Aegis smart contract full auditPOST /audit · x402 API by Perpetua
Full smart contract audit across six focused lenses, access control, reentrancy and state order, arithmetic, economics and oracles, upgradeability and token rug vectors. Every finding is then challenged by an adversarial pass that tries to refute it, so what ships is only what survived. Returns a job id at once, then a signed report with exploit scenarios and a table of what the owner can do. Call GET /audit?address=0x..&chain=base for a deployed contract on Base, Ethereum, Arbitrum, Optimism, Polygon or BSC, or POST /audit with a JSON body {"source": "contract .."} for code that is not deployed. Nothing is charged when the source is unverified or does not compile.
What does this x402 API do?
Aegis smart contract full audit. This is an x402-gated POST API resource from Perpetua. TOLL·402 did not invoke this route automatically because doing so was not considered safe. No normalized USD price is recorded; the listing names Base. No settled paid call has been verified.
- Published price
- No normalized USD price is recorded
- Networks
- Base
- Latest evidence
- TOLL·402 did not invoke this route automatically because doing so was not considered safe
- Resource ID
- 0d12ebb96f43894f3876f545
Start with a quote-only recipe. Payment signing stays in your project.
const response = await fetch("https://api.tradeperpetua.xyz/audit", {
method: "POST",
headers: { "content-type": "application/json" },
body: JSON.stringify({
"replace": "with provider-approved input"
}),
});
console.log(response.status);
console.log(Object.fromEntries(response.headers));
console.log((await response.text()).slice(0, 1000));
// A valid 402 is a quote, not a completed paid call.Review the provider input schema before running this non-read-only method. No payment code is included.
- Observed in 402-index
Discovered through self-registered.
- Exact route checked
not safely testable · potentially-mutating-method:POST
- Origin reachable
HEAD https://api.tradeperpetua.xyz/ returned 200.
- Registry record checked
Registry health: healthy.
What evidence supports this listing?
Each record has an exact-route quote outcome. Unresolved templates and potentially mutating methods are labeled instead of being invoked without provider-specific test input. A quote is still separate from a settled paid call. Read the discovery and verification methodology →
Which networks and payment options does it accept?
The normalized listing price is No normalized USD price is recorded. Raw protocol requirements remain visible below for implementation and audit use.