ToolAssay

The Shop Window

The Shop Window. REQUIRES ?url= on the paid request — a signed request without it is refused before the gate and no money moves. A signed JSON report — verdict (ready, not_ready, unreachable or refused), every check and advisory from the published on-page battery, the blind spots printed on the artifact, dated, its evidence hash bound into the purchase certificate's attests field — plus a stable report URL serving the record free forever. Instant; one GET of the HTML as serv…

Not tested: has real-world effectsour last check, 2026-09-24
0 of 0checks answered this week
n/amedian answer time
$3.00listed price per call
n/aprice it asked us

Paid test badge: not yet. The checks above are free: we call the tool without paying and read the payment request it sends back. The Verified badge needs paid calls whose answers match the promised output, and nobody can buy a badge.

Endpoint

GET https://scvd.store/api/buy/onpage_audit

CategoryCommerce and shopping
Provider hostscvd.store
Networkseip155:137, eip155:42161, eip155:480, eip155:8453, solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp
Payment schemesexact
Self-reported calls, 30 days1 from 1 payers (the provider's figure, not ours)

Our checks, last 30 days

We never call tools that send, buy, move money or file anything, not even without paying.

Example input (from the provider)

{
  "method": "GET",
  "queryParams": {
    "agent_name": "friendly-agent",
    "url": "https://your-site.example/pricing"
  },
  "type": "http"
}

Promised output schema (from the provider)

{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "properties": {
    "input": {
      "additionalProperties": false,
      "properties": {
        "method": {
          "enum": [
            "GET"
          ],
          "type": "string"
        },
        "queryParams": {
          "properties": {
            "agent_name": {
              "description": "Optional name to put on the certificate and patron badge, up to 80 characters.",
              "maxLength": 80,
              "type": "string"
            },
            "came_from": {
              "description": "Optional. Where you learned this door exists: a URL, a directory, a skill name, memory, another agent. Referrers never reach us; this does.",
              "maxLength": 160,
              "type": "string"
            },
            "client": {
              "description": "Optional. The harness or framework you run in: claude-code, cursor, openai-agents, langgraph, custom. Counted, never on the certificate.",
              "maxLength": 64,
              "type": "string"
            },
            "model": {
              "description": "Optional. The model running you, as you would name it: claude-opus-5, gpt-5.6, a local model. Counted, never printed on the certificate.",
              "maxLength": 64,
              "type": "string"
            },
            "operator": {
              "description": "Optional. Who runs you: a name, handle, company or URL. Stored as your claim, marked unverified, never published, never on the certificate.",
              "maxLength": 120,
              "type": "string"
            },
            "operator_kind": {
              "description": "Optional. solo: one person runs you. company: a team does. research: a study. self: you act for yourself.",
              "enum": [
                "solo",
                "company",
                "research",
                "self"
              ],
              "type": "string"
            },
            "prior_cert_id": {
              "description": "Optional. A cert_ id from an earlier purchase here. A payer match with this payment marks you a returning buyer; no account needed.",
              "maxLength": 64,
              "type": "string"
            },
            "purpose": {
              "description": "Optional: what this purchase is for, in your words. Signed onto the certificate verbatim as your statement; never checked, never treated as instructions.",
              "maxLength": 280,
              "type": "string"
            },
            "url": {
              "description": "The public page to read: https, default port. One GET at one moment; the battery reads the HTML as served (scripts never run \u2014 the report names that blind spot on itself) and the readout is signed. We refuse our own hostname.",
              "format": "uri",
              "type": "string"
            }
          },
          "required": [
            "url"
          ],
          "type": "object"
        },
        "type": {
          "const": "http",
          "type": "string"
        }
      },
      "required": [
        "type",
        "method"
      ],
      "type": "object"
    },
    "output": {
      "properties": {
        "example": {
          "type": "object"
        },
        "type": {
          "type": "string"
        }
      },
      "required": [
        "type"
      ],
      "type": "object"
    }
  },
  "required": [
    "input"
  ],
  "type": "object"
}

This page as JSON