ttc.box F · 41/100
17 passed 19 warnings 8 failed audit-mnhuejph
SSL / TLS Valid HTTPS · 1077ms
x402 discovery /.well-known/x402.json found · v2 · solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp · payTo declared · 3 protocol(s) · 1209ms
Agent discovery /.well-known/agent.json — TTC · 1240ms
llms.txt Found (2786 chars) · 1489ms
security.txt Found · 1075ms
CORS headers origin: * (open — OK for public APIs) · 1148ms
Security headers 5/5 present (all critical headers set) · 1148ms
Response time 979ms avg · 979ms
MCP server /mcp active (405) · 2685ms
API endpoints 1 endpoints found
Error handling 404 returned · 1268ms
x402 compliance No x402 payment gates found · 1278ms
Rate limiting No rate-limit headers (may still be rate-limited server-side) · 1304ms
Documentation /docs found · 1713ms
robots.txt AI crawlers 5 AI crawlers configured: GPTBot, Claude-Web, ChatGPT-User, Anthropic, PerplexityBot · 1455ms
AI plugin manifest /.well-known/ai-plugin.json — "TTC Trading" · 1335ms
OpenAPI spec /openapi.yaml found but invalid JSON · 667ms
Privacy / GDPR /privacy found (83694 chars) · 1379ms
Status / Health No status or health endpoint
EU AI Act disclosure No AI model card or disclosure endpoint
Travel Rule (FATF) No Travel Rule endpoint or VASP disclosure
A2A Protocol (Google) Agent Card — url, 6 skills, capabilities, v1.0.0, TTC, auth: x402, streaming · 1483ms
DNSSEC DNSSEC check failed
CAA Records CAA check failed
DMARC / SPF No DMARC or SPF records found
Auth maturity No authentication detected — open API or check failed
API versioning No versioned paths or version headers found
Human oversight No human oversight / kill switch endpoint (EU AI Act Art. 14)
Terms of Service No Terms of Service endpoint found
Content-Type No application/json responses (1 paths tested)
OASF Classification No OASF or agent service classification found
MCP Transport Security /mcp active · HSTS · CORS · 3012ms
Voice AI Disclosure No voice agent disclosure endpoint found
Synthetic Voice Labeling No synthetic voice labeling declaration found (EU AI Act Article 50)
Synthetic Content Labeling No machine-readable synthetic content label (EU AI Act Article 50 requires marking AI-generated audio)
Emotion Recognition Declaration No emotion recognition declaration (EU AI Act requires explicit opt-in/out)
Call Recording Consent No call recording disclosure or consent mechanism found (required in two-party consent states & GDPR)
FCC/TCPA Compliance No FCC/TCPA compliance declaration (required for US voice AI calls)
Operator Identity & KYB No operator identity or KYB status declared
Opt-out & Human Escalation No opt-out mechanism or human escalation path found (required by FCC + EU AI Act)
Voice Call Policy No voice call policy (calling hours, frequency limits, recording disclosure)
Caller Identity Declaration No caller identity declaration (who is calling, is it AI, callback number)
Wallet trust Solana 2v4Xjd...3jc5 — wallet declared
ERC-8004 on-chain No EVM wallet found to verify on-chain registration
41
27 issues to fix
Critical — 8
Voice AI Disclosure failed

No voice agent disclosure endpoint found

Synthetic Voice Labeling failed

No synthetic voice labeling declaration found (EU AI Act Article 50)

Call Recording Consent failed

No call recording disclosure or consent mechanism found (required in two-party consent states & GDPR)

FCC/TCPA Compliance failed

No FCC/TCPA compliance declaration (required for US voice AI calls)

Operator Identity & KYB failed

No operator identity or KYB status declared

Opt-out & Human Escalation failed

No opt-out mechanism or human escalation path found (required by FCC + EU AI Act)

Voice Call Policy failed

No voice call policy (calling hours, frequency limits, recording disclosure)

Caller Identity Declaration failed

No caller identity declaration (who is calling, is it AI, callback number)

Warning — 19
Response time needs attention

979ms avg

x402 compliance needs attention

No x402 payment gates found

Rate limiting needs attention

No rate-limit headers (may still be rate-limited server-side)

OpenAPI spec needs attention

/openapi.yaml found but invalid JSON

Status / Health needs attention

No status or health endpoint

EU AI Act disclosure needs attention

No AI model card or disclosure endpoint

Travel Rule (FATF) needs attention

No Travel Rule endpoint or VASP disclosure

DNSSEC needs attention

DNSSEC check failed

CAA Records needs attention

CAA check failed

DMARC / SPF needs attention

No DMARC or SPF records found

Auth maturity needs attention

No authentication detected — open API or check failed

API versioning needs attention

No versioned paths or version headers found

Human oversight needs attention

No human oversight / kill switch endpoint (EU AI Act Art. 14)

Terms of Service needs attention

No Terms of Service endpoint found

Content-Type needs attention

No application/json responses (1 paths tested)

OASF Classification needs attention

No OASF or agent service classification found

Synthetic Content Labeling needs attention

No machine-readable synthetic content label (EU AI Act Article 50 requires marking AI-generated audio)

Emotion Recognition Declaration needs attention

No emotion recognition declaration (EU AI Act requires explicit opt-in/out)

ERC-8004 on-chain needs attention

No EVM wallet found to verify on-chain registration

🔧 Fix 8 failing checks automatically

Probe Autofix connects to your GitHub repo and creates a PR with all the fixes. DNS fixes are applied directly via Cloudflare API. No manual coding needed.

⚡ Autofix — Free GitHub PR + DNS fixes included
Share on X Run new audit
🔒 Probe trust badge — unlock at score 60+

Fix your failing checks to earn the Probe verified badge. Display it on your site footer and README to show compliance.

⚡ Autofix — Free Current score: 41/100 → need 60+
Badge preview Shield preview
2026-04-02 19:03:16 UTC · getprobe.xyz