81trust / 100

Scan Content

by Prompt-Injection Firewall in Security & trust

x402 APIPassing, checked 4 h ago

Scans untrusted text, HTML, email, document text, API responses, and tool outputs for prompt injection, credential theft, data exfiltration, tool manipulation, and other instructions that could compromise an autonomous AI agent. Returns a machine-readable risk assessment and sanitized plain text when possible. Scan untrusted content before adding it to context, following its instructions, or acting on it.

POST https://mcp.dropenginehq.com/api/scan-content

Last 30 days

All checks passedSome failedAll failedNot checked
Uptime
100%
Response time
230 ms typical, 230 ms slowest 5%
Last check
4 h ago
Next check
any minute now

How to call it

# See the payment challenge (nothing is charged)
curl -i -X POST "https://mcp.dropenginehq.com/api/scan-content" \
  -H "content-type: application/json" \
  -d '{"content":"Product information: price USD 25, available in stock.","content_type":"text"}'
import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { ExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";

const client = new x402Client().register(
  "eip155:8453",
  new ExactEvmScheme(privateKeyToAccount(process.env.AGENT_KEY)),
);
const pay = wrapFetchWithPayment(fetch, client);

// Not sure it's safe to pay? Preflight it first for $0.005:
// GET https://toolvet.app/api/v1/check?url=https%3A%2F%2Fmcp.dropenginehq.com%2Fapi%2Fscan-content
const res = await pay("https://mcp.dropenginehq.com/api/scan-content", {
  method: "POST",
  headers: { "content-type": "application/json" },
  body: JSON.stringify({"content":"Product information: price USD 25, available in stock.","content_type":"text"}),
});
console.log(await res.json());

Example input

{
  "content": "Product information: price USD 25, available in stock.",
  "content_type": "text"
}

Security scan

  • No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.

Recent checks

WhenResultHTTPTimePrice
4 h agoPassed402230 ms$0.005