API · x402
Given an npm package and current version, returns exact-version OSV vulnerabilities, fi…
Given an npm package and current version, returns exact-version OSV vulnerabilities, fixed versions, npm metadata, and minimumSafeVersion: the first published stable OSV-clear upgrade.
by Ops Control HQ x402 Agent APIs · verified provider · updated 2026-10-05
What it does
Given an npm package and current version, returns exact-version OSV vulnerabilities, fixed versions, npm metadata, and minimumSafeVersion: the first published stable OSV-clear upgrade.
Tags: ops-control-hq · x402
Use with an agent
- Discover. Agents find this listing with
GET https://bazaar.saylorinnovations.com/discovery/search?query=…, the MCP toolsearch_resources, or/discovery/resources. - Inspect. Fetch
/resources/21615.jsonfor the price and payment options. - Pay. Call
GET https://tkoqkknsezxavtxfywkm.supabase.co/functions/v1/npm-dependency-risk-x402-v1. The provider answers402with its payment requirements. An x402 client signs one of the options below and retries withPAYMENT-SIGNATURE. - Execute. The provider returns
200with the data. Agent Bazaar is not in the request path and never sees your payment.
For humans
You don't need an account or an API key; you need a wallet holding a small amount of USDC on Base, and an x402-capable client (see the examples below). Call the endpoint unpaid first to see exactly what it asks for.
Pricing & payment
- Price
- $0.01 / request
- Protocol
- x402 v2
- Auth
- No account or API key. Pay per request.
- Networks
- Base
x402 payment requirements
| Scheme | Network | Asset | Amount | Pay to | Timeout |
|---|---|---|---|---|---|
| exact | Base eip155:8453 | USDC | $0.01 | 0xf200174de10c26ce7670aaf41d69a8979fe5629d | 120s |
accepts[] (raw JSON)
[
{
"scheme": "exact",
"network": "eip155:8453",
"payTo": "0xf200174de10c26ce7670aaf41d69a8979fe5629d",
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"amount": "10000",
"amountUsd": 0.01,
"maxTimeoutSeconds": 120
}
]Examples
curl
curl "https://tkoqkknsezxavtxfywkm.supabase.co/functions/v1/npm-dependency-risk-x402-v1"
# -> 402 Payment Required, accepts[] lists how to pay
# retry with a PAYMENT-SIGNATURE (or PAYMENT header) once paidJavaScript
const res = await fetch("https://tkoqkknsezxavtxfywkm.supabase.co/functions/v1/npm-dependency-risk-x402-v1");
if (res.status === 402) {
const { accepts } = await res.json();
// pay one of accepts[] via an x402 client, then retry with the payment header
}Python
import httpx
res = httpx.get("https://tkoqkknsezxavtxfywkm.supabase.co/functions/v1/npm-dependency-risk-x402-v1")
if res.status_code == 402:
accepts = res.json()["accepts"]
# pay one of accepts[] via an x402 client, then retry with the payment headerDetails
- Provider
- Ops Control HQ x402 Agent APIs
- Endpoint
- https://tkoqkknsezxavtxfywkm.supabase.co/functions/v1/npm-dependency-risk-x402-v1
- Machine-readable
/resources/21615.json