{"slug":"agent-pocket-network-v1-url-phishing-reputation-58aedb","title":"Check a URL for phishing signs without fetching it","host":"agent.pocket.network","method":"POST","resource":"https://agent.pocket.network/v1/url-phishing-reputation","category":"other","description":"Check a URL for phishing signs without fetching it: raw IP hosts, punycode, user@host, credential words in the host, very long hosts and deep subdomains. The verdict is suspicious or unknown, never clean, because no threat database is consulted; the response says what ran. POST /v1/reputation with {","price_listed":0.005,"price_asked":0.005,"state":"answering","state_label":"Answering","checks_7d":1,"answered_7d":1,"latency_ms_median":905,"reported_calls_30d":32,"reported_payers_30d":3,"networks":["eip155:8453"],"badge":"unverified","paid_checks_7d":0,"paid_ok_7d":0,"example_input":{"body":{"url":"http://192.168.1.1/login"},"bodyType":"json","method":"POST","type":"http"},"output_schema":{"$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"additionalProperties":false,"properties":{"body":{"description":"The body of POST /v1/reputation.","properties":{"url":{"description":"The URL to check (http or https). It is not fetched.","type":"string"}},"required":["url"],"type":"object"},"bodyType":{"enum":["json","form-data","text"],"type":"string"},"method":{"enum":["POST","PUT","PATCH"],"type":"string"},"type":{"const":"http","type":"string"}},"required":["type","method","bodyType","body"],"type":"object"},"output":{"properties":{"example":{"properties":{"data":{"description":"For POST /v1/reputation, a JSON object with url, host, verdict (malicious, suspicious, clean or unknown), heuristics, threat_matches, checked_sources (each source and whether it ran) and verdict_scope. A bad request answers 400 with an `error` string. Properties are pinned from live paid responses; nothing is required, because every route's 2xx response is validated against this one schema.","properties":{"checked_sources":{"items":{"properties":{"source":{"type":"string"},"status":{"type":"string"}},"type":"object"},"type":"array"},"heuristics":{"items":{"type":"string"},"type":"array"},"host":{"type":"string"},"service":{"type":"string"},"threat_matches":{},"url":{"type":"string"},"verdict":{"type":"string"},"verdict_scope":{"type":"string"}},"type":"object"},"portal":{"properties":{"provenance":{"const":"third-party-supplier"},"schemaCheck":{"enum":["passed","undeclared","unchecked"]},"serviceId":{"const":"url-phishing-reputation"}},"required":["provenance","serviceId","schemaCheck"],"type":"object"}},"required":["portal","data"],"type":"object"},"type":{"type":"string"}},"required":["type"],"type":"object"}},"required":["input"],"type":"object"},"history":[{"day":"2026-10-10","reachable":true,"status":402,"valid_402":true,"asked_usdc":0.005,"price_match":true,"latency_ms":905,"error":null}],"description_full":"Check a URL for phishing signs without fetching it: raw IP hosts, punycode, user@host, credential words in the host, very long hosts and deep subdomains. The verdict is suspicious or unknown, never clean, because no threat database is consulted; the response says what ran. POST /v1/reputation with {url}. Pay per request in USDC; no account, no API key.","last_updated":"2026-10-09T21:48:28.344Z","schemes":["exact"]}