x402 census · payai.agentstools.dev · e5e4c07594a2 · JSON
POST /ci/scan
method-gated
Static security scan of a CI/CD pipeline config: GitHub Actions, GitLab CI or CircleCI. Detects unpinned actions / images / orbs, template and environment injection, dangerous triggers, over-broad workflow-token permissions, secrets leaked to logs, cache poisoning and more. Returns a verdict (pass, caution, block), a 0-100 risk score and per-finding rule, severity, object, location and a concrete…
Verdict: not verified by an unpaid GET. 405/400: the 402 sits behind the declared method. This says nothing about whether the route works when called as declared.
Facts from the catalogs
| Field | Value |
|---|---|
| URL | https://payai.agentstools.dev/ci/scan |
| Method | POST |
| Price | $0.02 USDC = 20000 atomic units of EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v |
| Network | solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp (solana) |
| payTo | AytHnvc6bZx1ALTy7b5Px7hcavoSYszG9aeKvDcZ8R1u |
| Seller | payai.agentstools.dev |
| Catalogs | payai (row updated 2026-09-30) |
| Listed since (lower bound) | 2026-09-30 (earliest catalog timestamp; catalogs report last-update times only) |
| Last catalog update | 2026-09-30 |
| CDP quality counters | not in the CDP catalog |
| Category (keyword rule) | trading-signals |
| Templated path | no |
| x402Version in catalog | 2 |
| Service name / tags | cicd-scan · cicd, github-actions, gitlab, circleci, security |
Unpaid probe (census of 2026-09-30)
| Field | Value |
|---|---|
| Probed at | 2026-09-30T23:27:34.303Z |
| HEAD | 405 |
| GET | 405 |
| Verdict | method-gated 405/400: the 402 sits behind the declared method |
| 402 carried in | n/a |
| x402Version in the 402 | n/a |
| accepts[0] | none |
| Live amount equals catalog price | not comparable |
| Live payTo equals catalog payTo | not comparable |
| extensions.bazaar in the 402 | no |
| PAYMENT-REQUIRED header | no |
| WWW-Authenticate offer | none |
| Content type / server / CORS | application/json / uvicorn / none |
| Latency | 2,614 ms |
| Error | none |
No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.
On-chain facts for the payTo (public address)
| Field | Value |
|---|---|
| Settlement history | unresolved: non-EVM payTo; only Base is covered |
Declared input and output (extensions.bazaar)
{
"input": {
"body": {
"format": "github-actions",
"content": "name: ci\non: pull_request_target\njobs:\n build:\n runs-on: ubuntu-latest\n steps:\n - uses: actions/checkout@v4\n with:\n ref: ${{ github.event.pull_request.head.ref }}\n - run: echo \"${{ github.event.issue.title }}\"\n"
},
"type": "http",
"method": "POST",
"bodyType": "json"
},
"output": {
"type": "json",
"example_truncated": true,
"chars": 847
}
}
Try it (unpaid: shows the 402)
curl -si -X POST 'https://payai.agentstools.dev/ci/scan' -H 'accept: application/json' -H 'content-type: application/json' --data '{}'
The catalog declares POST. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.
Paid checks (x402, USDC on Base)
GET https://bazaar.agentexchange.work/r/e5e4c07594a2/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"e5e4c07594a2"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.
Catalog references: PayAI listing status · this record as JSON · all resources on payai.agentstools.dev.