# io.github.epistemedeus/x402-data-gateway (remote · agents.samedaydesk.com)

Twenty-two paid x402 and MPP tools for agent discovery, payment safety, data, and DeFi.

- Trust score: 67/100 (medium)
- Change this week: +4
- Registry status: active
- Liveness: live
- Owner verified: no
- Last scored: 2026-08-19

## Components

- remote · `agents.samedaydesk.com`: 67/100 (this document), [markdown](https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents.md), [page](https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents)

## Channel facts

- Endpoint: `https://agents.samedaydesk.com/mcp`
- Transports: `streamable-http`
- Auth: `none`
- Version: `1.23.16`

## Trust breakdown

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. Scores are 0–100 per category. Scoring method: https://verifymcp.io/docs/scoring (what has changed: https://verifymcp.io/docs/scoring/changelog)

Scored 2026-08-19.

- **Endpoint Security**: 57/100
  - The endpoint's TLS certificate is valid, in date, and uses a strong key.
  - Authorisation not fully verified: no authorisation is required to call this server, and 22 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe.
  - HTTPS is enforced; there's no plaintext access path.
  - HSTS check failed: the Strict-Transport-Security header is absent.
  - DNSSEC check failed: this domain isn't protected by DNSSEC.
- **Transport & Reachability**: 100/100
  - Verified streamable-http transport via a live MCP handshake.
- **Schema Quality & AI Usability**: 69/100
  - AI-judged instruction clarity (excellent).
  - Context-footprint check failed: tool/resource definitions use about 4103 tokens (~186/item across 22 items; 22 tools + 0 resources), over budget; trim descriptions and params.
  - Usage-examples check failed: none of the tools include examples.
- **Stability & Change Management**: 33/100
  - Stability observed for 10 of 30 days with no destabilising changes; credit accrues until the full window elapses.
- **Tool Coverage**: 100/100
  - 100% of tools have a non-trivial description (not blank, and not just the tool's name).
  - 100% of tool parameters carry a description.
  - Structured output schemas are declared (5% of tools); any adoption earns full credit.
- **Capabilities**: 100/100
  - Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.

## Install

### Claude

```bash
claude mcp add --transport http epistemedeus-x402-data-gateway https://agents.samedaydesk.com/mcp
```

### Codex

```toml
[mcp_servers.epistemedeus-x402-data-gateway]
url = "https://agents.samedaydesk.com/mcp"
```

### opencode

```json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "epistemedeus-x402-data-gateway": {
      "type": "remote",
      "url": "https://agents.samedaydesk.com/mcp",
      "enabled": true
    }
  }
}
```

### OpenClaw

```bash
openclaw mcp add epistemedeus-x402-data-gateway --url https://agents.samedaydesk.com/mcp --transport streamable-http
```

### Hermes

```yaml
mcp_servers:
  epistemedeus-x402-data-gateway:
    url: "https://agents.samedaydesk.com/mcp"
```

### Other

```json
{
  "mcpServers": {
    "epistemedeus-x402-data-gateway": {
      "type": "http",
      "url": "https://agents.samedaydesk.com/mcp"
    }
  }
}
```

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

## Changelog

Every change recorded for this component, newest first. Days that predate change tracking, or that we cannot explain, say so: "we were watching and nothing happened" and "we were not watching" are different claims.

### 2026-08-19 (score 67, +1)

No change was recorded against any check on this day. Stability & Change Management went from 30 to 33. That category is still filling its 30-day observation window: 9 days of observed history at the previous scan, 10 at this one. The score rises as the window fills, whether or not the server changes.

### 2026-08-17 (score 66, +1)

No change was recorded against any check on this day. Stability & Change Management went from 23 to 27. That category is still filling its 30-day observation window: 7 days of observed history at the previous scan, 8 at this one. The score rises as the window fills, whether or not the server changes.

### 2026-08-15 (score 65, +1)

No change was recorded against any check on this day. Stability & Change Management went from 17 to 20. That category is still filling its 30-day observation window: 5 days of observed history at the previous scan, 6 at this one. The score rises as the window fills, whether or not the server changes.

### 2026-08-13 (score 64, +1)

- [functional] Server version: 1.23.14 → 1.23.16
- [functional] Server version: 1.23.11 → 1.23.14

### 2026-08-12 (score 63, 0)

- [security] Tool “agent_surface_budget_audit” rewrote its description, which is the text the model reads
- [security] Tool “seller_integrity_audit” rewrote its description, which is the text the model reads
- [security] Tool “agent_discoverability_audit” rewrote its description, which is the text the model reads
- [security] Tool “payment_offer_preflight” rewrote its description, which is the text the model reads
- [functional regression] Schema quality: 163 → 186
- [functional regression] Schema quality: 163 → 184
- [functional regression] Schema quality: 163 → 183
- [functional regression] Schema quality: 163 → 181
- [functional regression] Schema quality: 2776 → 3561
- [functional] First check of Tool coverage: 5
- [functional] Server version: 1.23.10 → 1.23.11
- [functional] Server version: 1.23.5 → 1.23.10
- [functional] Server version: 1.23.4 → 1.23.5
- [functional] Server version: 1.23.3 → 1.23.4
- [functional] Server version: 1.22.3 → 1.23.3
- [functional] Server version: 1.21.0 → 1.22.3
- [functional] Server version: 1.19.0 → 1.21.0
- [functional] Server version: 1.13.0 → 1.19.0
- [functional] New tool “agent_surface_budget_audit”
- [functional] New tool “contract_qualified_search”
- [functional] New tool “seller_integrity_audit”
- [functional] New tool “stateful_wallet_policy_conformance”
- [functional] New tool “wallet_policy_conformance”
- [cosmetic] “agent_surface_budget_audit” added an optional parameter “surfaceMode”
- [cosmetic] “seller_integrity_audit” added an optional parameter “method”
- [cosmetic] “seller_integrity_audit” added an optional parameter “requiredPaths”
- [cosmetic] “agent_discoverability_audit” added an optional parameter “expectedPriceUsd”
- [cosmetic] “agent_discoverability_audit” added an optional parameter “runtimeUrl”
- [cosmetic] “payment_offer_preflight” added an optional parameter “catalog”
- [cosmetic] “seller_integrity_audit” reworded the description of “requireBazaar”
- [cosmetic] “seller_integrity_audit” reworded the description of “route”
- [cosmetic] “payment_offer_preflight” reworded the description of “url”

### 2026-08-11 (score 63, +1)

- [security] Tool “agent_discoverability_audit” rewrote its description, which is the text the model reads
- [functional regression] Schema quality: 2241 → 2776
- [functional regression] Schema quality: 2241 → 2548
- [functional] We updated how we score, so this day's move reflects our rubric, not a change to the server
- [functional] Server version: 1.12.1 → 1.13.0
- [functional] Server version: 1.12.0 → 1.12.1
- [functional] Server version: 1.11.48 → 1.12.0
- [functional] Server version: 1.11.40 → 1.11.48
- [functional] Server version: 1.11.37 → 1.11.40
- [functional] Server version: 1.11.33 → 1.11.37
- [functional] Server version: 1.11.32 → 1.11.33
- [functional] New tool “solana_transaction_receipt”
- [functional] New tool “transaction_receipt”
- [functional] New tool “settlement_proof”
- [cosmetic] “agent_discoverability_audit” added an optional parameter “surfaceAudit”

### 2026-08-10 (score 62, +1)

- [security] Tool “agent_discoverability_audit” rewrote its description, which is the text the model reads
- [functional improvement] Stability: unverified → 0.03
- [functional] Server version: 1.11.28 → 1.11.32
- [functional] Server version: 1.11.16 → 1.11.28
- [functional] New tool “payment_offer_preflight”

### 2026-08-09 (score 61)

First indexed and scored.

## MCP tools (22)

### `extract` (~142 tokens)

Extract Web Page as Structured JSON

Fetch a public HTTP(S) page and return compact extraction signals for programmatic inspection: title, meta description, Open Graph/Twitter metadata, JSON-LD, headings, links, text excerpt, and AI-readiness flags. Use `read` instead when you need the page body as LLM-ready Markdown rather than metadata or a link inventory. Does not execute JavaScript; follows redirects and applies SSRF, timeout, and response-size guards.

Input parameters:

- `url` (string, required): Public HTTP(S) URL. Choose extract for metadata, JSON-LD, headings, links, and a text excerpt; use read for cleaned full-body Markdown. Content is fetched without JavaScript rendering.

### `read` (~131 tokens)

Read Web Page as Markdown

Fetch a public HTTP(S) page and return its readable body as cleaned Markdown for LLM context, preserving headings, links, and lists while dropping navigation, ads, scripts, headers, footers, asides, and forms. Use `extract` instead when you need metadata, JSON-LD, Open Graph/Twitter tags, or a link inventory. Markdown is capped at 40,000 characters and no JavaScript is executed.

Input parameters:

- `url` (string, required): Public HTTP(S) URL whose readable body is needed as Markdown. Content is fetched without JavaScript rendering and may be truncated at 40,000 characters.

### `scan` (~71 tokens)

Scan GitHub Repository Before Install

Static supply-chain security scan of a public GitHub repo before an agent installs/runs it. Flags exfil sinks, obfuscation, credential reads, install-time curl|bash. risk=clean|suspicious|dangerous.

Input parameters:

- `repo` (string, required): Public GitHub repo: owner/name or URL

### `schemaforge` (~165 tokens)

Generate Business JSON-LD

Analyze a public business site and return a deterministic, paste-ready JSON-LD template plus the live structured-data gap diff and ranked fixes. Use `deep_audit` instead when the same call must also return company, technology, contact, and DNS/email evidence. Generated markup contains placeholders that must be replaced with real business values; this tool makes no site changes and does not guarantee AI citations.

Input parameters:

- `city` (string): Optional city the business serves; used to contextualize the generated structured-data template.
- `site` (string, required): Public business homepage or representative landing-page URL. Live HTML must be directly fetchable; JavaScript is not executed.
- `vertical` (string): Optional structured-data template profile. med-spas is currently the specialized profile; unsupported values fall back to it.

### `enrich` (~110 tokens)

Enrich Company Domain

Inspect a public company domain and return structured identity, technology, social, contact, DNS, email-infrastructure, and AI-readiness evidence. Use `schemaforge` instead for a paste-ready JSON-LD template and remediation diff, or `deep_audit` when both outputs are required together. Public data only; this tool makes no site changes.

Input parameters:

- `domain` (string, required): Public company domain or URL, for example stripe.com. Use enrich for company evidence; use wallet_enrich for an EVM address.

### `wallet_enrich` (~119 tokens)

Enrich Base Wallet or Contract

Inspect a public Base or EVM address and return an agent-ready on-chain profile: EOA or contract type, native and curated token holdings, token/NFT metadata, proxy evidence, activity, and a derived profile label. Use `enrich` for a company domain; the two tools accept different identifiers and return different evidence. Read-only public chain data; no wallet action or custody.

Input parameters:

- `address` (string, required): Public Base or EVM 0x address. Use wallet_enrich for on-chain evidence; use enrich for a company domain.

### `deep_audit` (~187 tokens)

Audit Complete AI Search Readiness

Run one read-only AI-search-readiness audit for a public business domain: company, technology, contact, and DNS/email evidence from `enrich`, plus the live structured-data gap analysis and paste-ready JSON-LD template from `schemaforge`. Use `enrich` for company facts only or `schemaforge` for structured-data remediation only. The template contains placeholders for real data; the score is diagnostic, no site changes are made, and it does not guarantee AI citations.

Input parameters:

- `city` (string): Optional city the business serves; used only to contextualize the generated structured-data template.
- `domain` (string, required): Public business domain or URL. The hostname is normalized and the audit starts at its HTTPS homepage; any supplied path or query is ignored.
- `vertical` (string): Optional structured-data template profile. med-spas is currently specialized; unsupported values fall back to it.

### `morpho_position` (~142 tokens)

Inspect Morpho Borrower Position

Inspect one Base borrower across Morpho markets and return position balances, LTV, health factor, liquidation headroom, direct-RPC verification, and caller-selected collateral-price stress scenarios. Use `morpho_protection` when you need exact repay or add-collateral amounts and unsigned transaction templates, `morpho_market_underwrite` for market-wide risk, or `morpho_preliquidation_replay` for one completed historical event. Read-only; no wallet, signing, broadcast, or custody.

Input parameters:

- `address` (string, required): Borrower EVM address on Base mainnet
- `shocks` (array): Collateral price shocks in percent

### `morpho_protection` (~242 tokens)

Plan Morpho Borrower Protection

Calculate two alternative protection plans for one Base Morpho borrower under a selected collateral-price shock and target health factor: partial repayment or added collateral. Each plan includes the bounded asset amount, expected stressed health factor, evidence basis, and unsigned ERC-20 approval plus Morpho call templates. Use `morpho_position` for diagnosis without an action plan, `morpho_market_underwrite` for market-wide risk, or `morpho_preliquidation_replay` for a completed historical event. Read-only; no wallet, signing, broadcast, or custody.

Input parameters:

- `address` (string, required): Borrower EVM address on Base mainnet.
- `executionBufferBps` (integer): Additional repayment or collateral amount buffer in basis points for debt accrual and integer rounding; 25 means 0.25%.
- `protectAgainstShockPct` (number): Collateral-price shock percentage to withstand, from -99 through 0; for example -10 models a 10% price decline.
- `targetHealthFactor` (number): Target Morpho health factor after the selected collateral-price shock; must be greater than 1 and at most 5.

### `morpho_market_underwrite` (~133 tokens)

Underwrite Morpho Market

Underwrite one Base Morpho market with independent GraphQL, REST, and direct-RPC evidence for configuration integrity, liquidity, utilization, concentration, borrower health bands, recent history, bad debt, and PreLiquidation availability. Use `morpho_position` or `morpho_protection` for one borrower's current position or protection plan, and `morpho_preliquidation_replay` for the economics of one completed historical event. Read-only evidence with explicit disagreements; no opaque risk score or transaction action.

Input parameters:

- `marketId` (string, required): Morpho market ID on Base mainnet

### `morpho_preliquidation_replay` (~135 tokens)

Replay Morpho PreLiquidation

Reconstruct one successful Base Morpho PreLiquidation transaction from its receipt and the exact block state, returning repaid and seized assets, protocol-oracle valuation, gross incentive, configured health window, and transaction gas before off-chain costs. Use `morpho_market_underwrite` for current market risk, `morpho_position` for a current borrower, or `morpho_protection` for a future protection plan. Historical read-only evidence; no transaction simulation, wallet, signing, or broadcast.

Input parameters:

- `transactionHash` (string, required): Successful Base transaction containing a Morpho PreLiquidate event

### `opportunity_preflight` (~369 tokens)

Preflight Agent Work Opportunity

Agent work opportunity -> deterministic attempt, verify-first, or abandon preflight using caller-supplied cost and selection assumptions plus dated platform evidence. Returns break-even probability, expected surplus, hard gates, and source-linked evidence. No claim, bid, payment, or submission.

Input parameters:

- `acceptance` (string): How completion is accepted: deterministic proof, machine score, review deadline, discretionary judgment, or unknown.
- `agentAccess` (string): Whether the platform explicitly allows agent participation, is agent-only, mixes agents and humans, is human-only, or remains unknown.
- `competition` (integer): Known number of competing submissions or workers; use 0 when unknown.
- `computeUsd` (number): Expected model, API, hosting, and compute spend in USD for one attempt.
- `hourlyCostUsd` (number, required): Internal opportunity cost per hour in USD.
- `hours` (number, required): Estimated human and agent work time in hours for one complete attempt.
- `mandatorySpendUsd` (number): Non-recoverable cash spend in USD required before the opportunity can settle.
- `platform` (string): Optional platform slug used to attach dated platform-health evidence when a matching card exists.
- `reusableValueUsd` (number): Conservative USD value of reusable code, research, distribution, or other assets created by the attempt.
- `rewardUsd` (number, required): Maximum gross reward in USD if the opportunity is selected and paid.
- `selectionProbabilityPct` (number): Caller-supplied probability, from 0 to 100, of receiving the reward; omit to receive a verify-first decision.
- `settlement` (string): How the reward is funded and paid: direct, escrow, platform balance, discretionary, unfunded, or unknown.
- `slots` (integer): Number of independently paid winner or worker slots.

### `agent_discoverability_audit` (~323 tokens)

Audit Agent Service Discoverability

Measure one service's brand-blind rank, source-family coverage, expected-route presence, canonical-vs-alias listing identity, duplicate records, competitors, and exact-price drift across ten public machine-service discovery views. Supply `runtimeUrl` with an exact route to derive the comparison price from one coherent live unsigned x402 or MPP offer; otherwise `expectedPriceUsd` remains caller-supplied. Set `surfaceAudit` only when you also want the target's public Agent Card, ERC-8004 registration document, and action catalog checked. Catalog queries use no credentials or payments, and runtime inspection is DNS-pinned, redirect-free, headers-only, and unsigned. Results are point-in-time reach and catalog-coherence evidence, not demand, seller trust, or future-rank proof.

Input parameters:

- `expectedPriceUsd`: Optional exact route price expected by the caller. A coherent runtimeUrl offer takes precedence and caller drift is reported.
- `intent` (string, required): Brand-blind capability description
- `origin` (string, required): Public HTTPS service origin
- `payTo` (string): Optional EVM payTo for alias matching
- `route` (string): Optional expected exact path
- `runtimeUrl` (string): Optional exact same-origin HTTPS GET URL whose unpaid x402 or MPP offer supplies the runtime price reference. Requires route and an exactly matching pathname.
- `surfaceAudit` (boolean): When true, inspect the target's public Agent Card, ERC-8004 registration document, and action catalog for the expected route through bounded same-origin fetches.

### `payment_offer_preflight` (~245 tokens)

Preflight x402 and MPP Offer

Compare x402 and MPP payment challenges, terms, and seller-declared JSON success-response readiness for one exact public HTTPS GET route before buyer authorization, including URL and realm binding, expiry, cross-protocol economic parity, and exact-route OpenAPI evidence. Use `agent_discoverability_audit` instead when you need to know whether catalogs rank or expose a service. This tool uses no target credential, signature, or target payment, follows no redirect, never reads the paid target body, and reads only the same-origin public OpenAPI document under a strict size cap. A seller declaration is advisory and does not establish runtime validity, seller trust, utility, or settlement reliability.

Input parameters:

- `catalog` (object): Optional caller-supplied catalog candidate. When present, the tool compares it with every live unsigned offer across request, protocol, amount, network, asset, recipient, and expiry.
- `url` (string, required): Exact public HTTPS GET route whose unpaid x402 and MPP challenge headers and same-origin OpenAPI success-response declaration should be inspected before buyer authorization. Credential-like query key…

### `seller_integrity_audit` (~238 tokens)

Audit Seller Machine Buyability

Audit one exact paid GET or POST seller route against buyer-required JSON success paths. GET verifies constructible non-secret input, exact request binding, live x402 and MPP economics, and optional Bazaar eligibility; POST performs static-safe OpenAPI contract analysis and sends no target request. Use `payment_offer_preflight` instead when you already have one exact callable GET URL and only need its current unpaid offer before buyer authorization, or `agent_discoverability_audit` for catalog rank and identity. Uses no target credential, signature, or target payment and retains no seller schema, body, or query values.

Input parameters:

- `method` (string): POST receives static OpenAPI response-contract analysis without sending a target request.
- `origin` (string, required): Credential-free public HTTPS seller origin on port 443.
- `requireBazaar` (boolean): When true, missing Bazaar discovery metadata becomes a repair finding for live-probed GET routes.
- `requiredPaths` (array): Buyer-required dotted success-response paths that the seller schema must guarantee recursively.
- `route` (string, required): Exact paid GET or POST path declared by the seller, without query or template parameters.

### `contract_qualified_search` (~226 tokens)

Search Contract-Qualified Services

Search Agent402 and the official MPP catalog for paid machine services that both match a capability intent and guarantee buyer-required JSON response paths. Use `agent_discoverability_audit` when you are measuring one known seller's catalog reach or rank, `seller_integrity_audit` when you already know the exact seller route to inspect, or `payment_offer_preflight` when you already have one exact callable GET URL. This search excludes SameDayDesk-owned supply and unresolved routes before audit, uses no credential or wallet, sends no seller POST or target payment, reads no paid response body, and returns only a query digest.

Input parameters:

- `limit` (integer): Maximum candidates audited and returned across Agent402 and MPP.
- `maxPriceDisplayUnits` (number): Maximum advertised per-call price in each source's display currency.
- `query` (string, required): Capability intent sent to Agent402 and used locally to rank MPP catalog metadata. Do not include credentials or private values.
- `requiredPaths` (array, required): Buyer-required dotted success-response paths that every returned seller schema must guarantee recursively.

### `agent_surface_budget_audit` (~251 tokens)

Audit Agent Surface Budget

Measure one public service's credential-free MCP tools/list, OpenAPI, or both declared discovery surfaces before any tool call or target payment. Use `agent_discoverability_audit` for catalog reach and rank, `seller_integrity_audit` for one exact operation's response contract, or this tool for byte budgets, heaviest definitions, missing selection contracts, and progressive-discovery fixes. Unselected surfaces are not fetched or judged. It follows no redirect, calls no target tool, sends no credential or target payment, and returns no target schema, response body, or session identifier.

Input parameters:

- `mcpBudgetBytes` (integer): Maximum preferred raw MCP tools/list response size in bytes.
- `mcpPath` (string): Exact root-relative MCP streamable-HTTP path.
- `openApiBudgetBytes` (integer): Maximum preferred raw OpenAPI document size in bytes.
- `openApiPath` (string): Exact root-relative OpenAPI JSON path.
- `origin` (string, required): Credential-free public HTTPS service origin on port 443, with no path or query.
- `surfaceMode` (string): Audit MCP only, OpenAPI only, or both. Unselected surfaces are not fetched or judged.

Output parameters:

- `actions` (array)
- `boundary` (object)
- `checkedAt` (string)
- `decision` (string)
- `mcp`
- `ok` (boolean)
- `openapi`
- `product` (string)
- `request` (object)
- `version` (string)

### `settlement_proof` (~158 tokens)

Verify Base USDC Settlement

Verify one claimed canonical Base USDC settlement after execution by matching a successful transaction receipt to the exact recipient, atomic amount, and optional payer. Use `payment_offer_preflight` before authorization when you need to inspect an unpaid x402 or MPP offer instead. This tool reads only public Base receipt and log data; it reads no merchant ledger and performs no wallet, signing, broadcast, custody, or execution action.

Input parameters:

- `amountAtomic` (string, required): Expected positive USDC amount in six-decimal atomic units.
- `payer` (string): Optional expected canonical Base USDC payer.
- `recipient` (string, required): Expected canonical Base USDC recipient.
- `transactionHash` (string, required): Base mainnet transaction hash containing the claimed canonical USDC transfer.

### `transaction_receipt` (~129 tokens)

Inspect Transaction Receipt

Inspect one Base or Ethereum transaction hash and return normalized success or revert status, block time, gas and fee fields, decoded ERC-20 Transfer events, and canonical USDC transfers. Use `settlement_proof` instead when you must verify an exact canonical Base USDC recipient, amount, and optional payer claim. Raw logs are excluded; this tool performs no wallet, signing, broadcast, custody, or execution action.

Input parameters:

- `network` (string): Receipt network. Defaults to Base mainnet.
- `transactionHash` (string, required): Mined Base or Ethereum transaction hash whose normalized receipt should be returned.

### `solana_transaction_receipt` (~183 tokens)

Inspect Solana Transaction Receipt

Inspect one finalized Solana mainnet transaction signature and return normalized success or failure status, slot, block time, fee, SPL-token owner deltas, and canonical USDC deltas. Supply recipient, amount, and optional payer when an exact settlement claim must be verified; use `transaction_receipt` for Base or Ethereum. Raw instructions and logs are excluded, and this tool performs no wallet, signing, broadcast, custody, or execution action.

Input parameters:

- `amountAtomic` (string): Optional expected positive token amount in atomic units; requires recipient.
- `mint` (string): Optional SPL-token mint; defaults to canonical Solana USDC.
- `payer` (string): Optional expected token payer owner; requires recipient and amountAtomic.
- `recipient` (string): Optional expected token recipient owner.
- `signature` (string, required): Finalized Solana mainnet transaction signature.

### `wallet_policy_conformance` (~184 tokens)

Evaluate Agent Wallet Policy Conformance

Evaluate safe standardized allow, deny, and error observations from an agent wallet or delegated signer. Use this after running a bounded provider policy test matrix to distinguish explicit provider-policy enforcement from validation or generic provider failures and to test exact execution shape separately from operation allowlisting. Accepts no credentials, wallet IDs, signatures, transactions, or raw provider responses; it evaluates caller-supplied observations and does not run the provider tests itself.

Input parameters:

- `network` (string, required): Network identifier used by the tested profile.
- `observations` (array, required): Unique standardized observations. Raw provider responses, signatures, transactions, credentials, and wallet IDs are rejected.
- `profileId` (string, required): Caller-defined policy profile identifier with no credential or wallet secret.
- `protocol` (string, required): Payment or execution protocol bound by the tested profile.
- `provider` (string, required): Wallet or delegated-signer provider name.

### `stateful_wallet_policy_conformance` (~220 tokens)

Evaluate Stateful Wallet Policy Conformance

Evaluate safe standardized observations from wallet policies that track prior or concurrent requests. Use `wallet_policy_conformance` instead for one-request action shape, method, chain, token, recipient, amount, and function controls. This tool separately tests sequential cumulative limits, signed-but-unbroadcast accounting, ABI extraction, concurrent oversubscription, counter-reference failure, and application serialization. It accepts no credentials, counter values, wallet or resource IDs, signatures, transactions, or raw provider responses and does not run the provider tests itself.

Input parameters:

- `network` (string, required): Network identifier used by the tested stateful profile.
- `observations` (array, required): Unique standardized stateful observations. Raw provider responses, signatures, transactions, counter values, credentials, wallet IDs, and resource IDs are rejected.
- `profileId` (string, required): Caller-defined stateful policy profile identifier with no credential, wallet, or counter secret.
- `protocol` (string, required): Payment or execution protocol bound by the tested stateful profile.
- `provider` (string, required): Wallet or delegated-signer provider name.

## Diagnostics

Captured diagnostic sections: TLS, DNSSEC, Authorisation, Transports. The full working is on the page: https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents#diagnostics

## Score history

- 2026-08-19: 67
- 2026-08-18: 66
- 2026-08-17: 66
- 2026-08-16: 65
- 2026-08-15: 65
- 2026-08-14: 64
- 2026-08-13: 64
- 2026-08-12: 63
- 2026-08-11: 63
- 2026-08-10: 62
- 2026-08-09: 61

## Links

- Remote endpoint: https://agents.samedaydesk.com/mcp
- Repository: https://github.com/epistemedeus/x402-url-extractor
- Website: https://agents.samedaydesk.com/
- Changelog RSS feed: https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents.xml
- Changelog JSON feed: https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents.json
- HTML version of this page: https://verifymcp.io/servers/epistemedeus-x402-data-gateway/agents
