{"name":"io.github.Nikolife2016/pulsefeed-x402","slug":"nikolife2016-pulsefeed-x402","title":null,"description":"Verify x402 payment endpoints before an AI agent pays: scam scan, on-chain checks, trust scores.","url":"https://mcp.market/server/nikolife2016-pulsefeed-x402","rating":null,"grade":"A","score":93,"certified":false,"status":"active","category":"finance","tags":["finance","ai","security"],"presence":{"score":31,"stars":0,"forks":0,"downloads_week":48,"last_push_at":"2026-09-21T19:43:42.000Z","license":"MIT"},"uptime":{"percent":100,"checks":14,"ok":14,"last_checked_at":"2026-09-22T20:15:52.928Z","last_ok_at":"2026-09-22T20:15:52.928Z","latency_ms":204},"claimed":false,"transport":"mixed","callable_via_gateway":true,"default_price_micros":0,"repository":"https://github.com/Nikolife2016/pulsefeed-x402","website":"https://pulsefeed.dev","version":"1.1.0","remotes":[{"type":"streamable-http","url":"https://pulsefeed.dev/mcp-server"}],"packages":[{"registryType":"npm","registryBaseUrl":"https://registry.npmjs.org","identifier":"pulsefeed-x402-mcp","version":"1.1.0","transport":{"type":"stdio"}}],"tools":[{"name":"check_x402_endpoint","description":"Before paying an unknown x402 endpoint, check whether it is safe: liveness, trust score (0-100), anomaly flags (receiver address changed between observations, catalog price vs. challenge price, invalid receiver, testnet listed as production, scheme outside the x402 spec), receiver stability and observation-count-qualified uptime — with a pay/avoid verdict. Reads the challenge from both the response body and the v2 PAYMENT-REQUIRED header. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"url":{"type":"string","description":"The x402 endpoint URL to verify"}},"required":["url"],"additionalProperties":false}},{"name":"mcp_check_server","description":"Before installing an MCP server or npm package, audit it: does it run an INSTALL SCRIPT (arbitrary code execution at `npm i`), is it abandoned, does it ship a repository and license, weekly downloads, provenance — with a safe/caution/avoid verdict. ~11% of audited MCP servers run install scripts. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"package":{"type":"string","description":"npm package name of the MCP server, e.g. @scope/name"}},"required":["package"],"additionalProperties":false}},{"name":"mcp_drift_check","description":"The rug pull check. `mcp_check_server` answers whether a package is safe TODAY; this answers what CHANGED after it was adopted: an install script added in a later version (arbitrary code on `npm i` that was not there at review time), package ownership swapped, repository removed, package unpublished, build provenance lost. Pass your own dependency list to check it in one call. Derived from a daily external re-audit of the whole MCP package population — an event exists only because a snapshot from before it exists. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"packages":{"type":"array","items":{"type":"string"},"maxItems":200,"description":"npm package names to check, e.g. your installed MCP servers. Omit for the whole ecosystem feed."},"days":{"type":"integer","minimum":1,"maximum":365,"description":"Window in days (default 30)"}},"additionalProperties":false}},{"name":"mcp_security_report","description":"State of MCP Security: how many audited MCP servers run an arbitrary install script, are abandoned, ship no repository or license — with day-over-day deltas and a sample of currently-flagged servers. From a daily audit of the MCP server catalog. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}},{"name":"pulsefeed_products","description":"List PulseFeed's products. All data endpoints are FREE since 2026-09-02 (trust checks, track records, datasets, drift history); only on-chain token signals are x402 pay-per-call. Formerly: deep trust check, endpoint track record, bulk trust dataset, and the cross-domain Data API. Includes the client-side spend-cap gotcha for x402-fetch.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}},{"name":"x402_changes","description":"What changed in the x402 ecosystem recently: services that stopped returning a valid challenge, receiver (payTo) changes, price changes, recoveries, newly-seen services. Derived from compounding time-series that cannot be reconstructed after the fact. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"days":{"type":"integer","minimum":1,"maximum":365,"description":"Window in days (default 7)"}},"additionalProperties":false}},{"name":"x402_data_sample","description":"FREE sample of the PulseFeed Data API: top-10 live x402 services as FULL records (compounding payTo/price history, anomaly flags, on-chain receiver profile), top-10 MCP servers with full audit profile, and 3 live incidents.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}},{"name":"x402_ecosystem_stats","description":"Live health of the whole x402 agent-payment ecosystem: tracked/alive/dead counts, catalog-accuracy audit (what share of listings called 'healthy' actually work), risk-level distribution, receiver stability and on-chain receiver profiles. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}},{"name":"x402_incidents","description":"Anomalies observed in live x402 endpoints by continuous independent measurement: receiver-address changes between observations, catalog price vs. challenge price mismatches, invalid receivers, testnet endpoints listed as production, payment schemes outside the x402 spec — EACH WITH AN ON-CHAIN REFERENCE on Base. Measurements, not accusations of intent. Check before paying anything. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"days":{"type":"integer","minimum":1,"maximum":365,"description":"Look-back window in days (default 30)"}},"additionalProperties":false}},{"name":"x402_leaderboard","description":"Top x402 services ranked by the open PulseFeed Trust Score (0-100), with price and network — the most reliable live agent-payment endpoints right now. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}},{"name":"x402_working_services","description":"List x402 agent-payment services that are currently ALIVE and return a valid x402 challenge, ranked by PulseFeed Trust Score, plus ecosystem risk map. Use this to pick a service with a track record instead of paying an endpoint you have not checked. Free.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{},"additionalProperties":false}}],"scan":{"score":93,"grade":"A","scanned_at":"2026-09-21T22:07:15.176Z","report":{"scannerVersion":"0.1.9","scannedAt":"2026-09-21T22:07:15.051Z","components":{"code":{"score":25,"max":25,"notes":["4 source files scanned"]},"reliability":{"score":20,"max":20,"notes":["remote reachable in 1871ms"]},"poisoning":{"score":15,"max":15,"notes":["11 tool descriptions checked"]},"auth":{"score":10,"max":15,"notes":["open endpoint, read-only tools"]},"maintenance":{"score":15,"max":15,"notes":["last push 0 days ago"]},"identity":{"score":8,"max":10,"notes":["registry namespace matches repository owner","GitHub account older than a year"]}},"findings":[],"inputs":{"probes":[{"url":"https://pulsefeed.dev/mcp-server","reachable":true,"authRequired":false,"latencyMs":1871,"serverInfo":{"name":"pulsefeed-x402","version":"1.0.7"}}],"packages":[{"registryType":"npm","identifier":"pulsefeed-x402-mcp","version":"1.1.0","found":true,"license":"MIT","hasInstallScripts":false,"dependencyCount":4,"publishedAt":"2026-09-21T13:19:33.062Z","repositoryUrl":"git+https://github.com/Nikolife2016/pulsefeed-x402.git","weeklyDownloads":48}],"repo":{"found":true,"owner":"Nikolife2016","repo":"pulsefeed-x402","archived":false,"pushedAt":"2026-09-21T19:43:42Z","stars":0,"forks":0,"openIssues":9,"ownerType":"User","ownerAvatarUrl":"https://avatars.githubusercontent.com/u/139212778?v=4","ownerCreatedAt":"2023-07-11T07:34:26Z","license":"MIT"},"icon":{"url":null,"source":"none"},"presence":{"stars":0,"forks":0,"downloadsWeek":48,"license":"MIT","lastPushAt":"2026-09-21T19:43:42.000Z","score":31}}}},"grade_history":[],"reviews":[]}