Lazaretto
by Lazarettolivefrom $0 /callPre-install security scanner for AI agent skills and tools. Fetches a third-party skill/package without running it, screens against known-bad threat data, and returns a structured threat report. $0.03/scan on Base; free hash lookups and lockfile checks.
TOOLS · 2
#TOOLDESCRIPTIONPRICE/CALL
01POST /v1/scandocsFull deterministic security scan of a skill/package URL; returns threat verdict, evidence, and SHA-256.$0.03
02GET /v1/known-bad/:sha256docsFree lookup of a file hash against the known-bad threat database.free
Prices set by the provider and charged per successful call.
CONNECT
# Inspect the unpaid MCP/x402 requirement with a valid initialize request.
curl -i --request POST 'https://lazaretto.dev' \
--header 'Content-Type: application/json' \
--header 'Accept: application/json, text/event-stream' \
--data '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"toll402-check","version":"1.0.0"}}}'Keep EVM_PRIVATE_KEY server-side and use a narrowly funded wallet.official MCP + x402 guide ↗