81trust / 100
Domain Enrich
by Agent Utility Suite in Company & people data
x402 APIPassing, checked 3 h ago
Answers 'Who hosts this company's email, and is it set up properly?' for lead enrichment, deliverability and vendor checks: MX records and email provider (Google Workspace, Microsoft 365, ...), SPF and DMARC policy, SaaS the domain has verified ownership with (Google, Microsoft, Stripe, Atlassian, ...), HTTPS reachability and security headers, from live DNS and the website. Not charged on invalid input or upstream failure. $0.004 USDC per call.
POST https://x402-agent-api.onrender.com/api/v1/domain-enrich
Last 30 days
All checks passedSome failedAll failedNot checked
- Uptime
- 100%
- Response time
- 221 ms typical, 221 ms slowest 5%
- Last check
- 3 h ago
- Next check
- any minute now
How to call it
# See the payment challenge (nothing is charged)
curl -i -X POST "https://x402-agent-api.onrender.com/api/v1/domain-enrich" \
-H "content-type: application/json" \
-d '{"domain":"stripe.com"}'import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { ExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";
const client = new x402Client().register(
"eip155:8453",
new ExactEvmScheme(privateKeyToAccount(process.env.AGENT_KEY)),
);
const pay = wrapFetchWithPayment(fetch, client);
// Not sure it's safe to pay? Preflight it first for $0.03:
// GET https://toolvet.app/api/v1/check?url=https%3A%2F%2Fx402-agent-api.onrender.com%2Fapi%2Fv1%2Fdomain-enrich
const res = await pay("https://x402-agent-api.onrender.com/api/v1/domain-enrich", {
method: "POST",
headers: { "content-type": "application/json" },
body: JSON.stringify({"domain":"stripe.com"}),
});
console.log(await res.json());Example input
{
"domain": "stripe.com"
}Example output
{
"checked_at": "2026-10-05T12:00:00.000Z",
"dmarc_configured": true,
"dmarc_policy": "reject",
"domain": "stripe.com",
"email_provider": "Google Workspace",
"has_mx_records": true,
"headers": {
"server": "nginx",
"strict-transport-security": "max-age=63072000; includeSubDomains; preload",
"x-content-type-options": "nosniff"
},
"mx_hosts": [
"aspmx.l.google.com",
"alt1.aspmx.l.google.com",
"alt2.aspmx.l.google.com"
],
"next_calls": [
{
"arguments": {
"url": "https://stripe.com/"
},
"price": "$0.002",
"tool": "scrape_markdown",
"why": "What does the company's website say?"
}
],
"spf_configured": true,
"spf_record": "v=spf1 include:_spf.google.com include:mail.stripe.com ~all",
"txt_records": [
"v=spf1 include:_spf.google.com include:mail.stripe.com ~all",
"google-site-verification=abc123",
"atlassian-domain-verification=def456",
"facebook-domain-verification=ghi789"
],
"verifications": [
"google",
"atlassian",
"facebook"
],
"website": {
"final_url": "https://stripe.com/",
"https": true,
"reachable": true,
"status": 200
}
}Security scan
- No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.
Recent checks
| When | Result | HTTP | Time | Price |
|---|---|---|---|---|
| 3 h ago | Passed | 402 | 221 ms | $0.004 |