ToolAssay

Audit one set of response headers against a contract the caller states

Audit one set of response headers against a contract the caller states: headers that must be present, headers that must not be, and exact, prefix or substring rules on values. Also reports a header repeated with different values, where which one a client uses varies; an absent Content-Type, which forces a client to sniff; and a textual Content-Type with no charset. Optionally reports absent cache directives and no validator at all, which makes a conditional request impossible.

Answeringour last check, 2026-10-04
1 of 1checks answered this week
5314 msmedian answer time
$0.12listed price per call
$0.12price it asked us

Paid test badge: not yet. The checks above are free: we call the tool without paying and read the payment request it sends back. The Verified badge needs paid calls whose answers match the promised output, and nobody can buy a badge.

Endpoint

POST https://api.zfinia.com/x402/v1/http-header-contract-audit

CategoryCode and developer
Provider hostapi.zfinia.com
Networkseip155:8453
Payment schemesexact
Self-reported calls, 30 days1 from 1 payers (the provider's figure, not ours)

Our checks, last 30 days

DayResultHTTPAskedTime
2026-10-04 valid payment request 402$0.12 5314 ms

Example input (from the provider)

{
  "body": {
    "contract": {
      "forbidden": [
        "Server",
        "X-Powered-By"
      ],
      "require_cache_directives": true,
      "required": [
        "Cache-Control",
        "Content-Type"
      ],
      "values": {
        "Content-Type": {
          "starts_with": "application/json"
        },
        "X-Frame-Options": "DENY"
      }
    },
    "headers": {
      "Content-Type": "application/json",
      "Server": "example-edge/2.1",
      "Vary": [
        "Accept-Encoding",
        "Origin"
      ],
      "X-Request-Id": [
        "a1",
        "b2"
      ]
    },
    "status": 200
  },
  "bodyType": "json",
  "method": "POST",
  "type": "http"
}

Promised output schema (from the provider)

{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "properties": {
    "input": {
      "additionalProperties": false,
      "properties": {
        "body": {
          "additionalProperties": false,
          "properties": {
            "contract": {
              "additionalProperties": false,
              "properties": {
                "forbidden": {
                  "items": {
                    "maxLength": 128,
                    "type": "string"
                  },
                  "maxItems": 100,
                  "minItems": 1,
                  "type": "array"
                },
                "require_cache_directives": {
                  "type": "boolean"
                },
                "required": {
                  "items": {
                    "maxLength": 128,
                    "type": "string"
                  },
                  "maxItems": 100,
                  "minItems": 1,
                  "type": "array"
                },
                "values": {
                  "type": "object"
                }
              },
              "type": "object"
            },
            "headers": {
              "type": "object"
            },
            "status": {
              "type": "integer"
            }
          },
          "required": [
            "headers"
          ],
          "type": "object"
        },
        "bodyType": {
          "enum": [
            "json",
            "form-data",
            "text"
          ],
          "type": "string"
        },
        "method": {
          "enum": [
            "POST"
          ],
          "type": "string"
        },
        "type": {
          "const": "http",
          "type": "string"
        }
      },
      "required": [
        "type",
        "method",
        "bodyType",
        "body"
      ],
      "type": "object"
    },
    "output": {
      "properties": {
        "example": {
          "type": "object"
        },
        "type": {
          "type": "string"
        }
      },
      "required": [
        "type"
      ],
      "type": "object"
    }
  },
  "required": [
    "input"
  ],
  "type": "object"
}

This page as JSON