api.github.com F · 29/100
7 passed 24 warnings 3 failed audit-mnfs9m4z
SSL / TLS Valid HTTPS · 112ms
x402 discovery No x402 discovery found
Agent discovery No agent.json found
llms.txt HTTP 403 · 149ms
security.txt Not found · 151ms
CORS headers No CORS header (OK if server-to-server only) · 140ms
Security headers 4/5 present (all critical headers set) · 146ms
Response time 161ms avg · 161ms
MCP server No MCP endpoint found
API endpoints 2 endpoints found
Error handling Returns 403 for unknown paths · 180ms
x402 compliance No x402 payment gates found · 184ms
Rate limiting No rate-limit headers (may still be rate-limited server-side) · 185ms
Documentation No documentation endpoint
robots.txt AI crawlers HTTP 403 · 275ms
AI plugin manifest No ai-plugin.json (optional for ChatGPT/LLM integration)
OpenAPI spec No OpenAPI/Swagger spec found
Privacy / GDPR No privacy policy or GDPR endpoint
Status / Health No status or health endpoint
EU AI Act disclosure No AI model card or disclosure endpoint
Travel Rule (FATF) No Travel Rule endpoint or VASP disclosure
A2A Protocol (Google) No agent.json for A2A discovery
DNSSEC DNSSEC check failed
CAA Records 7 CAA record(s) found on github.com
DMARC / SPF DMARC p=quarantine
Auth maturity API key
API versioning /v1
Human oversight /agent/stop — restricted (EU AI Act Art. 14) · 269ms
Terms of Service No Terms of Service endpoint found
Content-Type No application/json responses (1 paths tested)
OASF Classification No OASF or agent service classification found
MCP Transport Security No MCP endpoint found
Wallet trust No wallet address found in x402 or agent.json
ERC-8004 on-chain No EVM wallet found to verify on-chain registration
29
27 issues to fix
Critical — 3
x402 discovery failed

No x402 discovery found

Agent discovery failed

No agent.json found

llms.txt failed

HTTP 403

Warning — 24
security.txt needs attention

Not found

CORS headers needs attention

No CORS header (OK if server-to-server only)

MCP server needs attention

No MCP endpoint found

Error handling needs attention

Returns 403 for unknown paths

x402 compliance needs attention

No x402 payment gates found

Rate limiting needs attention

No rate-limit headers (may still be rate-limited server-side)

Documentation needs attention

No documentation endpoint

robots.txt AI crawlers needs attention

HTTP 403

AI plugin manifest needs attention

No ai-plugin.json (optional for ChatGPT/LLM integration)

OpenAPI spec needs attention

No OpenAPI/Swagger spec found

Privacy / GDPR needs attention

No privacy policy or GDPR endpoint

Status / Health needs attention

No status or health endpoint

EU AI Act disclosure needs attention

No AI model card or disclosure endpoint

Travel Rule (FATF) needs attention

No Travel Rule endpoint or VASP disclosure

A2A Protocol (Google) needs attention

No agent.json for A2A discovery

DNSSEC needs attention

DNSSEC check failed

DMARC / SPF needs attention

DMARC p=quarantine

Auth maturity needs attention

API key

Terms of Service needs attention

No Terms of Service endpoint found

Content-Type needs attention

No application/json responses (1 paths tested)

OASF Classification needs attention

No OASF or agent service classification found

MCP Transport Security needs attention

No MCP endpoint found

Wallet trust needs attention

No wallet address found in x402 or agent.json

ERC-8004 on-chain needs attention

No EVM wallet found to verify on-chain registration

🔧 Fix 3 failing checks automatically

Probe Autofix connects to your GitHub repo and creates a PR with all the fixes. DNS fixes are applied directly via Cloudflare API. No manual coding needed.

⚡ Fix my API — $29 or included in Pro plan
Share on X Run new audit
🔒 Probe trust badge — unlock at score 60+

Fix your failing checks to earn the Probe verified badge. Display it on your site footer and README to show compliance.

⚡ Fix my API — $29 Current score: 29/100 → need 60+
Badge preview Shield preview
2026-04-01 08:27:54 UTC · getprobe.xyz