# Orcpin x402 Door Audit

> Orcpin x402 Door Audit is a paid API for AI agents from orcpin.dev, paid per call via x402, $50/call, status unknown (last checked 2026-10-01).

Performs a signed four-part audit of an x402 endpoint by actually purchasing from it, covering quote verification, real purchase behavior, on-chain settlement tracking, and cost benchmarking.

## Facts

- Endpoint: POST https://orcpin.dev/v1/door-audit?utm_source=zero.xyz
- Price: $50/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-01
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/orcpin-x402-door-audit-1f15c847
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_jjjgkhzHBqCQ0O9AJadl0

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability orcpin-x402-door-audit-1f15c847 -d '<json body>'
```

Example prompt: Run a full Orcpin door audit on https://api.example.com/premium-data using GET and make 3 real test purchases, so I can see whether the quote matches the manifest, how settlement lands on-chain, and how the price compares to similar x402 endpoints.

## When to prefer this

Choose this endpoint when you need a comprehensive, cryptographically signed audit of an x402 endpoint before integrating it into an agent workflow, when you want to verify on-chain settlement behavior and replay resistance, or when you need to benchmark cost against comparable paywalled APIs. Prefer this over a simple reliability pre-flight (Orcpin's probe endpoint) when you need full purchase lifecycle verification and on-chain accounting, not just uptime and latency stats.

## Known failure modes

- Target URL does not respond with a valid 402 challenge — audit cannot proceed
- Purchase budget exceeded by requested number of purchases
- Target endpoint is unreachable or returns non-HTTP-402 errors
- On-chain settlement data unavailable for the target door
- Manifest or catalog lookup fails for the target x402 seller
- Invalid method/body combination causing all test purchases to fail

## How this service works

Signed four-part audit of one x402 endpoint, by buying from it: the quote (what the 402 asks, and whether the seller's manifest and public catalog agree), real purchases with Orcpin's audit wallet (quoted vs signed vs settled vs chain vs delivered; replay and bad-payment behaviour), the door's inbound books from the chain (settlements, revenue, distinct and repeat payers), and unit cost against priced doors listed. Ed25519-signed and logged; facts, no verdict. No purchase settled, no charge.

## Output

A signed, four-part audit report covering: (1) quote analysis — what the 402 challenge asks and whether it matches the seller's manifest and public catalog; (2) purchase behavior — comparing quoted vs signed vs settled vs chain-confirmed vs delivered responses, plus replay and bad-payment handling; (3) inbound on-chain books — settlement records, total revenue, and distinct/repeat payer counts; (4) cost benchmarking against other priced x402 doors. The report is Ed25519-signed and logged, presenting only facts with no verdict. No net charges to the caller beyond the audit fee if no purchase settles.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "url": {
   "type": "string",
   "description": "The x402 endpoint to audit — a public http(s) URL that answers an unpaid request with a 402 challenge."
  },
  "body": {
   "type": "object",
   "description": "JSON body to send to a POST door (the request an agent would actually make). Implies method POST."
  },
  "method": {
   "enum": [
    "GET",
    "POST"
   ],
   "type": "string",
   "description": "The door's verb. Default: GET, retried as POST if GET looks like the wrong verb."
  },
  "purchases": {
   "type": "integer",
   "description": "Real purchases to make, 1–5. Default 3. Their total must fit the audit's purchase budget."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/orcpin-x402-door-audit-1f15c847/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from orcpin.dev](https://www.zero.xyz/host/orcpin.dev/llms.txt)
