD545296Fd7b28518A251fFCbEb9Df |
| Seller | netintel.dev |
| Catalogs | cdp (row updated 2026-09-28) |
| Listed since (lower bound) | 2026-09-28 (earliest catalog timestamp; catalogs report last-update times only) |
| Last catalog update | 2026-09-28 |
| CDP quality counters | 2 calls and 2 unique payers in 30 days, last call 2026-09-28 (catalog-reported, not verified on chain) |
| Category (keyword rule) | identity/trust/kyc |
| Templated path | no |
| x402Version in catalog | 2 |
| Service name / tags | NetIntel · breach check, password security, credential leak, security, osint |
Unpaid probe (census of 2026-10-01)
| Field | Value |
|---|---|
| Probed at | 2026-10-01T00:01:12.288Z |
| HEAD | 402 |
| GET | 402 |
| Verdict | live live: valid 402 to an unpaid GET |
| 402 carried in | header+body |
| x402Version in the 402 | 2 |
| accepts[0] | {"scheme":"exact","network":"eip155:8453","amount":"10000","payTo":"0xdaDc335482AD545296Fd7b28518A251fFCbEb9Df","asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","maxTimeoutSeconds":300,"extra":{"name":"USD Coin","version":"2"}} |
| Live amount equals catalog price | yes |
| Live payTo equals catalog payTo | yes |
| extensions.bazaar in the 402 | yes |
| PAYMENT-REQUIRED header | yes |
| WWW-Authenticate offer | none |
| Content type / server / CORS | application/json / railway-hikari / * |
| Latency | 2,284 ms |
| Error | Payment required |
No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.
On-chain facts for the payTo (public address)
| Field | Value |
|---|---|
| Distinct payers | 121 |
| Payments | 848 |
| USDC volume | $23.56 |
| Median payment | $0.01 |
| First / last payment | 2026-06-05 / 2026-09-30 |
| Sampler-shaped share of payments | 100.0% |
| Payers that are not samplers | 0 |
| Source | forensics-2026-09-30 |
| Address | 0xdaDc335482AD545296Fd7b28518A251fFCbEb9Df |
Declared input and output (extensions.bazaar)
{
"input": {
"method": "GET",
"queryParams": {
"password": "test123"
},
"type": "http"
},
"output": {
"type": "json",
"example": {
"breach_count": 34521,
"breached": true,
"findings": [
{
"deduction": -100,
"detail": "Password found 34521 times in known data breaches",
"rule": "critical_breach"
}
],
"grade": "F",
"risk_level": "critical",
"score": 0
}
}
}
Try it (unpaid: shows the 402)
curl -si -X GET 'https://netintel.dev/breach-check/password' -H 'accept: application/json'
The catalog declares GET. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.
Paid checks (x402, USDC on Base)
GET https://bazaar.agentexchange.work/r/d78ff2ed9938/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"d78ff2ed9938"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.
Catalog references: agentic.market (CDP Bazaar front end) · this record as JSON · all resources on netintel.dev.