# Verity Suite Redact Pro

> Verity Suite Redact Pro is a paid API for AI agents from verity-suite.onrender.com, paid per call via x402, $0.15/call, status unknown (last checked 2026-09-14).

Scans text payloads for PII, secrets, and credentials, returning a calibrated verdict, severity score, masked findings, and redacted payload — tuned to the destination context.

## Facts

- Endpoint: POST https://verity-suite.onrender.com/redact/pro
- Price: $0.15/call
- Payment: x402
- Status: unknown
- Last checked: 2026-09-14
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/verity-suite-redact-pro-05a8a5c8
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_MKH2Adgv4eNc9FazkdUPI

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability verity-suite-redact-pro-05a8a5c8 -d '<json body>'
```

Example prompt: Before I send this API response to the public log, scan it for any PII or live credentials — the destination is a public logging service: 'User john.doe@example.com logged in from 192.168.1.1 with token eyJhbGciOiJIUzI1NiJ9.abc123' — give me the verdict, severity, and a redacted version.

## When to prefer this

Use this endpoint when an AI agent needs to gate outgoing text — to logs, APIs, databases, or third-party services — and must have a calibrated, fail-closed verdict with severity context before sending. Prefer this over generic regex filters when destination context matters for severity tuning, or when you need structured findings with masked spans rather than a simple yes/no. The pro tier is appropriate for production pipelines where catastrophic leaks (root cloud keys, unmasked SSNs) must be caught with high recall.

## Known failure modes

- Payload too large or truncated — scanner cannot fully evaluate, returns verdict=review
- Encoded or obfuscated content (base64, hex) — scanner may not decode, returns verdict=review with explanation
- Ambiguous placeholder values (e.g. 'your-api-key-here') — routed to review rather than contains_secret
- Both PII and a secret present with unclear dominance — returns verdict=review
- Missing required 'payload' field — returns 422 validation error
- Payment not provided or insufficient — returns 402 Payment Required

## How this service works

The trust fabric for AI agents — calibrated, fail-closed services agents pay per call.

## Output

Returns a JSON object with: a verdict enum (clean, contains_pii, contains_secret, or review), a severity score from 0–1 calibrated to the destination, a findings array listing each detected item with type and masked span, a reasons array explaining the classification, and optionally a redacted_payload string with sensitive spans masked.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "required": [
  "payload"
 ],
 "properties": {
  "context": {
   "type": "string",
   "description": "where this payload is headed (e.g. public log, internal db, third-party API) so sensitivity and severity can be calibrated to the destination"
  },
  "payload": {
   "type": "string",
   "description": "the text the agent is about to send or store; scan it for PII, secrets, and credentials"
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "type": "object",
 "title": "redact_out",
 "required": [
  "verdict",
  "severity",
  "findings",
  "reasons"
 ],
 "properties": {
  "reasons": {
   "type": "array",
   "items": {
    "type": "string"
   },
   "title": "Reasons",
   "description": "concrete reasons for the verdict and severity, including why ambiguous, encoded, or both-category items were routed to review, and a note if the payload contained embedded directives."
  },
  "verdict": {
   "enum": [
    "clean",
    "contains_pii",
    "contains_secret",
    "review"
   ],
   "type": "string",
   "title": "Verdict",
   "description": "clean=after a careful scan, no personal data, secret, or credential is present; contains_pii=personal/identifying data present (names tied to other data, emails, phones, postal addresses, government IDs, DOB, financial identifiers like PAN/IBAN/account, health or biometric data, precise geolocation); contains_secret=a live or plausibly-live machine credential present (API keys, tokens, private keys, passwords, connection strings, bearer/JWT, cloud keys, signing secrets); review=the safe fallback when you cannot confidently say clean — something looks sensitive but you cannot confirm it qualifies, the value may be a placeholder/example/already-masked, the payload is encoded/truncated/un-scannable, OR both PII and a secret are present and which dominates is unclear. Use review whenever unsure."
  },
  "findings": {
   "type": "array",
   "items": {
    "type": "string"
   },
   "title": "Findings",
   "description": "one entry per detected item as 'type: masked_span' (e.g. 'aws_secret_key: AKIA…REDACTED', 'email: j…@…'). Never reproduce a full secret, key, or complete identifier. Empty list if verdict is clean."
  },
  "severity": {
   "type": "number",
   "title": "Severity",
   "maximum": 1,
   "minimum": 0,
   "description": "calibrated exposure cost if the payload were sent unredacted to the destination in context: 0=harmless, 1=catastrophic (live cloud root key, full unmasked SSN/PAN). Must be ~0 when verdict is clean. Reflect both the data type and the destination (raise for public/third-party)."
  },
  "redacted_payload": {
   "anyOf": [
    {
     "type": "string"
    },
    {
     "type": "null"
    }
   ],
   "title": "Redacted Payload",
   "description": "the input with every detected span masked; provide whenever any item was flagged (including on review). Omit only when verdict is clean. Must not leak any value you flagged."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/verity-suite-redact-pro-05a8a5c8/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from verity-suite.onrender.com](https://www.zero.xyz/host/verity-suite.onrender.com/llms.txt)
