# Aayat AI Docker Image Safety Checker

> Aayat AI Docker Image Safety Checker is a paid API for AI agents from aayatai.com, paid per call via x402, $0.005/call, status unknown (last checked 2026-10-02).

Evaluates a Docker Hub image tag for official status, staleness, mutable tags, architecture support, size, and end-of-life runtime/OS versions, returning a verdict and flagged reasons.

## Facts

- Endpoint: GET https://aayatai.com/docker/image?utm_source=zero.xyz
- Price: $0.005/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-02
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/aayat-ai-docker-image-safety-checker-7d6d1cc3
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_8r4Lq82yHfDoZd5Zxo-rQ

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability aayat-ai-docker-image-safety-checker-7d6d1cc3
```

Example prompt: Is node:18-alpine still safe to use as a base image? Check if it's official, whether it's end of life, how stale the tag is, and give me a verdict.

## When to prefer this

Use this endpoint when an AI agent needs to decide whether a Docker Hub image tag is suitable for production use — especially when checking for EOL runtimes, stale rebuilds, mutable tags like 'latest', or missing multi-architecture support. It is not a CVE scanner; prefer a dedicated vulnerability scanner if you need CVE-level detail. Best suited for pre-deployment audits, Dockerfile reviews, and dependency upgrade triage.

## Known failure modes

- Unknown or misspelled image name returns an error or empty result
- Docker Hub API busy triggers partial mode — no pull counts or description, partial:true in response
- Private registry images not supported — only Docker Hub public images
- Malformed image string (invalid characters or length) rejected by schema validation
- End-of-life data unavailable for niche runtimes not tracked by endoflife.date

## How this service works

Should you build on this Docker Hub image? Checks official status, deprecation, when the tag was last rebuilt (stale images miss security patches), mutable tags like latest, pulls, architectures and size, and whether the runtime or OS version in the tag is end-of-life (endoflife.date). Verdict and reasons. Not a CVE scan. ?image=node:18-alpine

## Output

A JSON object with a verdict (ok, caution, or avoid), a numeric score, an array of flags (each with a code, severity level, and human-readable message), tag metadata (last pushed timestamp, digest for pinning, architectures, size in MB), repository info (pull count, stars, description), end-of-life data for the runtime and OS in the tag, and the sources consulted.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "$schema": "https://json-schema.org/draft/2020-12/schema",
 "required": [
  "input"
 ],
 "properties": {
  "input": {
   "type": "object",
   "required": [
    "type",
    "method"
   ],
   "properties": {
    "type": {
     "type": "string",
     "const": "http"
    },
    "method": {
     "enum": [
      "GET"
     ],
     "type": "string"
    },
    "queryParams": {
     "type": "object",
     "required": [
      "image"
     ],
     "properties": {
      "image": {
       "type": "string",
       "maxLength": 255,
       "minLength": 2,
       "description": "Docker Hub image, e.g. node:20-alpine, nginx, bitnami/redis:7.2."
      }
     }
    }
   },
   "additionalProperties": false
  },
  "output": {
   "type": "object",
   "required": [
    "type"
   ],
   "properties": {
    "type": {
     "type": "string"
    },
    "example": {
     "type": "object",
     "required": [
      "image",
      "official",
      "verdict",
      "flags",
      "tag",
      "eol"
     ],
     "properties": {
      "eol": {
       "type": "array",
       "items": {
        "type": "object"
       },
       "description": "End-of-life status of the runtime/OS versions in the tag."
      },
      "tag": {
       "type": "object",
       "description": "lastPushed, digest (pin this), architectures, sizeMb."
      },
      "flags": {
       "type": "array",
       "items": {
        "type": "object"
       }
      },
      "image": {
       "type": "string"
      },
      "score": {
       "type": "integer"
      },
      "partial": {
       "type": "boolean",
       "description": "True when Docker Hub's API was busy and the registry answered instead (no pull counts or description)."
      },
      "sources": {
       "type": "array",
       "items": {
        "type": "string"
       }
      },
      "verdict": {
       "enum": [
        "ok",
        "caution",
        "avoid"
       ],
       "type": "string"
      },
      "official": {
       "type": "boolean",
       "description": "A Docker Official Image (library/...)."
      },
      "checkedAt": {
       "type": "string"
      },
      "repository": {
       "type": "object"
      }
     }
    }
   }
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "type": "json",
 "example": {
  "eol": [
   {
    "eol": "2025-04-30",
    "cycle": "18",
    "product": "nodejs",
    "endOfLife": true,
    "newestCycle": "26",
    "latestInCycle": "18.20.8"
   }
  ],
  "tag": {
   "name": "18-alpine",
   "digest": "sha256:8d64...",
   "sizeMb": 42.8,
   "lastPushed": "2025-03-27T18:38:34.907693Z",
   "architectures": [
    "amd64",
    "arm64"
   ]
  },
  "flags": [
   {
    "code": "eol",
    "level": "danger",
    "message": "nodejs 18 reached end of life on 2025-04-30. Move to 24 or newer."
   }
  ],
  "image": "library/node:18-alpine",
  "score": 40,
  "sources": [
   "Docker Hub",
   "endoflife.date"
  ],
  "verdict": "avoid",
  "official": true,
  "checkedAt": "2026-09-28T12:00:00.000Z",
  "repository": {
   "pulls": 7025718158,
   "stars": 14204,
   "status": "active",
   "description": "Node.js is a JavaScript-based platform...",
   "lastUpdated": "2026-09-23T23:41:31Z"
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/aayat-ai-docker-image-safety-checker-7d6d1cc3/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from aayatai.com](https://www.zero.xyz/host/aayatai.com/llms.txt)
