x402 List

x402 Protocol Service Directory

HTTP Security Headers Check

Data PAYMENT-READY imported

payment-ready until 2026-09-29

imported from the x402 Bazaar, not submitted by the operator · own this service? claim it · or ask to be removed

One HEAD request against a URL, returning its parsed HTTP security headers as JSON: HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, plus advisory warnings and any disclosed Server or X-Powered-By. $0.01 per call on Base. Operated by x402 Atlas.

Part of the x402 Atlas operator hub

Pay from $0.01 per request in USDC on Arbitrum One / Base / Polygon / Solana, settled onchain via the x402 protocol, no signup, no API key needed.

measured since 2026-07-03 (start of our harvest window) · $0.41 all-time · settled via coinbase

BASE URL https://headers.use.x402atlas.com ENDPOINTS 1 NETWORK Arbitrum One / Base / Polygon / Solana ASSET USDC MEMBER SINCE 2026-07-20 MONITORED SINCE 2026-07-20

VERDICT

ranking generation 3

solid 79/100 #242 of 316 in Data by measured score

What the score read on this service: status online, 100% uptime 30d, 4720ms response p95, x402 compliance 14 of 14, $0.01 price against the category, on-chain traction measured. Each of those is measured, and each is published in full below.

The score comes from our own monitoring, never from reviews, operator claims, or a language model: reliability, x402 compliance, price against the category, a deterministic risk flag, and a small on-chain traction term, weighted by ranking generation 3. It is not placement anyone can buy: the paid verify tier is reported beside it and is not one of its inputs. Every component below stays published and read-only.

It is a score inside Data, and only there: price and speed are scored against the whole category field, every listing in it that carries no danger flag, the scored service included, which here means 316 listings, this one among them. That set is wider than the 316 the position above is counted against, because a listing we have measured too little of to rank still sits in the field the price and the speed are normalized over. The same service in a different field would read differently. The same engine answers GET /api/v1/best, and asked for a different pool (the whole directory, or another filter) it returns a different number for this service under this same ranking generation. Neither is more correct: they answer different questions, and the methodology states which is which.

Bands on the 0 to 100 measured score: strong at 93 and above, solid from 75, mixed from 55, weak below 55. Price and speed are scored against the whole category field, every listing in it that carries no danger flag, the scored service included, so the score places a service in its own field.

ALTERNATIVES IN DATA

Other Data services in this directory, ordered by the same measured score. The figures are ours: 30-day uptime from our own probes, 30-day settlement volume read on-chain (a conservative undercount, and null where we cannot measure it, never a zero).

Ranked alternative x402 services in the same category, with band, measured score, 30-day uptime and 30-day on-chain settlement volume
SERVICE BAND SCORE UPTIME 30D VOL 30D
StableEnrich strong 96 100% $1.9k
glim.sh strong 95 100% $47.46
SniperX•x402 strong 95 100% $332.31
cn402 strong 94 100% $36.18
API Acre solid 92 99.5% $31.95
5 of 315 other ranked services in Data · see the whole category

ASSESSMENT

updated 1m ago

The parts the verdict above is computed from, each with its proof. Click any chip. Measured values stay read-only; unknown is honest, and an unknown is never counted as a zero.

reliability 100%
uptime 24h
100%
uptime 7d
100%
uptime 30d
100%
uptime 90d
99.8%
response p95
4720ms
avg response
1218ms
total checks
2,737

Measured on the unpaid 402 handshake, not the paid call. A service can 402 correctly and still fail after payment.

compliance A (14/14)

14 of 14 x402 conformance checks pass. Full checklist below.

jump to compliance checklist

price $0.01 (p60 in Data)
price (min)
$0.01
category percentile (min)
p60 in Data
endpoints / prices
1 / 1
model
flat
stability
100%
risk clean

No deterministic risk flag. Risk fires only on an exact blocklist match, or a reserved-brand name with a mismatched verified payTo. Never from low uptime, a high price, or a model guess.

domain age
334d
registrar
Amazon Registrar, Inc.
hosting
custom
domain created
2025-10-17

Identity facts, not a risk score.

traction $0.225 30d · 16 buyers
volume 30d
$0.225
buyers 30d
16
settlements 30d
58
measured since
2026-07-03 (start of our harvest window)
last settlement
2026-09-17
top buyer share
49% of 30d volume
trend 7d vs 30d
0.57x the 30d daily rate
networks
eip155:137, eip155:8453, solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdpKuc147dw2N9d
volume all-time
$0.41
settlements all-time
131
median settlement 30d
$0.01
max settlement 30d
$0.01
settled via
coinbase ($0.51, 58 tx)

Attributed pro-quota: this payout address is shared, so volume is the operator-level figure divided by the services sharing it, while buyer and transaction counts stay whole. A declared convention, not an individually observed measure, and still a conservative undercount.

Currently sharing this payout address with Apple App Store Search, Reviews & App Data, Atlas Market Data, CoinGecko Crypto Price & Data (x402 Atlas), Crypto Perp Signals, DefiLlama Data API (x402 Atlas), DNS & WHOIS Domain Lookup, Email Auth Check (SPF/DMARC/DKIM), GDELT News Search and Timeline, Google Trends SEO Keyword Data, Hyperliquid Account Intelligence, Hyperliquid Market Data, Hyperliquid Prediction Markets Data (x402 Atlas), Image Optimizer & WebP Converter, Places & Local Business Search, Twitter/X Advanced Tweet Search, URL Unwrap / Redirect Tracer, Web Search, News & Page Reader, Wikipedia Article Summary, X (Twitter) Media Downloader.

Top buyer share is a concentration signal, not part of the ranking score.

CHANGES

10 in 30d

Payout, price, and schema changes detected on this service's x402 wire. A payout rotation at an unchanged price shows up here even when nothing else moves. Full feed at /changes.

changes schema changed 7h ago (10 in 30d)

schema changed · 7h ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88","merchant":"x402Atlas","tier":"standard"}

schema changed · 8h ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BFK9TLC3edb13K6v4YyH3DwPb5DSUpkWvb7XnqCL9b4F","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema changed · 18h ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BFK9TLC3edb13K6v4YyH3DwPb5DSUpkWvb7XnqCL9b4F","merchant":"x402Atlas","tier":"standard"}

schema changed · 47h ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BENrLoUbndxoNMUS5JXApGMtNykLjFXXixMtpDwDR9SP","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88","merchant":"x402Atlas","tier":"standard"}

schema changed · 5d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BENrLoUbndxoNMUS5JXApGMtNykLjFXXixMtpDwDR9SP","merchant":"x402Atlas","tier":"standard"}

schema changed · 6d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"D6ZhtNQ5nT9ZnTHUbqXZsTx5MH2rPFiBBggX4hY1WePM","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema changed · 6d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"D6ZhtNQ5nT9ZnTHUbqXZsTx5MH2rPFiBBggX4hY1WePM","merchant":"x402Atlas","tier":"standard"}

schema changed · 6d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BFK9TLC3edb13K6v4YyH3DwPb5DSUpkWvb7XnqCL9b4F","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"GVJJ7rdGiXr5xaYbRwRbjfaJL7fmwRygFi1H6aGqDveb","merchant":"x402Atlas","tier":"standard"}

schema changed · 6d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"BFK9TLC3edb13K6v4YyH3DwPb5DSUpkWvb7XnqCL9b4F","merchant":"x402Atlas","tier":"standard"}

schema changed · 6d ago

schema removed GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"D6ZhtNQ5nT9ZnTHUbqXZsTx5MH2rPFiBBggX4hY1WePM","merchant":"x402Atlas","tier":"standard"}

schema added GET / exact solana:5eykt4usfv8p8njdtrepy1vzqkqzkvdp EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v USDC 2 300 {"feePayer":"Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88","merchant":"x402Atlas","tier":"standard"}

see all changes for this service

WHAT IT DOES

ai-derived

No AI synthesis has been produced for this service yet.

ENDPOINTS

Service endpoints with HTTP method, path, description, pricing, and network
METHOD PATH DESCRIPTION PRICE NETWORK ASSET 402 CHANNEL
GET / $0.01 Arbitrum One/Base/Polygon/Solana USDC header
1 endpoints

REQUEST / RESPONSE EXAMPLE

An unpaid request to GET / returns HTTP 402 with the payment terms. Settle onchain via your facilitator, then retry with the X-Payment header.

// request
curl -i 'https://headers.use.x402atlas.com/'
// 402 response (captured by monitor) · 1 payload · click to expand
[
  {
    "error": "Payment required",
    "accepts": [
      {
        "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
        "extra": {
          "name": "USD Coin",
          "tier": "standard",
          "version": "2",
          "merchant": "x402Atlas"
        },
        "payTo": "0x7f8043c400799643bcb62B41B84b297a8Ecb7b9c",
        "amount": "10000",
        "scheme": "exact",
        "network": "eip155:8453",
        "maxTimeoutSeconds": 300
      },
      {
        "asset": "0x3c499c542cEF5E3811e1192ce70d8cC03d5c3359",
        "extra": {
          "name": "USD Coin",
          "tier": "standard",
          "version": "2",
          "merchant": "x402Atlas"
        },
        "payTo": "0x7f8043c400799643bcb62B41B84b297a8Ecb7b9c",
        "amount": "10000",
        "scheme": "exact",
        "network": "eip155:137",
        "maxTimeoutSeconds": 300
      },
      {
        "asset": "0xaf88d065e77c8cC2239327C5EDb3A432268e5831",
        "extra": {
          "name": "USD Coin",
          "tier": "standard",
          "version": "2",
          "merchant": "x402Atlas"
        },
        "payTo": "0x7f8043c400799643bcb62B41B84b297a8Ecb7b9c",
        "amount": "10000",
        "scheme": "exact",
        "network": "eip155:42161",
        "maxTimeoutSeconds": 300
      },
      {
        "asset": "EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v",
        "extra": {
          "tier": "standard",
          "feePayer": "Hc3sdEAsCGQcpgfivywog9uwtk8gUBUZgsxdME1EJy88",
          "merchant": "x402Atlas"
        },
        "payTo": "ASt6xvRyQ7ntERsmcYVMdLqZvz1GEN8Fzexzq62tXrNQ",
        "amount": "10000",
        "scheme": "exact",
        "network": "solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp",
        "maxTimeoutSeconds": 300
      }
    ],
    "resource": {
      "url": "https://headers.use.x402atlas.com/",
      "tags": [
        "http",
        "headers",
        "security",
        "hsts",
        "csp",
        "x-frame-options",
        "posture"
      ],
      "mimeType": "application/json",
      "description": "Audit a URL's HTTP security headers over a single body-free (HEAD) request. Grades Strict-Transport-Security, Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Referrer-Policy and Permissions-Policy, flags information-leak headers (Server, X-Powered-By), and returns the parsed values plus advisory warnings. Clean JSON for security and pentest automation.",
      "serviceName": "HTTP Security Headers Check"
    },
    "extensions": {
      "bazaar": {
        "info": {
          "input": {
            "type": "http",
            "method": "GET",
            "queryParams": {
              "url": "https://example.com/"
            }
          },
          "output": {
            "type": "json",
            "example": {
              "url": "https://example.com/",
              "headers": {
                "server": null,
                "x_powered_by": null,
                "referrer_policy": "strict-origin-when-cross-origin",
                "x_frame_options": "DENY",
                "permissions_policy": null,
                "x_content_type_options": "nosniff",
                "content_security_policy": "default-src 'self'",
                "strict_transport_security": {
                  "value": "max-age=31536000; includeSubDomains",
                  "max_age": 31536000,
                  "preload": false,
                  "include_subdomains": true
                }
              },
              "warnings": [
                "no Permissions-Policy header (powerful browser features are not restricted)"
              ],
              "queried_at": "2026-07-03T12:00:00Z",
              "status_code": 200
            }
          }
        },
        "tags": [
          "http",
          "headers",
          "security",
          "hsts",
          "csp",
          "x-frame-options",
          "posture"
        ],
        "schema": {
          "type": "object",
          "$schema": "https://json-schema.org/draft/2020-12/schema",
          "required": [
            "input"
          ],
          "properties": {
            "input": {
              "type": "object",
              "required": [
                "type",
                "method"
              ],
              "properties": {
                "type": {
                  "type": "string",
                  "const": "http"
                },
                "method": {
                  "enum": [
                    "GET"
                  ],
                  "type": "string"
                },
                "queryParams": {
                  "type": "object",
                  "required": [
                    "url"
                  ],
                  "properties": {
                    "url": {
                      "type": "string",
                      "format": "uri",
                      "description": "Absolute http/https URL to audit. Host must be a hostname (not an IP literal), not \"localhost\", and not under a reserved suffix (.local, .internal, .localdomain, .lan, .test). Non-default ports must be allowlisted. Redirects are not followed."
                    }
                  }
                }
              },
              "additionalProperties": false
            },
            "output": {
              "type": "object",
              "required": [
                "type"
              ],
              "properties": {
                "type": {
                  "type": "string"
                },
                "example": {
                  "type": "object",
                  "required": [
                    "url",
                    "status_code",
                    "queried_at",
                    "headers",
                    "warnings"
                  ],
                  "properties": {
                    "url": {
                      "type": "string",
                      "description": "The audited URL, exactly as given"
                    },
                    "headers": {
                      "type": "object",
                      "properties": {
                        "server": {
                          "type": [
                            "string",
                            "null"
                          ],
                          "description": "Server header value, if disclosed by the target"
                        },
                        "x_powered_by": {
                          "type": [
                            "string",
                            "null"
                          ],
                          "description": "X-Powered-By header value, if disclosed by the target"
                        },
                        "referrer_policy": {
                          "type": [
                            "string",
                            "null"
                          ]
                        },
                        "x_frame_options": {
                          "type": [
                            "string",
                            "null"
                          ]
                        },
                        "permissions_policy": {
                          "type": [
                            "string",
                            "null"
                          ]
                        },
                        "x_content_type_options": {
                          "type": [
                            "string",
                            "null"
                          ]
                        },
                        "content_security_policy": {
                          "type": [
                            "string",
                            "null"
                          ]
                        },
                        "strict_transport_security": {
                          "type": [
                            "object",
                            "null"
                          ],
                          "properties": {
                            "value": {
                              "type": "string",
                              "description": "Raw Strict-Transport-Security header value"
                            },
                            "max_age": {
                              "type": [
                                "integer",
                                "null"
                              ],
                              "description": "Parsed max-age in seconds; null if absent or unparseable"
                            },
                            "preload": {
                              "type": "boolean"
                            },
                            "include_subdomains": {
                              "type": "boolean"
                            }
                          }
                        }
                      },
                      "description": "Graded, normalized security headers. Each field is null when the header is absent from the response"
                    },
                    "warnings": {
                      "type": "array",
                      "items": {
                        "type": "string"
                      },
                      "description": "Human-readable posture advisories, e.g. missing or weak headers"
                    },
                    "queried_at": {
                      "type": "string",
                      "format": "date-time",
                      "description": "UTC timestamp the audit was performed"
                    },
                    "status_code": {
                      "type": "integer",
                      "description": "HTTP status code returned by the target for the HEAD request"
                    }
                  }
                }
              }
            }
          }
        },
        "category": "domain-intelligence"
      }
    },
    "x402Version": 2
  }
]

OVER TIME

All charts use the 90d selector; each series spans only the dates it has data for. Every series is also served as JSON at /api/v1/services/http-security-headers-check/price, /scores, /volume and /buyers. On-chain volume and distinct buyers are measured over the service's settlement address and are a conservative undercount (only settlements that reach a measured facilitator are counted). The on-chain series roll up hourly, so the latest day can be up to about an hour behind; distinct buyers are counted per payout address, so a service that settles to more than one address is an upper bound.

UPTIME
08-09 · uptime 89.0% · 870ms avg07-20 · uptime 100.0% · 511ms avg07-21 · uptime 100.0% · 495ms avg07-22 · uptime 100.0% · 723ms avg07-23 · uptime 100.0% · 519ms avg07-24 · uptime 100.0% · 708ms avg07-25 · uptime 100.0% · 686ms avg07-26 · uptime 100.0% · 740ms avg07-27 · uptime 100.0% · 669ms avg07-28 · uptime 100.0% · 735ms avg07-29 · uptime 100.0% · 999ms avg07-30 · uptime 100.0% · 858ms avg07-31 · uptime 100.0% · 791ms avg08-01 · uptime 100.0% · 713ms avg08-02 · uptime 100.0% · 861ms avg08-03 · uptime 100.0% · 956ms avg08-04 · uptime 100.0% · 941ms avg08-05 · uptime 100.0% · 1134ms avg08-06 · uptime 100.0% · 810ms avg08-07 · uptime 100.0% · 997ms avg08-08 · uptime 100.0% · 1102ms avg08-09 · uptime 89.0% · 870ms avg08-10 · uptime 96.1% · 800ms avg08-11 · uptime 100.0% · 940ms avg08-12 · uptime 100.0% · 742ms avg08-13 · uptime 100.0% · 1085ms avg08-14 · uptime 100.0% · 1355ms avg08-15 · uptime 100.0% · 912ms avg08-16 · uptime 100.0% · 885ms avg08-17 · uptime 100.0% · 941ms avg08-18 · uptime 100.0% · 928ms avg08-19 · uptime 100.0% · 823ms avg08-20 · uptime 100.0% · 703ms avg08-21 · uptime 100.0% · 615ms avg08-22 · uptime 100.0% · 743ms avg08-23 · uptime 100.0% · 613ms avg08-24 · uptime 100.0% · 758ms avg08-25 · uptime 100.0% · 1258ms avg08-26 · uptime 100.0% · 1165ms avg08-27 · uptime 100.0% · 1778ms avg08-28 · uptime 100.0% · 1465ms avg08-29 · uptime 100.0% · 1256ms avg08-30 · uptime 100.0% · 1283ms avg08-31 · uptime 100.0% · 1703ms avg09-01 · uptime 100.0% · 1201ms avg09-02 · uptime 100.0% · 879ms avg09-03 · uptime 100.0% · 1313ms avg09-04 · uptime 100.0% · 1316ms avg09-05 · uptime 100.0% · 1346ms avg09-06 · uptime 100.0% · 1057ms avg09-07 · uptime 100.0% · 1133ms avg09-08 · uptime 100.0% · 986ms avg09-09 · uptime 100.0% · 1105ms avg09-10 · uptime 100.0% · 1131ms avg09-11 · uptime 100.0% · 1121ms avg09-12 · uptime 100.0% · 652ms avg09-13 · uptime 100.0% · 895ms avg09-14 · uptime 100.0% · 684ms avg09-15 · uptime 100.0% · 906ms avg09-16 · uptime 100.0% · 1300ms avg09-17 · uptime 100.0% · 1230ms avg09-18 · uptime 100.0% · 1186ms avg09-19 · uptime 100.0% · 1462ms avg09-20 · uptime 100.0% · 1650ms avg09-21 · uptime 100.0% · 2166ms avg09-22 · uptime 100.0% · 1950ms avg07-2009-22
90d UPTIME 99.8%
RESPONSE TIME
07-20 · 511ms avg07-20 · 511ms avg07-21 · 495ms avg07-21 · 495ms avg07-22 · 723ms avg07-22 · 723ms avg07-23 · 519ms avg07-23 · 519ms avg07-24 · 708ms avg07-24 · 708ms avg07-25 · 686ms avg07-25 · 686ms avg07-26 · 740ms avg07-26 · 740ms avg07-27 · 669ms avg07-27 · 669ms avg07-28 · 735ms avg07-28 · 735ms avg07-29 · 999ms avg07-29 · 999ms avg07-30 · 858ms avg07-30 · 858ms avg07-31 · 791ms avg07-31 · 791ms avg08-01 · 713ms avg08-01 · 713ms avg08-02 · 861ms avg08-02 · 861ms avg08-03 · 956ms avg08-03 · 956ms avg08-04 · 941ms avg08-04 · 941ms avg08-05 · 1134ms avg08-05 · 1134ms avg08-06 · 810ms avg08-06 · 810ms avg08-07 · 997ms avg08-07 · 997ms avg08-08 · 1102ms avg08-08 · 1102ms avg08-09 · 870ms avg08-09 · 870ms avg08-10 · 800ms avg08-10 · 800ms avg08-11 · 940ms avg08-11 · 940ms avg08-12 · 742ms avg08-12 · 742ms avg08-13 · 1085ms avg08-13 · 1085ms avg08-14 · 1355ms avg08-14 · 1355ms avg08-15 · 912ms avg08-15 · 912ms avg08-16 · 885ms avg08-16 · 885ms avg08-17 · 941ms avg08-17 · 941ms avg08-18 · 928ms avg08-18 · 928ms avg08-19 · 823ms avg08-19 · 823ms avg08-20 · 703ms avg08-20 · 703ms avg08-21 · 615ms avg08-21 · 615ms avg08-22 · 743ms avg08-22 · 743ms avg08-23 · 613ms avg08-23 · 613ms avg08-24 · 758ms avg08-24 · 758ms avg08-25 · 1258ms avg08-25 · 1258ms avg08-26 · 1165ms avg08-26 · 1165ms avg08-27 · 1778ms avg08-27 · 1778ms avg08-28 · 1465ms avg08-28 · 1465ms avg08-29 · 1256ms avg08-29 · 1256ms avg08-30 · 1283ms avg08-30 · 1283ms avg08-31 · 1703ms avg08-31 · 1703ms avg09-01 · 1201ms avg09-01 · 1201ms avg09-02 · 879ms avg09-02 · 879ms avg09-03 · 1313ms avg09-03 · 1313ms avg09-04 · 1316ms avg09-04 · 1316ms avg09-05 · 1346ms avg09-05 · 1346ms avg09-06 · 1057ms avg09-06 · 1057ms avg09-07 · 1133ms avg09-07 · 1133ms avg09-08 · 986ms avg09-08 · 986ms avg09-09 · 1105ms avg09-09 · 1105ms avg09-10 · 1131ms avg09-10 · 1131ms avg09-11 · 1121ms avg09-11 · 1121ms avg09-12 · 652ms avg09-12 · 652ms avg09-13 · 895ms avg09-13 · 895ms avg09-14 · 684ms avg09-14 · 684ms avg09-15 · 906ms avg09-15 · 906ms avg09-16 · 1300ms avg09-16 · 1300ms avg09-17 · 1230ms avg09-17 · 1230ms avg09-18 · 1186ms avg09-18 · 1186ms avg09-19 · 1462ms avg09-19 · 1462ms avg09-20 · 1650ms avg09-20 · 1650ms avg09-21 · 2166ms avg09-21 · 2166ms avg09-22 · 1950ms avg09-22 · 1950ms avg07-2009-22
AVG RESP 1218ms
PRICE (captured 402, USD)
07-20 · $0.0107-23 · $0.0109-22 · $0.01$0.0107-2009-22
SUB-SCORES (uptime + x402 compliance)
07-20 compliance: 100% checks07-21 uptime: 100.0% compliance: 100% checks07-22 uptime: 100.0% compliance: 100% checks07-23 uptime: 100.0% compliance: 100% checks07-24 uptime: 100.0% compliance: 100% checks07-25 uptime: 100.0% compliance: 100% checks07-26 uptime: 100.0% compliance: 100% checks07-27 uptime: 100.0% compliance: 100% checks07-28 uptime: 100.0% compliance: 100% checks07-29 uptime: 100.0% compliance: 100% checks07-30 uptime: 100.0% compliance: 100% checks07-31 uptime: 100.0% compliance: 100% checks08-01 uptime: 100.0% compliance: 100% checks08-02 uptime: 100.0% compliance: 100% checks08-03 uptime: 100.0% compliance: 100% checks08-04 uptime: 100.0% compliance: 100% checks08-05 uptime: 100.0% compliance: 100% checks08-06 uptime: 100.0% compliance: 100% checks08-07 uptime: 100.0% compliance: 100% checks08-08 uptime: 100.0% compliance: 100% checks08-09 uptime: 99.6% compliance: 100% checks08-10 uptime: 99.4% compliance: 100% checks08-11 uptime: 99.4% compliance: 100% checks08-12 uptime: 99.5% compliance: 100% checks08-13 uptime: 99.5% compliance: 100% checks08-14 uptime: 99.5% compliance: 100% checks08-15 uptime: 99.5% compliance: 100% checks08-16 uptime: 99.5% compliance: 100% checks08-17 uptime: 99.6% compliance: 100% checks08-18 uptime: 99.6% compliance: 100% checks08-19 uptime: 99.6% compliance: 100% checks08-20 uptime: 99.6% compliance: 100% checks08-21 uptime: 99.6% compliance: 100% checks08-22 uptime: 99.6% compliance: 100% checks08-23 uptime: 99.6% compliance: 100% checks08-24 uptime: 99.6% compliance: 100% checks08-25 uptime: 99.6% compliance: 100% checks08-26 uptime: 99.6% compliance: 100% checks08-27 uptime: 99.6% compliance: 100% checks08-28 uptime: 99.6% compliance: 100% checks08-29 uptime: 99.6% compliance: 100% checks08-30 uptime: 99.6% compliance: 100% checks08-31 uptime: 99.6% compliance: 100% checks09-01 uptime: 99.6% compliance: 100% checks09-02 uptime: 99.6% compliance: 100% checks09-03 uptime: 99.6% compliance: 100% checks09-04 uptime: 99.6% compliance: 100% checks09-05 uptime: 99.6% compliance: 100% checks09-06 uptime: 99.6% compliance: 100% checks09-07 uptime: 99.6% compliance: 100% checks09-08 uptime: 99.9% compliance: 100% checks09-09 uptime: 100.0% compliance: 100% checks09-10 uptime: 100.0% compliance: 100% checks09-11 uptime: 100.0% compliance: 100% checks09-12 uptime: 100.0% compliance: 100% checks09-13 uptime: 100.0% compliance: 100% checks09-14 uptime: 100.0% compliance: 100% checks09-15 uptime: 100.0% compliance: 100% checks09-16 uptime: 100.0% compliance: 100% checks09-17 uptime: 100.0% compliance: 100% checks09-18 uptime: 100.0% compliance: 100% checks09-19 uptime: 100.0% compliance: 100% checks09-20 uptime: 100.0% compliance: 100% checks09-21 uptime: 100.0% compliance: 100% checks09-22 uptime: 100.0% compliance: 100% checksuptimecompliance07-2009-22

checklist grew 11->14 on 2026-07-28; a step here is a metric change, not a regression

PILLARS OVER TIME (measured)

Measured site and economics pillars from the assessment history, so the latest value shown elsewhere on this page reads as a point on a trend rather than a permanent state.

VOLUME (on-chain settlement, USD)
07-03 · $0.0107-14 · $0.0107-15 · $0.0107-18 · $0.0107-22 · $0.0207-27 · $0.0207-30 · $0.0207-31 · $0.0108-01 · $0.0308-03 · $0.1208-04 · $0.0108-07 · $0.0908-12 · $0.0108-13 · $0.0208-14 · $0.0108-15 · $0.0108-16 · $0.0108-17 · $0.0108-18 · $0.0108-20 · $0.0108-23 · $0.0908-24 · $0.0108-25 · $0.2408-26 · $0.0208-27 · $0.0108-28 · $0.0109-01 · $0.0309-06 · $0.0109-08 · $0.0109-09 · $0.0109-10 · $0.0109-11 · $0.0209-12 · $0.0309-13 · $0.0209-15 · $0.0109-16 · $0.0209-17 · $0.01peak $0.2407-0309-17

Shared payout address (19 other services). These bars are the full shared address (operator-level), so do not sum them across the services that share it. Where a per-service figure is attributed, the assessment block and the ranking, it is the address total divided pro-quota by the 20 services sharing it: a declared convention, not an individually observed measure.

DISTINCT BUYERS
07-03 · 1 buyer07-14 · 1 buyer07-15 · 1 buyer07-18 · 1 buyer07-22 · 1 buyer07-27 · 2 buyers07-30 · 1 buyer07-31 · 1 buyer08-01 · 2 buyers08-03 · 1 buyer08-04 · 1 buyer08-07 · 1 buyer08-12 · 1 buyer08-13 · 2 buyers08-14 · 1 buyer08-15 · 1 buyer08-16 · 1 buyer08-17 · 1 buyer08-18 · 1 buyer08-20 · 1 buyer08-23 · 1 buyer08-24 · 1 buyer08-25 · 1 buyer08-26 · 1 buyer08-27 · 1 buyer08-28 · 1 buyer09-01 · 2 buyers09-06 · 1 buyer09-08 · 1 buyer09-09 · 1 buyer09-10 · 1 buyer09-11 · 2 buyers09-12 · 1 buyer09-13 · 2 buyers09-15 · 1 buyer09-16 · 2 buyers09-17 · 1 buyerpeak 2 buyers07-0309-17

Shared payout address (19 other services). These bars are the full shared address (operator-level), so do not sum them across the services that share it. Per-service buyer and transaction counts are shown whole (integers), not divided; only volume is attributed pro-quota. A declared convention, not an individually observed measure.

COMPLIANCE

14/14 checks pass · grade A

last 402 captured 2026-09-22 · last up 2026-09-22

  • 402 payload captured
  • accepts[] array present
  • payTo address recoverable
  • payTo at accepts[0].payTo (conformant shape)
  • payTo is a valid on-chain address
  • atomic price declared
  • atomic price in a sane range
  • asset (token) address declared
  • network resolves to CAIP-2
  • payment scheme declared
  • served over HTTPS
  • declares the current x402 version (2)
  • EIP-712 domain parameters present on every EVM entry
  • x402 v2 envelope delivered in the payment-required header

SITE PILLARS

  • homepage reachable
  • openapi doc
  • pricing page
  • llms.txt
  • robots.txt
  • terms page
recent checks (18) live · click to expand
TIME STATUS RESP CAUSE
● SLOW 2795ms
● SLOW 2830ms
● SLOW 3939ms
● SLOW 4161ms
● SLOW 2242ms
● OK 883ms
● OK 853ms
● SLOW 5378ms
● SLOW 5332ms
● OK 601ms
● OK 1604ms
● OK 1244ms
● SLOW 2128ms
● SLOW 2290ms
● SLOW 2333ms
● OK 1341ms
● OK 444ms
● OK 808ms

EMBED THIS BADGE

Show that HTTP Security Headers Check is monitored on x402-list. Paste this on your site or README, it links back to this live listing.

HTTP Security Headers Check listed on x402-list
status
HTTP Security Headers Check uptime on x402-list
live uptime
// HTML
<a href="https://x402-list.com/services/http-security-headers-check?utm_source=badge&utm_medium=referral&utm_campaign=embed">
  <img src="https://x402-list.com/badge/http-security-headers-check.svg" alt="HTTP Security Headers Check listed on x402-list" height="28">
</a>
// Markdown
[![HTTP Security Headers Check on x402-list](https://x402-list.com/badge/http-security-headers-check.svg)](https://x402-list.com/services/http-security-headers-check?utm_source=badge&utm_medium=referral&utm_campaign=embed)
// HTML · live uptime variant
<a href="https://x402-list.com/services/http-security-headers-check?utm_source=badge&utm_medium=referral&utm_campaign=embed">
  <img src="https://x402-list.com/badge/http-security-headers-check.svg?data=uptime" alt="HTTP Security Headers Check uptime on x402-list" height="28">
</a>

RUN THIS SERVICE?

Keep this listing accurate: propose changes to the name, description, website, category or add new endpoints to monitor. Ownership is verified with a domain proof and every change is reviewed manually; measured data stays read-only.

[ update this listing ]

Earn the verified tier: x402list pays a real call to this endpoint and, if it delivers, the service is delivery-verified. The fee covers the cost of the probe, not the badge; there is no refund if the call does not deliver. Agent and API only, no in-browser signing. See /api.

[ verify this service ($0.25) ]

To request delisting, email info@x402-list.com or update your listing at /services/http-security-headers-check/update.