SYNTHORA MTA-STS Audit
VerificationAudits a domain's SMTP transport security: resolves MTA-STS (RFC 8461) and TLS-RPT (RFC 8460) DNS records, fetches and parses the policy file, cross-checks policy mx patterns against the real MX, and returns a score, grade and enforce/report verdict. Responses carry an Ed25519 receipt.
Pay from $0.003 per request in USDC on Base, settled onchain via the x402 protocol, no signup, no API key needed.
ASSESSMENT
updated 4h agoEvidence-backed signals, not a single score. Click any chip for the proof. Measured values stay read-only; unknown is honest.
reliability 95.3%
- uptime 24h
- 96.7%
- uptime 7d
- 95.3%
- uptime 30d
- 95.3%
- uptime 90d
- 95.3%
- response p95
- 4126ms
- avg response
- 2352ms
- total checks
- 47
compliance A (11/11)
11 of 11 x402 conformance checks pass. Full checklist below.
price $0.003 (p37 in Verification)
- price (min)
- $0.003
- category percentile (min)
- p37 in Verification
- endpoints / prices
- 1 / 1
- model
- flat
- stability
- 100%
risk clean
No deterministic risk flag. Risk fires only on an exact blocklist match, or a reserved-brand name with a mismatched verified payTo. Never from low uptime, a high price, or a model guess.
traction $0.03 30d · 0 buyers
- volume 30d
- $0.03
- buyers 30d
- 0
- settlements 30d
- 3
- last settlement
- 2026-07-21
- top buyer share
- 48% of 30d volume
- trend 7d vs 30d
- 0.12x the 30d daily rate
- networks
- eip155:8453
Attributed pro-quota: this payout address is shared, so volume and buyers are the operator-level figure divided by the services sharing it. A declared convention, not an individually observed measure, and still a conservative undercount.
Top buyer share is a concentration signal, not part of the ranking score.
WHAT IT DOES
ai-derivedPerforms SMTP transport-security audits for MTA-STS and TLS-RPT policies
- category
- email-security-audit
- in
- body
- auth
- none
AI-generated summary. The measured data is never altered by it.
ENDPOINTS
| METHOD | PATH | DESCRIPTION | PRICE | NETWORK | ASSET |
|---|---|---|---|---|---|
| POST | /service | SMTP transport-security audit: MTA-STS (RFC 8461) + TLS-RPT (RFC 8460). Resolves the policy DNS records, fetches and parses the well-known policy file, cross-validates the policy mx: patterns against the domain's real MX, and returns an enforce/report verdict. Complements SPF/DKIM/DMARC auditing with the TLS transport layer. Deterministic, Ed25519-signed. 0.003 USDC via x402 on Base. SYNTHORA. | $0.003 | Base | USDC |
REQUEST / RESPONSE EXAMPLE
An unpaid request to POST /service returns HTTP 402 with the payment terms. Settle onchain via your facilitator, then retry with the X-Payment header.
curl -i -X POST 'https://mtasts.hergertsynthora.com/service'
// 402 response (captured by monitor) · 1 payload · click to expand
[
{
"error": "Payment required",
"accepts": [
{
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"extra": {
"name": "USD Coin",
"version": "2"
},
"payTo": "0x10800a5a5B9d72251566EC651E862A8b4B427dE0",
"amount": "3000",
"scheme": "exact",
"network": "eip155:8453",
"mimeType": "application/json",
"resource": "https://mtasts.hergertsynthora.com/service",
"description": "SMTP transport-security audit: MTA-STS (RFC 8461) + TLS-RPT (RFC 8460). Resolves the policy DNS records, fetches and parses the well-known policy file, cross-validates the policy mx: patterns against the domain's real MX, and returns an enforce/report verdict. Complements SPF/DKIM/DMARC auditing with the TLS transport layer. Deterministic, Ed25519-signed. 0.003 USDC via x402 on Base. SYNTHORA.",
"maxAmountRequired": "3000",
"maxTimeoutSeconds": 300
}
],
"freeTier": {
"note": "send header X-WALLET: 0x<your Base address> for a free trial",
"header": "X-WALLET",
"callsPerWallet": 3
},
"resource": {
"url": "https://mtasts.hergertsynthora.com/service",
"mimeType": "application/json",
"description": "SMTP transport-security audit: MTA-STS (RFC 8461) + TLS-RPT (RFC 8460). Resolves the policy DNS records, fetches and parses the well-known policy file, cross-validates the policy mx: patterns against the domain's real MX, and returns an enforce/report verdict. Complements SPF/DKIM/DMARC auditing with the TLS transport layer. Deterministic, Ed25519-signed. 0.003 USDC via x402 on Base. SYNTHORA."
},
"extensions": {
"bazaar": {
"info": {
"input": {
"body": {
"op": "check",
"domain": "example.com"
},
"type": "http",
"method": "POST",
"bodyType": "json"
},
"output": {
"type": "json",
"example": {
"ok": true,
"niche": "mtasts",
"result": {
"score": 100,
"domain": "example.com",
"issues": [],
"mta_sts": {
"mx": [
"*.mail.example.com"
],
"mode": "enforce",
"max_age": 604800,
"dns_present": true,
"mx_matches_dns": true,
"policy_reachable": true
},
"tls_rpt": {
"present": true
},
"verdict": "enforced+reporting"
}
}
}
},
"schema": {
"type": "object",
"$schema": "https://json-schema.org/draft/2020-12/schema",
"required": [
"input"
],
"properties": {
"input": {
"type": "object",
"required": [
"type",
"method",
"bodyType",
"body"
],
"properties": {
"body": {
"type": "object",
"required": [
"domain"
],
"properties": {
"op": {
"enum": [
"check",
"mtasts",
"tlsrpt"
],
"type": "string",
"description": "Audit scope (default check = full)"
},
"domain": {
"type": "string",
"description": "Domain or email address to audit"
}
}
},
"type": {
"type": "string",
"const": "http"
},
"method": {
"enum": [
"POST",
"PUT",
"PATCH"
],
"type": "string"
},
"bodyType": {
"enum": [
"json",
"form-data",
"text"
],
"type": "string"
}
},
"additionalProperties": false
},
"output": {
"type": "object",
"required": [
"type"
],
"properties": {
"type": {
"type": "string"
},
"example": {
"ok": {
"type": "boolean"
},
"type": "object",
"niche": {
"type": "string"
}
}
}
}
}
}
}
},
"x402Version": 2
}
] UPTIME
RECENT CHECKS
OVER TIME
All charts share the 24h window selected here. Every series is also served as JSON at /api/v1/services/synthora-mta-sts-audit/price, /scores, /volume and /buyers. On-chain volume and distinct buyers are measured over the service's settlement address and are a conservative undercount (only settlements that reach a measured facilitator are counted).
Shared payout address (61 other services). These bars are the full shared address (operator-level), so do not sum them across the services that share it. Where a per-service figure is attributed, the assessment block and the ranking, it is the address total divided pro-quota by the 62 services sharing it: a declared convention, not an individually observed measure.
Shared payout address (61 other services). These bars are the full shared address (operator-level), so do not sum them across the services that share it. Where a per-service buyer count is attributed, the assessment block and the ranking, it is divided pro-quota by the 62 services sharing the address and can be fractional: a declared convention, not an individually observed measure.
COMPLIANCE
11/11 checks pass · grade A- 402 payload captured
- accepts[] array present
- payTo address recoverable
- payTo at accepts[0].payTo (conformant shape)
- payTo is a valid on-chain address
- atomic price declared
- atomic price in a sane range
- asset (token) address declared
- network resolves to CAIP-2
- payment scheme declared
- served over HTTPS
EMBED THIS BADGE
<a href="https://x402-list.com/services/synthora-mta-sts-audit?utm_source=badge&utm_medium=referral&utm_campaign=embed"> <img src="https://x402-list.com/badge/synthora-mta-sts-audit.svg" alt="SYNTHORA MTA-STS Audit listed on x402-list" height="28"> </a>
[](https://x402-list.com/services/synthora-mta-sts-audit?utm_source=badge&utm_medium=referral&utm_campaign=embed)
<a href="https://x402-list.com/services/synthora-mta-sts-audit?utm_source=badge&utm_medium=referral&utm_campaign=embed"> <img src="https://x402-list.com/badge/synthora-mta-sts-audit.svg?data=uptime" alt="SYNTHORA MTA-STS Audit uptime on x402-list" height="28"> </a>