19 Services from x402-hono-api.inraby.workers.dev
Analyzes Cloudflare Worker JavaScript/TypeScript source (and optional wrangler.toml) for security vulnerabilities including hardcoded secrets, unsafe CORS, missing admin auth, sensitive logging, and dynamic code execution.
$0.1/messageMaps compliance audit email requests to evidence items, owners, systems, and follow-up questions organized by compliance framework (SOC2, ISO 27001, HIPAA, PCI, or general).
$0.15/messageLook up a CVE ID and return an OSV-based vulnerability summary, severity rating, affected packages, and reference links for security triage.
$0.01/messageAudits a domain's DNS and email authentication posture by checking MX, SPF, DMARC, DKIM, BIMI, and MTA-STS/TLS reporting records
$0.0045/messageAnalyzes vendor-related emails to summarize compliance risks covering subprocessors, data retention, DPA language, breach notifications, and compliance claims.
$0.1/messageScans a website landing page for GDPR and CCPA privacy signals including privacy policy links, cookie consent language, and compliance keyword coverage.
$0.08/messageScans GitHub Actions workflow YAML for security vulnerabilities including pull_request_target misuse, over-permissive tokens, secret leakage, unpinned actions, and unsafe fork checkout patterns
$0.05/messageAnalyzes an AWS IAM policy document and returns a focused risk score and severity summary highlighting dangerous permissions or misconfigurations.
$0.03/messageRuns a combined repository security scan covering secret detection, GitHub Actions workflow exposure, and dependency manifest CVE review in a single call.
$0.04/messageScreens names, entities, and crypto wallet addresses against a curated OFAC SDN subset to return match status and AML risk level.
$0.02/messageScans submitted text for exposed secrets (API keys, tokens, credentials) and returns redacted output with matches identified but values hidden.
$0.01/messageTriages security alert emails by assessing urgency, severity, likely cause, and evidence collection steps without storing message bodies.
$0.1/messageScans Terraform HCL for IAM wildcard policies, public S3/RDS exposure, open security groups, broad assume-role trust, and missing encryption hints
$0.1/messageScans package.json or lockfile text for dependency CVE risk signals including outdated packages, deprecated libraries, wildcard version pins, risky postinstall scripts, and embedded secrets.
$0.05/messageValidates AWS IAM and Cloudflare Zero Trust policy JSON for risky wildcards, bypass rules, weak scoping, and embedded secrets
$0.05/messageAudits a domain's SSL/TLS certificate expiry, HTTPS reachability, HSTS enforcement, and HTTP-to-HTTPS redirect posture using certificate transparency and live transport checks.
$0.05/messageEvaluates whether a company, API, or product is a strong fit for x402/AP2-style agentic commerce, scoring its readiness for machine-to-machine payment workflows.
$0.1/messageAnalyzes Cloudflare Zero Trust Access policy JSON for bypass rules, allow-everyone patterns, and weak identity constraints
$0.05/messageAudits a Cloudflare wrangler.toml file for production-unsafe settings, plaintext secrets in vars, risky route configurations, and missing observability.
$0.05/message