Skip to main content
Glama

Purchase x402 Compatibility Audit

x402.compatibility_audit

PAID $1.00 USDC on Base via x402. Audits an x402 endpoint for v1/v2 compatibility defects. Calling this MCP tool does not spend funds; it returns the exact PAYMENT-REQUIRED challenge and canonical paid execution endpoint.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
urlYesPublic HTTP(S) x402 endpoint to audit.

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault
assetYes
inputYes
priceYes
pay_toYes
networkYes
capabilityYes
instructionYes
execution_urlYes
execution_modeYes
payment_requiredYes
payment_required_headerYes
settlement_expectationsYes
confirmation_expectationsYes

Schema Changelog

Changes observed during successful MCP inspections.

  1. Changed1 schema field changed
    • changedOutput schema / (root)
      Previous value: -nullNew value: +{
      +  "$schema": "http://json-schema.org/draft-07/schema#",
      +  "additionalProperties": false,
      +  "properties": {
      +    "asset": {
      +      "type": [
      +        "string",
      +        "null"
      +      ]
      +    },
      +    "capability": {
      +      "type": "string"
      +    },
      +    "confirmation_expectations": {
      +      "type": "string"
      +    },
      +    "execution_mode": {
      +      "type": "string"
      +    },
      +    "execution_url": {
      +      "type": [
      +        "string",
      +        "null"
      +      ]
      +    },
      +    "input": {
      +      "additionalProperties": true,
      +      "properties": {},
      +      "type": "object"
      +    },
      +    "instruction": {
      +      "type": "string"
      +    },
      +    "network": {
      +      "type": [
      +        "string",
      +        "null"
      +      ]
      +    },
      +    "pay_to": {
      +      "type": [
      +        "string",
      +        "null"
      +      ]
      +    },
      +    "payment_required": {
      +      "const": true,
      +      "type": "boolean"
      +    },
      +    "payment_required_header": {
      +      "type": "string"
      +    },
      +    "price": {
      +      "type": [
      +        "string",
      +        "null"
      +      ]
      +    },
      +    "settlement_expectations": {
      +      "type": "string"
      +    }
      +  },
      +  "required": [
      +    "payment_required",
      +    "execution_mode",
      +    "capability",
      +    "input",
      +    "price",
      +    "asset",
      +    "network",
      +    "pay_to",
      +    "execution_url",
      +    "payment_required_header",
      +    "settlement_expectations",
      +    "confirmation_expectations",
      +    "instruction"
      +  ],
      +  "type": "object"
      +}
  2. Added

TDQS

A4.1/5.0
Behavior5/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

With annotations only covering readOnly/openWorld/destructive, the description supplies non-obvious behavioral facts: the $1.00 USDC on Base cost, the x402 payment mechanism, that invocation itself spends nothing, and that it returns the PAYMENT-REQUIRED challenge plus the canonical paid execution endpoint. This is exactly the 'beyond annotations' context that matters for a paid, network-touching tool.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness5/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Three short sentences, with the cost and payment method front-loaded before the functional description and the crucial 'does not spend funds' clarification. No filler or repetition.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness5/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a one-parameter paid tool with an output schema and partial annotations, the description covers everything an agent needs: price, payment chain, no-charge invocation, and the nature of the returned challenge/endpoint. Return-value detail is present but need not carry the burden since an output schema exists.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters3/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 100% and there is a single well-described 'url' parameter, so the schema already carries parameter meaning. The description adds no format, constraint, or example detail beyond what the schema provides, which lands at the baseline for full coverage.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose4/5

Does the description clearly state what the tool does and how it differs from similar tools?

States a specific verb and resource ('Audits an x402 endpoint for v1/v2 compatibility defects'), scoping it to the x402 protocol domain rather than generic audits. It is reasonably distinct from sibling audit tools such as mcp.schema_audit and openapi.quality_audit, though it never names or contrasts with them explicitly.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines3/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

There is no explicit when-to-use/when-not-to-use guidance or named alternative among the many sibling audit tools. The statement that calling it 'does not spend funds' does clarify invocation semantics, and the price line implies intent (you use this before paying for an audit), but the agent still has to infer when this tool is the right pick.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.