{"name":"Open Source Vulnerability Check","mount":"/dependency-risk","host":"dependency-risk.use.x402atlas.com","base_url":"https://dependency-risk.use.x402atlas.com","service_name":"x402 Atlas tools","x402_enabled":true,"endpoints":[{"method":"POST","path":"/batch","url":"https://dependency-risk.use.x402atlas.com/batch","example_request":{"url":"https://dependency-risk.use.x402atlas.com/batch","body":{"packages":[{"purl":"pkg:golang/golang.org/x/text@v0.3.7"},{"purl":"pkg:golang/golang.org/x/text@v0.3.7"}]},"content_type":"application/json"},"description":"Batch dependency vulnerability check — check ordered exact package versions in OSV with deduplicated CVE enrichment, explicit completeness, and CISA KEV known-exploited signals.","paid":true,"price":"$0.01","discoverable":true},{"method":"POST","path":"/package","url":"https://dependency-risk.use.x402atlas.com/package","example_request":{"url":"https://dependency-risk.use.x402atlas.com/package","body":{"purl":"pkg:maven/org.apache.logging.log4j/log4j-core@2.14.1"},"content_type":"application/json"},"description":"Package vulnerability check — check one exact open-source dependency version or purl against OSV, enrich CVE matches with CISA KEV known-exploited signals, and report fixes, severity, and provenance.","paid":true,"price":"$0.005","discoverable":true},{"method":"POST","path":"/sbom","url":"https://dependency-risk.use.x402atlas.com/sbom","example_request":{"url":"https://dependency-risk.use.x402atlas.com/sbom","body":{"document":{"bomFormat":"CycloneDX","components":[{"name":"log4j-core","purl":"pkg:maven/org.apache.logging.log4j/log4j-core@2.14.1","type":"library","version":"2.14.1"}],"specVersion":"1.5"}},"content_type":"application/json"},"description":"CycloneDX SBOM vulnerability check — analyze bounded JSON 1.5 software bill of materials components against OSV and prioritize exact CVE matches from CISA KEV without remote document fetches.","paid":true,"price":"$0.02","discoverable":true},{"method":"GET","path":"/vulnerability/{id}","url":"https://dependency-risk.use.x402atlas.com/vulnerability/{id}","example_request":{"url":"https://dependency-risk.use.x402atlas.com/vulnerability/CVE-2021-44228"},"description":"Open-source vulnerability lookup — retrieve one public OSV advisory by CVE or OSV ID and enrich exact CVE alias matches with CISA KEV known-exploited status.","paid":true,"price":"$0.005","discoverable":true}]}
