# RadhikaChain — Bridge Point-of-Interest Threat Intelligence Feed

> RadhikaChain — Bridge Point-of-Interest Threat Intelligence Feed is a paid API for AI agents from x402.radhikachain.xyz, paid per call via x402, $5.148/call, status unknown (last checked 2026-09-14).

Returns live network threat intelligence from XDP/eBPF sensors at bridge nodes, including attacker IPs, port scan patterns, TCP flags, OS fingerprints, and threat classifications.

## Facts

- Endpoint: GET https://x402.radhikachain.xyz/poi/puente
- Price: $5.148/call
- Payment: x402
- Status: unknown
- Last checked: 2026-09-14
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/radhikachain-bridge-point-of-interest-threat-intelligence-feed-d9905a6f
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_BRCrCbkt4JWe4JuCnCnqO

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability radhikachain-bridge-point-of-interest-threat-intelligence-feed-d9905a6f
```

Example prompt: Pull the latest threat intelligence from the RadhikaChain bridge sensor — I want to see which IPs are currently scanning or probing the bridge node, their port sweep patterns, TCP flags, and how they're classified.

## When to prefer this

Use this endpoint when you need real-time, sensor-sourced threat intelligence specifically about hosts probing blockchain bridge infrastructure, especially when you want raw XDP/eBPF data with per-IP probe counts, port sweep patterns, and OS fingerprinting. Prefer this over generic threat feeds when your concern is Web3 bridge node security and you want pay-per-call access without subscription overhead.

## Known failure modes

- Payment not submitted or rejected — x402 payment challenge returned instead of data
- Insufficient USDC balance on Base — payment fails before data is served
- Sensor nodes offline — may return stale or empty threat arrays
- Rate limiting if payment is delayed or malformed
- Network timeout if bridge node telemetry aggregation is slow

## How this service works

Telemetria de cadena, inteligencia de defensa y computo verificable (Halo2, Nova, Plonky3). Pago por peticion en USDC nativo en Base (eip155:8453) mediante x402 v2 scheme exact; sin cuenta ni suscripcion. Catalogo canonico: GET /.well-known/x402.

## Output

A JSON object containing the total threat count, the sensor source (XDP/eBPF nodes), and an array of threat entries each with: IP address, TTL, scanned ports list, total probe count, list of nodes that observed the IP, TCP flag combinations, probable OS, first/last seen Unix timestamps, and a human-readable threat classification (e.g. 'sondeo insistente' / persistent probe, 'barrido de puertos' / port sweep).

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "$schema": "https://json-schema.org/draft/2020-12/schema",
 "properties": {
  "input": {
   "type": "object",
   "properties": {
    "body": {
     "type": "object",
     "additionalProperties": true
    },
    "queryParams": {
     "type": "object",
     "additionalProperties": true
    }
   }
  },
  "output": {
   "type": "object",
   "properties": {
    "example": {
     "type": "object",
     "additionalProperties": true
    }
   }
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "type": "json",
 "example": {
  "nota": "'visto_en' indica en cuantos nodos aparecio: mas nodos significa un escaneo mas amplio",
  "total": 2091,
  "fuente": "sensores XDP/eBPF en los nodos de la red",
  "amenazas": [
   {
    "ip": "169.188.233.172",
    "ttl": 45,
    "puertos": [
     8545
    ],
    "sondeos": 30242233902,
    "visto_en": [
     "seed"
    ],
    "flags_tcp": [
     2,
     16,
     24,
     17,
     4
    ],
    "so_probable": "linux/unix",
    "primer_visto": 7391931344,
    "ultimo_visto": 122915823205836,
    "clasificacion": "sondeo insistente"
   },
   {
    "ip": "64.248.200.172",
    "ttl": 40,
    "puertos": [
     8151,
     8126,
     28334,
     8413,
     8402,
     3000,
     28332,
     5000,
     8414,
     8332,
     28335,
     28333
    ],
    "sondeos": 27119417444,
    "visto_en": [
     "seed"
    ],
    "flags_tcp": [
     24,
     16,
     2,
     17,
     4,
     18,
     25
    ],
    "so_probable": "linux/unix",
    "primer_visto": 1103534350967449,
    "ultimo_visto": 1550758766647374,
    "clasificacion": "barrido de puertos"
   }
  ]
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/radhikachain-bridge-point-of-interest-threat-intelligence-feed-d9905a6f/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from x402.radhikachain.xyz](https://www.zero.xyz/host/x402.radhikachain.xyz/llms.txt)
