tools · Listed · eip155:8453 · Found · 6 endpoints · Not used for Gateway
dependency-risk.use.x402atlas.com
dependency-risk.use.x402atlas.com
Package vulnerability check — check one exact open-source dependency version or purl against OSV, enrich CVE matches with CISA KEV known-exploited signals, and
Not used for Gateway
Listed — live manifest, not yet verified · not used for Gateway Still catalogued — dead/unreachable knowledge is index value. (Listed — live manifest, not yet verified · not used for Gateway)
Indexed from this operator's public /.well-known/x402.json. Found is not operator-owned and is not attested. Claim or opt out.
Agent Read · Cleared Index
CAUTION
Caution — usable signal, incomplete attestation or mesh.
confidence
67%
source
signal
Index before you pay. Same payload for agents:
GET /api/cleared/agent-read?slug=cat-dependency-risk-use-x402atlas-com
When to call
- Budget between $0.00 and $0.02 per call on published endpoints.
- Package vulnerability check — check one exact open-source dependency version or purl against OSV, enrich CVE matches with CISA KEV known-exploited signals, and
Risks
- Found — not operator-owned; claim status unknown.
- No Cleared settlement receipt on file yet.
- Endpoint response check pending or failed.
- No Gateway traffic yet — market share unproven.
Price posture
Published 6 endpoints from $0.00 to $0.02.
Category · Gateway
tools · no Gateway routes yet — early / unproven on Cleared market share.
Endpoint hints
POST /packagePackage vulnerability check — check one exact open-source dependency version or purl against OSV, enrich CVE matches with CISA KEV known-exploited signals, and
POST /batchBatch dependency vulnerability check — check ordered exact package versions in OSV with deduplicated CVE enrichment, explicit completeness, and CISA KEV known-e
POST /sbomCycloneDX SBOM vulnerability check — analyze bounded JSON 1.5 software bill of materials components against OSV and prioritize exact CVE matches from CISA KEV w
GET /batchGET /batch at $0.00.
GET /packageGET /package at $0.00.
GET /sbomGET /sbom at $0.00.
Evidence (Cleared)
- → Intake listed · not used for Gateway
- → Trust 55/100 · fail · tier listed
- → Protocol x402 · eip155:8453
- → Manifest reachable · schema valid
- → Found listing — indexed from public x402.json, not operator-attested.
Endpoints
Package vulnerability check — check one exact open-source dependency version or
$0.005POST https://dependency-risk.use.x402atlas.com/packagePackage vulnerability check — check one exact open-source dependency version or purl against OSV, enrich CVE matches with CISA KEV known-exploited signals, and report fixes, severity, and provenance.
Batch dependency vulnerability check — check ordered exact package versions in O
$0.01POST https://dependency-risk.use.x402atlas.com/batchBatch dependency vulnerability check — check ordered exact package versions in OSV with deduplicated CVE enrichment, explicit completeness, and CISA KEV known-exploited signals.
CycloneDX SBOM vulnerability check — analyze bounded JSON 1.5 software bill of m
$0.02POST https://dependency-risk.use.x402atlas.com/sbomCycloneDX SBOM vulnerability check — analyze bounded JSON 1.5 software bill of materials components against OSV and prioritize exact CVE matches from CISA KEV without remote document fetches.
https://dependency-risk.use.x402atlas.com/batch
$0.00GET https://dependency-risk.use.x402atlas.com/batchhttps://dependency-risk.use.x402atlas.com/package
$0.00GET https://dependency-risk.use.x402atlas.com/packagehttps://dependency-risk.use.x402atlas.com/sbom
$0.00GET https://dependency-risk.use.x402atlas.com/sbomChecks
reachable
valid
2026-08-25T06:47:02.209Z
Intake listed · Listed — live manifest, not yet verified · not used for Gateway · probed 0/3 · No settlement evidence found in chain signals.
Claim this listing to upgrade to Cleared attestation.
Claim listing