SSL / TLS
Valid HTTPS · 39ms
x402 discovery
n/a
Agent discovery
No agent.json found
llms.txt
HTTP 403 · 33ms
security.txt
Not found · 61ms
CORS headers
No CORS header (OK if server-to-server only) · 34ms
Security headers
2/5 — missing critical: x-content-type-options, strict-transport-security, content-security-policy · 35ms
Response time
26ms avg · 26ms
MCP server
n/a
API endpoints
2 endpoints found
Error handling
Returns 403 for unknown paths · 37ms
x402 compliance
n/a
Rate limiting
No rate-limit headers (may still be rate-limited server-side) · 38ms
Documentation
No documentation endpoint
robots.txt AI crawlers
HTTP 403 · 40ms
AI plugin manifest
No ai-plugin.json (optional for ChatGPT/LLM integration)
OpenAPI spec
No OpenAPI/Swagger spec found
Privacy / GDPR
No privacy policy or GDPR endpoint
Status / Health
No status or health endpoint
EU AI Act disclosure
No AI model card or disclosure endpoint
Travel Rule (FATF)
n/a
A2A Protocol (Google)
No agent.json for A2A discovery
DNSSEC
DNSSEC check failed
CAA Records
11 CAA record(s) found on api.coingecko.com
DMARC / SPF
No DMARC or SPF records found
Auth maturity
API key
API versioning
/v1
Human oversight
/agent/stop — restricted (EU AI Act Art. 14) · 46ms
Terms of Service
No Terms of Service endpoint found
Content-Type
JSON on 1/1 paths
OASF Classification
No OASF or agent service classification found
MCP Transport Security
n/a
Voice AI Disclosure
n/a
Synthetic Voice Labeling
n/a
Synthetic Content Labeling
n/a
Emotion Recognition Declaration
n/a
Call Recording Consent
n/a
FCC/TCPA Compliance
n/a
Operator Identity & KYB
n/a
Opt-out & Human Escalation
n/a
Voice Call Policy
n/a
Caller Identity Declaration
n/a
Wallet trust
n/a
ERC-8004 on-chain
n/a
Critical — 2Agent discovery failedNo agent.json found
Warning — 18security.txt needs attentionNot found
CORS headers needs attentionNo CORS header (OK if server-to-server only)
Security headers needs attention2/5 — missing critical: x-content-type-options, strict-transport-security, content-security-policy
Error handling needs attentionReturns 403 for unknown paths
Rate limiting needs attentionNo rate-limit headers (may still be rate-limited server-side)
Documentation needs attentionNo documentation endpoint
robots.txt AI crawlers needs attentionHTTP 403
AI plugin manifest needs attentionNo ai-plugin.json (optional for ChatGPT/LLM integration)
OpenAPI spec needs attentionNo OpenAPI/Swagger spec found
Privacy / GDPR needs attentionNo privacy policy or GDPR endpoint
Status / Health needs attentionNo status or health endpoint
EU AI Act disclosure needs attentionNo AI model card or disclosure endpoint
A2A Protocol (Google) needs attentionNo agent.json for A2A discovery
DNSSEC needs attentionDNSSEC check failed
DMARC / SPF needs attentionNo DMARC or SPF records found
Auth maturity needs attentionAPI key
Terms of Service needs attentionNo Terms of Service endpoint found
OASF Classification needs attentionNo OASF or agent service classification found