# com.thetempleofdoom.hyperion/hyperion

> Hyperion — MCP tool marketplace for AI agents: web, OSINT, security, research via one key.

- name: com.thetempleofdoom.hyperion/hyperion
- version: 1.0.0
- connection class: R1 (autonomous)
- trust: 78/100 flags: no-repository
- quality: 70/100 (needs work)
- owner: not claimed
- descriptor: https://api.protogrid.dev/v1/servers/com.thetempleofdoom.hyperion%2Fhyperion
- tools: https://api.protogrid.dev/v1/servers/com.thetempleofdoom.hyperion%2Fhyperion/tools

**An agent can connect on its own if it already holds `HYPERION_TOKEN`.** Remote endpoint behind a static API key or header. The registry never sees the value; the agent fills the placeholder.

## Connection (mcpServers)

```json
{
  "mcpServers": {
    "hyperion": {
      "type": "http",
      "url": "https://hyperion.thetempleofdoom.com/mcp",
      "headers": {
        "Authorization": "Bearer ${HYPERION_TOKEN}"
      }
    }
  }
}
```

Placeholders to fill: `${HYPERION_TOKEN}`.

## Trust

- hygiene: 80
- liveness: 94
- freshness: 85
- provenance: 55
- drivers: +dns-namespace +website +reachable +uptime-86% ~updated-45d-ago -no-repository
- Derived from observable signals (official registry feed and our own credential-free probes); no code audit performed.

## Quality 70/100 (needs work)

### protocol: 75 (weight 25)

- warn `protocol.modern`: newest supported version is 2025-06-18; 2026-07-28 not supported, older versions are deprecated until 2027-07-28
- n/a `protocol.stateless`: only applies to 2026-07-28 servers
- pass `protocol.transport`: streamable HTTP
- n/a `protocol.list_ttl`: only applies to 2026-07-28 servers

### authorization: n/a (weight 15)

- n/a `auth.prm`, `auth.as_metadata`, `auth.cimd`: no remote uses OAuth
- n/a `auth.secret_in_url`: no templated URL

### tool hygiene: 64 (weight 30)

- pass `tools.descriptions`: every tool has a description
- pass `tools.description_length`: descriptions are concise
- pass `tools.schemas`: every tool has an object input schema
- fail `tools.annotations`: no tool declares readOnlyHint or destructiveHint, so clients cannot tell safe calls from risky ones
- fail `tools.directory_hints`: no tool declares all four of readOnlyHint, destructiveHint, idempotentHint and openWorldHint; missing: o_s3buckets (readOnlyHint, destructiveHint, idempotentHint, openWorldHint); o_abusecontact (readOnlyHint, destructiveHint, idempotentHint, openWorldHint); o_color (readOnlyHint, destructiveHint, idempotentHint, openWorldHint); …
- warn `tools.token_cost`: about 11,309 tokens to load every tool
- pass `tools.api_dump`: tools are not a one-to-one API dump

### stability: 75 (weight 15)

- warn `stability.changes`: 720 tool changes in 30 days
- pass `stability.rug_pull`: no tool changed its meaning under the same name

### dependencies: n/a (weight 15)

- n/a `deps.known_vulns`, `deps.mcp_sdk_version`, `deps.resolvable`: no npm or PyPI package

- tools: 355, about 11,309 tokens to load them all
- tool set hash: a15c0daf39ea77d85b5db038a6345ac8
- tools last changed: 2026-09-28T12:38:30.812Z
- badge: [![protogrid quality](https://protogrid.dev/badge/com.thetempleofdoom.hyperion/hyperion.svg)](https://protogrid.dev/servers/com.thetempleofdoom.hyperion/hyperion)
- Checks run on what our credential-free, read-only probes observe; tools are never called and no code audit is performed.

### Tool changes

- 2026-09-28 `px_order` added
  - Check proxy order payment/fulfilment status (50 sats/call; free tier 100 calls/mo)
- 2026-09-28 `px_info` added
  - Proxy service capabilities, auth, billing info (50 sats/call; free tier 100 calls/mo)
- 2026-09-28 `px_plans` added
  - List residential proxy plans + sats pricing (50 sats/call; free tier 100 calls/mo)
- 2026-09-28 `fc_map` added
  - Map all links/routes of a website (350 sats/call; free tier 100 calls/mo)
- 2026-09-28 `fc_search` added
  - Web search returning clean page content (300 sats/call; free tier 100 calls/mo)
- 2026-09-28 `fc_scrape` added
  - Scrape any URL to clean markdown (JS rendering) (300 sats/call; free tier 100 calls/mo)
- 2026-09-28 `re_report` added
  - Cited multi-source research report. Call with {q} -> job_id, poll with {job_id} until done (charged on completion poll) (1500 sats/call; free tier 100 calls/mo)
- 2026-09-28 `re_summarize` added
  - LLM summary of specific URLs (pass urls=comma-separated) (400 sats/call; free tier 100 calls/mo)
- 2026-09-28 `re_semantic` added
  - Vector/semantic search over the private knowledge cloud (250 sats/call; free tier 100 calls/mo)
- 2026-09-28 `re_search` added
  - Search a private crawled+indexed knowledge cloud (OpenSearch+Qdrant) (200 sats/call; free tier 100 calls/mo)

Full history: https://api.protogrid.dev/v1/servers/com.thetempleofdoom.hyperion%2Fhyperion/changes

## Remotes

- https://hyperion.thetempleofdoom.com/mcp (streamable-http, auth api_key ${HYPERION_TOKEN}, reachable true, uptime30d 0.85915494)

## Packages

_none_

## Tools (355)

- `ascii`: Text → ASCII art (150 sats/call; free tier 100 calls/mo)
- `chart`: SVG bar/line/pie/donut charts (350 sats/call; free tier 100 calls/mo)
- `cron`: Explain/validate/next-run cron expressions (150 sats/call; free tier 100 calls/mo)
- `data_convert`: JSON/CSV/YAML/XML/query-string transforms (200 sats/call; free tier 100 calls/mo)
- `diff`: Line-by-line diff of two texts (250 sats/call; free tier 100 calls/mo)
- `echo_beacon`: Check voice/TTS API status (0 sats/call; free tier 100 calls/mo)
- `echo_order`: Buy voice credits (BTCPay invoice) (0 sats/call; free tier 100 calls/mo)
- `echo_tts`: Synthesize speech from text (needs echo key) (0 sats/call; free tier 100 calls/mo)
- `encode`: Base64/URL/Hex/HTML/JWT encode+decode (200 sats/call; free tier 100 calls/mo)
- `execute_js`: Run JS in a sandbox, capture output (300 sats/call; free tier 100 calls/mo)
- `fc_map`: Map all links/routes of a website (350 sats/call; free tier 100 calls/mo)
- `fc_scrape`: Scrape any URL to clean markdown (JS rendering) (300 sats/call; free tier 100 calls/mo)
- `fc_search`: Web search returning clean page content (300 sats/call; free tier 100 calls/mo)
- `hash`: MD5/SHA/HMAC/UUID/random tokens (250 sats/call; free tier 100 calls/mo)
- `http_client`: Universal HTTP request to any API/webhook (300 sats/call; free tier 100 calls/mo)
- `lynx_inspect`: Inspect a file: hashes/entropy/strings/PE/PDF/Office (base64) (200 sats/call; free tier 100 calls/mo)
- `lynx_recon`: Recon external target (nmap/subfinder/nuclei/theHarvester/dnsrecon) (400 sats/call; free tier 100 calls/mo)
- `lynx_steg`: Decode hidden data (steghide + zsteg LSB) (300 sats/call; free tier 100 calls/mo)
- `math`: Eval formulas, stats, finance (200 sats/call; free tier 100 calls/mo)
- `mcp_discover`: Search 1000+ MCP servers by capability (300 sats/call; free tier 100 calls/mo)
- `mcp_readme`: Fetch setup/config for any MCP server (200 sats/call; free tier 100 calls/mo)
- `mcp_stats`: MCP catalog counts + API-key flags (100 sats/call; free tier 100 calls/mo)
- `mobsf_report`: Fetch a mobile app security report by hash (400 sats/call; free tier 100 calls/mo)
- `mobsf_scans`: List recent mobile app security scans (200 sats/call; free tier 100 calls/mo)
- `netutils`: URL/subnet/user-agent analysis (300 sats/call; free tier 100 calls/mo)
- `o_abusecontact`: Authoritative abuse email (RIPEstat finder) (200 sats/call; free tier 100 calls/mo)
- `o_agify`: Predict age from a first name (agify.io) (200 sats/call; free tier 100 calls/mo)
- `o_airquality`: PM2.5/PM10/European AQI at coords (Open-Meteo, no key) (200 sats/call; free tier 100 calls/mo)
- `o_antipode`: Opposite point on Earth for coords (offline) (200 sats/call; free tier 100 calls/mo)
- `o_api_key_scan`: Scan GitHub/Pastebin/Google for exposed API keys/secrets (200 sats/call; free tier 100 calls/mo)
- `o_archiveorg`: Internet Archive item metadata (200 sats/call; free tier 100 calls/mo)
- `o_arxiv`: arXiv paper search by title/author/keyword (200 sats/call; free tier 100 calls/mo)
- `o_ascii85`: Ascii85 encode/decode (offline) (200 sats/call; free tier 100 calls/mo)
- `o_asn`: ASN details or prefixes for an IP (200 sats/call; free tier 100 calls/mo)
- `o_asnlookup`: ASN org/country/prefixes via RIPEstat (200 sats/call; free tier 100 calls/mo)
- `o_asrank`: Global ASN ranking + customer cone size (200 sats/call; free tier 100 calls/mo)
- `o_atbash`: Atbash A↔Z mirror cipher (offline, self-inverse) (200 sats/call; free tier 100 calls/mo)
- `o_attack_surface`: Map attack surface: services + endpoints + API (200 sats/call; free tier 100 calls/mo)
- `o_barcode`: EAN-13 / UPC-A check digit validation (offline) (200 sats/call; free tier 100 calls/mo)
- `o_base32`: RFC 4648 Base32 encode or decode (200 sats/call; free tier 100 calls/mo)
- `o_base36`: Encode int <-> base36, autodetecting direction (offline) (200 sats/call; free tier 100 calls/mo)
- `o_base64`: Auto decode/encode base64 (offline) (200 sats/call; free tier 100 calls/mo)
- `o_base_convert`: Binary/octal/decimal/hex number conversion (offline) (200 sats/call; free tier 100 calls/mo)
- `o_bgphistory`: Routing origin history (RIPE Stat) (200 sats/call; free tier 100 calls/mo)
- `o_bimi`: Brand-indicator (logo) DNS record (200 sats/call; free tier 100 calls/mo)
- `o_binarytext`: Text ↔ 8-bit binary (offline) (200 sats/call; free tier 100 calls/mo)
- `o_blockheight`: Current Bitcoin + Ethereum block height (200 sats/call; free tier 100 calls/mo)
- `o_bluesky`: AT Protocol public profile (200 sats/call; free tier 100 calls/mo)
- `o_breach_aggregator`: Aggregate breach databases (XposedOrNot, LeakCheck, etc) (200 sats/call; free tier 100 calls/mo)
- `o_breachdb`: Aggregated breach collection search (200 sats/call; free tier 100 calls/mo)
- `o_breachdirectory`: ProxyNova COMB dataset search for credential exposure (200 sats/call; free tier 100 calls/mo)
- `o_breachsearch`: Public HIBP breach metadata search (200 sats/call; free tier 100 calls/mo)
- `o_btcaddr`: Bitcoin balance/tx via mempool.space (200 sats/call; free tier 100 calls/mo)
- `o_btcfees`: Recommended Bitcoin fees sat/vB (mempool.space) (200 sats/call; free tier 100 calls/mo)
- `o_c2_infrastructure`: Detect C2 infrastructure + hosting (200 sats/call; free tier 100 calls/mo)
- `o_caesar`: ROT-N / Caesar brute force, all 25 shifts (offline) (200 sats/call; free tier 100 calls/mo)
- `o_casify`: snake/camel/Pascal/kebab/CONSTANT case (offline) (200 sats/call; free tier 100 calls/mo)
- `o_cdnjs`: Hosted JS library version + assets (200 sats/call; free tier 100 calls/mo)
- `o_cfradar`: Domain rank + categories from Cloudflare Radar (200 sats/call; free tier 100 calls/mo)
- `o_checksum`: CRC32 + Adler32 checksum of input text (offline) (200 sats/call; free tier 100 calls/mo)
- `o_chesscom`: Public player profile + ratings (200 sats/call; free tier 100 calls/mo)
- `o_cidr`: Subnet calc: network, mask, host range, count (offline) (200 sats/call; free tier 100 calls/mo)
- `o_circlhash`: Known-file lookup (CIRCL hashlookup) (200 sats/call; free tier 100 calls/mo)
- `o_clickjacking`: X-Frame-Options + CSP frame-ancestors check (200 sats/call; free tier 100 calls/mo)
- `o_cloud`: AWS/GCP/Azure/etc. detection + hosting flag (200 sats/call; free tier 100 calls/mo)
- `o_codeberg`: Codeberg/Gitea public user (200 sats/call; free tier 100 calls/mo)
- `o_codeforces`: Codeforces competitive programmer rating & rank (200 sats/call; free tier 100 calls/mo)
- `o_color`: hex/rgb -> rgb/hsl + nearest name (offline) (200 sats/call; free tier 100 calls/mo)
- `o_cookies`: Secure/HttpOnly/SameSite flag review (200 sats/call; free tier 100 calls/mo)
- `o_cors`: Origin-reflection / wildcard misconfig (200 sats/call; free tier 100 calls/mo)
- `o_cratedownloads`: Download totals for a Rust crate (200 sats/call; free tier 100 calls/mo)
- `o_crates`: Rust crate stats + downloads (200 sats/call; free tier 100 calls/mo)
- `o_cratestats`: Rust crate downloads, version, repo (no key) (200 sats/call; free tier 100 calls/mo)
- `o_crc32`: Compute CRC-32 of input (200 sats/call; free tier 100 calls/mo)
- `o_credential_stuffing`: Check breach + stuffing risk (200 sats/call; free tier 100 calls/mo)
- `o_crossrefauthor`: Works by author/keyword (Crossref) (200 sats/call; free tier 100 calls/mo)
- `o_crypto`: BTC/ETH balance & tx history (200 sats/call; free tier 100 calls/mo)
- `o_cryptomarket`: Global market cap, BTC dominance, 24h volume (CoinGecko) (200 sats/call; free tier 100 calls/mo)
- `o_csp_parse`: Content-Security-Policy header analysis & grade (200 sats/call; free tier 100 calls/mo)
- `o_cve`: CVE detail + CVSS (CIRCL, no key) (200 sats/call; free tier 100 calls/mo)
- `o_cvedetail`: Full CVE record (CVSS, refs) via CIRCL (200 sats/call; free tier 100 calls/mo)
- `o_cve_poc_checker`: Check if a CVE has public POC/exploit code (200 sats/call; free tier 100 calls/mo)
- `o_cve_severity`: CVSS + EPSS + KEV for a CVE (200 sats/call; free tier 100 calls/mo)
- `o_cve_timeline`: When a CVE was discussed (Twitter/Reddit/News) (200 sats/call; free tier 100 calls/mo)
- `o_datacite`: Research datasets/DOIs by keyword (200 sats/call; free tier 100 calls/mo)
- `o_datauri`: Parse or create data: URIs (200 sats/call; free tier 100 calls/mo)
- `o_decode`: Auto base64/hex/URL-decode + refang (200 sats/call; free tier 100 calls/mo)
- `o_dehashed_domain`: DeHashed public page scrape for domain breach exposure (200 sats/call; free tier 100 calls/mo)
- `o_depsdev`: Open-source insights: versions, default (200 sats/call; free tier 100 calls/mo)
- `o_devto`: Forem/dev.to public profile (200 sats/call; free tier 100 calls/mo)
- `o_dirlisting`: Open directory-index exposure (per-target) (200 sats/call; free tier 100 calls/mo)
- `o_disasters`: Active worldwide disasters: quakes/cyclones/floods (feeds globe) (200 sats/call; free tier 100 calls/mo)
- `o_dns`: A/AAAA/MX/NS/TXT/CNAME/SOA/CAA records (200 sats/call; free tier 100 calls/mo)
- `o_dnsbl`: Spamhaus/Barracuda/SORBS/SpamCop check (200 sats/call; free tier 100 calls/mo)
- `o_dnsgraph`: Hurricane Electric DNS delegation info (200 sats/call; free tier 100 calls/mo)
- `o_dnsmx`: MX records via Google DNS-over-HTTPS (200 sats/call; free tier 100 calls/mo)
- `o_dnsprop`: Compare A records across Google/Cloudflare/Quad9 (200 sats/call; free tier 100 calls/mo)
- `o_dnsquery`: DNS A record lookup via Google DoH (200 sats/call; free tier 100 calls/mo)
- `o_dnsrecon`: Query ALL DNS record types at once (200 sats/call; free tier 100 calls/mo)
- `o_dnsverify`: Which SaaS a domain is enrolled in (TXT tokens) (200 sats/call; free tier 100 calls/mo)
- `o_dockerhub`: Docker Hub repo pulls, stars, last update (no key) (200 sats/call; free tier 100 calls/mo)
- `o_doh`: Uncommon DNS records (HTTPS/SVCB/TLSA/SRV/NAPTR…) (200 sats/call; free tier 100 calls/mo)
- `o_doi`: Crossref publication metadata for a DOI (200 sats/call; free tier 100 calls/mo)
- `o_ean`: EAN/UPC check digit + GS1 country prefix (offline) (200 sats/call; free tier 100 calls/mo)
- `o_elevation`: Ground elevation in metres (Open-Meteo) (200 sats/call; free tier 100 calls/mo)
- `o_email`: Gravatar, MX, disposable detection (200 sats/call; free tier 100 calls/mo)
- `o_emailrep`: emailrep.io: malicious/spam/breach flags for email (no key, limited) (200 sats/call; free tier 100 calls/mo)
- `o_emailsec`: SPF / DMARC / DKIM posture (200 sats/call; free tier 100 calls/mo)
- `o_ens`: ENS name <-> ETH address + avatar (200 sats/call; free tier 100 calls/mo)
- `o_epoch`: Unix timestamp <-> UTC datetime (200 sats/call; free tier 100 calls/mo)
- `o_epss`: Exploitation probability (FIRST EPSS) (200 sats/call; free tier 100 calls/mo)
- `o_exploit_cve`: Exploit-DB + GitHub POCs for a CVE (200 sats/call; free tier 100 calls/mo)
- `o_favicon`: favicon md5/sha256 for pivoting (200 sats/call; free tier 100 calls/mo)
- `o_feeds`: Discover syndication feeds on a site (200 sats/call; free tier 100 calls/mo)
- `o_feodoips`: Is IP on abuse.ch Feodo botnet C2 list (200 sats/call; free tier 100 calls/mo)
- `o_flightsnear`: Live aircraft within ~1° of coords (OpenSky) (200 sats/call; free tier 100 calls/mo)
- `o_formaudit`: Enumerate forms/inputs (login/upload) — attack surface (200 sats/call; free tier 100 calls/mo)
- `o_genderize`: Predict gender from a first name (genderize.io) (200 sats/call; free tier 100 calls/mo)
- `o_geocode`: Place name → coordinates (OSM Nominatim) (200 sats/call; free tier 100 calls/mo)
- `o_gh_dorking`: GitHub code search for target string exposure in public repos (200 sats/call; free tier 100 calls/mo)
- `o_ghkeysgpg`: Whether a user publishes a GPG key (200 sats/call; free tier 100 calls/mo)
- `o_gh_secret_scan`: Scan GitHub user's public repos for leaked secrets/passwords (200 sats/call; free tier 100 calls/mo)
- `o_github_code`: GitHub unauthenticated code search (10 results) (200 sats/call; free tier 100 calls/mo)
- `o_githubsearch`: Search GitHub repos by keyword (200 sats/call; free tier 100 calls/mo)
- `o_gitlab`: Public user profile (200 sats/call; free tier 100 calls/mo)
- `o_gleif_name`: GLEIF fuzzy legal-entity name → LEI codes (200 sats/call; free tier 100 calls/mo)
- `o_golangpkg`: Latest version of a Go module (200 sats/call; free tier 100 calls/mo)
- `o_goproxy`: Latest version of a Go module via module proxy (no key) (200 sats/call; free tier 100 calls/mo)
- `o_gravatarfull`: Full public Gravatar profile + linked accounts (200 sats/call; free tier 100 calls/mo)
- `o_greynoise`: Is the IP a known internet scanner — benign/malicious (200 sats/call; free tier 100 calls/mo)
- `o_hackernews`: Profile: karma, age, activity (200 sats/call; free tier 100 calls/mo)
- `o_hashid`: Guess hash algorithm from length/charset (200 sats/call; free tier 100 calls/mo)
- `o_hashtext`: md5/sha1/sha256/sha512 of text (offline) (200 sats/call; free tier 100 calls/mo)
- `o_headers`: Headers + security-header scorecard (200 sats/call; free tier 100 calls/mo)
- `o_hexdump`: Offset/hex/ASCII hexdump of input (offline) (200 sats/call; free tier 100 calls/mo)
- `o_hibp`: Check if a password appeared in breaches via HIBP k-anonymity (no key) (200 sats/call; free tier 100 calls/mo)
- `o_hibp_email`: Email breach exposure via XposedOrNot (HIBP-compatible, no key) (200 sats/call; free tier 100 calls/mo)
- `o_hnsearch`: Search Hacker News stories/comments (200 sats/call; free tier 100 calls/mo)
- `o_hnuser`: HN profile: karma, created, submission count (200 sats/call; free tier 100 calls/mo)
- `o_holidays`: Country public holidays this year (nager.at) (200 sats/call; free tier 100 calls/mo)
- `o_homoglyph`: Detect confusable/mixed-script spoofing chars (offline) (200 sats/call; free tier 100 calls/mo)
- `o_hostname`: IP → hostname via reverse DNS (200 sats/call; free tier 100 calls/mo)
- `o_hstspreload`: Is the domain on the browser HSTS preload list (200 sats/call; free tier 100 calls/mo)
- `o_htmlcomments`: Extract HTML comments — leaked TODOs/paths/software (200 sats/call; free tier 100 calls/mo)
- `o_htmlencode`: HTML entity encode/decode (200 sats/call; free tier 100 calls/mo)
- `o_httpcode`: HTTP status code meaning & family (offline) (200 sats/call; free tier 100 calls/mo)
- `o_httping`: Reachability + response timing (200 sats/call; free tier 100 calls/mo)
- `o_httpmethods`: Allowed methods + TRACE/risky-verb check (200 sats/call; free tier 100 calls/mo)
- `o_hudsonrock`: Stealer-log exposure check via HudsonRock Cavalier free API (200 sats/call; free tier 100 calls/mo)
- `o_huggingface`: HuggingFace user profile or model card (200 sats/call; free tier 100 calls/mo)
- `o_imagerev`: Google Lens / Yandex / Bing / TinEye search links (200 sats/call; free tier 100 calls/mo)
- `o_infra_fingerprint`: Infrastructure fingerprinting + hosting (200 sats/call; free tier 100 calls/mo)
- `o_intelx_email`: Email breach exposure — breach names, data types, paste hits (XposedOrNot, no key) (200 sats/call; free tier 100 calls/mo)
- `o_internetdb`: Open ports, CPEs, tags, known CVEs for a host (200 sats/call; free tier 100 calls/mo)
- `o_ioc_reputation`: Cross-check IP/domain/hash across feeds (200 sats/call; free tier 100 calls/mo)
- `o_ipfull`: Rich geo+ASN+proxy/mobile/hosting flags (200 sats/call; free tier 100 calls/mo)
- `o_ipgeo`: Geo, ISP, ASN, proxy/hosting flags (200 sats/call; free tier 100 calls/mo)
- `o_ipint`: IPv4 ↔ integer ↔ hex (offline) (200 sats/call; free tier 100 calls/mo)
- `o_ip_math`: CIDR: network/broadcast/range/host count (offline) (200 sats/call; free tier 100 calls/mo)
- `o_ipv4classify`: Classify IP: private/loopback/multicast/global (offline) (200 sats/call; free tier 100 calls/mo)
- `o_ipwhois`: Network owner, range, abuse contact (200 sats/call; free tier 100 calls/mo)
- `o_isbn`: Book metadata (OpenLibrary) + checksum (200 sats/call; free tier 100 calls/mo)
- `o_isexitnode`: Is this a Tor exit node? (200 sats/call; free tier 100 calls/mo)
- `o_isin`: Validate ISIN security identifier check digit (offline) (200 sats/call; free tier 100 calls/mo)
- `o_isotime`: Parse/convert a timestamp (offline) (200 sats/call; free tier 100 calls/mo)
- `o_jarm`: Shodan InternetDB: ports, CPEs, vulns, tags (no key) (200 sats/call; free tier 100 calls/mo)
- `o_jslibs`: Enumerate <script> sources + detect JS libs/versions (200 sats/call; free tier 100 calls/mo)
- `o_kev`: Is the CVE actively exploited (KEV catalog) (200 sats/call; free tier 100 calls/mo)
- `o_keybase`: Crypto identity + linked social proofs (200 sats/call; free tier 100 calls/mo)
- `o_latlonformat`: DD ↔ DMS ↔ DM coordinate format conversion (offline) (200 sats/call; free tier 100 calls/mo)
- `o_leakcheck`: Breach exposure via leakcheck.io public endpoint (no key) (200 sats/call; free tier 100 calls/mo)
- `o_leaklookup`: Infostealer compromise check — stealer logs, credential count (Hudson Rock, no key) (200 sats/call; free tier 100 calls/mo)
- `o_leet`: Leetspeak transform (offline) (200 sats/call; free tier 100 calls/mo)
- `o_leetcode_user`: LeetCode solved problems, ranking, badges (200 sats/call; free tier 100 calls/mo)
- `o_links`: All links + external domains + emails on a page (200 sats/call; free tier 100 calls/mo)
- `o_linktree`: Extract destination links from a linktr.ee profile (200 sats/call; free tier 100 calls/mo)
- `o_lobsters`: Public user profile + karma (200 sats/call; free tier 100 calls/mo)
- `o_mac`: OUI → hardware vendor (200 sats/call; free tier 100 calls/mo)
- `o_macvalid`: MAC address parser (colon/dash/plain) (200 sats/call; free tier 100 calls/mo)
- `o_macvendor`: MAC vendor + local/multicast bits from local OUI table (offline) (200 sats/call; free tier 100 calls/mo)
- `o_macvendorlookup`: OUI → hardware vendor (macvendors.com) (200 sats/call; free tier 100 calls/mo)
- `o_maidenhead`: Coords → ham-radio grid locator (offline) (200 sats/call; free tier 100 calls/mo)
- `o_manifest`: Web app manifest: name, icons, theme (200 sats/call; free tier 100 calls/mo)
- `o_marineweather`: Wave height/period/direction + sea temp at coords (200 sats/call; free tier 100 calls/mo)
- `o_maven`: Java artifact: 'group:artifact' or name (200 sats/call; free tier 100 calls/mo)
- `o_medium`: Author feed: recent post titles (200 sats/call; free tier 100 calls/mo)
- `o_metatags`: OpenGraph / Twitter-card / generator meta tags (200 sats/call; free tier 100 calls/mo)
- `o_mgrs`: Lat/lon → MGRS military grid reference (offline) (200 sats/call; free tier 100 calls/mo)
- `o_mimetype`: File extension → MIME type (offline) (200 sats/call; free tier 100 calls/mo)
- `o_moonphase`: Current moon phase & illumination (offline) (200 sats/call; free tier 100 calls/mo)
- `o_morse`: Morse encode/decode, autodetecting direction (offline) (200 sats/call; free tier 100 calls/mo)
- `o_mtasts`: Inbound-mail TLS enforcement policy (200 sats/call; free tier 100 calls/mo)
- `o_musicbrainz`: Artist search: type, country, MBID (200 sats/call; free tier 100 calls/mo)
- `o_musicbrainzartist`: Artist type, country, lifespan (200 sats/call; free tier 100 calls/mo)
- `o_nationalize`: Predict nationality from a name (nationalize.io) (200 sats/call; free tier 100 calls/mo)
- `o_nato`: Spell text in NATO phonetic alphabet (offline) (200 sats/call; free tier 100 calls/mo)
- `o_nearbywiki`: Wikipedia places near a coordinate (200 sats/call; free tier 100 calls/mo)
- `o_npm`: Packages published by an author (200 sats/call; free tier 100 calls/mo)
- `o_npmdl`: npm download counts day/week/month (200 sats/call; free tier 100 calls/mo)
- `o_npmdownloads`: npm package download counts, last week + month (no key) (200 sats/call; free tier 100 calls/mo)
- `o_npmorg`: npm organization: all published packages (200 sats/call; free tier 100 calls/mo)
- `o_npmpkg`: npm package version, deps, maintainers (200 sats/call; free tier 100 calls/mo)
- `o_nstrace`: Trace NS delegation: TLD → registrar → authoritative (200 sats/call; free tier 100 calls/mo)
- `o_nuget`: .NET package stats + downloads (200 sats/call; free tier 100 calls/mo)
- `o_numlookup`: Validity, region, carrier, line type, timezones (libphonenumber) (200 sats/call; free tier 100 calls/mo)
- `o_numwords`: Integer → English words (offline) (200 sats/call; free tier 100 calls/mo)
- `o_nvdcve`: Full NVD record: CVSS, CWE, references (200 sats/call; free tier 100 calls/mo)
- `o_onthisday`: Historical events on a date (Wikipedia; MM/DD or today) (200 sats/call; free tier 100 calls/mo)
- `o_openalexauthor`: Author works count, h-index, institution (200 sats/call; free tier 100 calls/mo)
- `o_openalexwork`: Scholarly work: citations, concepts, OA (200 sats/call; free tier 100 calls/mo)
- `o_openfoodfacts`: EAN/UPC -> product, brand, nutrition (200 sats/call; free tier 100 calls/mo)
- `o_openphish`: Community phishing-URL feed membership (200 sats/call; free tier 100 calls/mo)
- `o_osv`: Known package vulns (OSV.dev). 'eco:name' (200 sats/call; free tier 100 calls/mo)
- `o_otxdomain`: AlienVault OTX threat pulses for a domain (200 sats/call; free tier 100 calls/mo)
- `o_otxip`: AlienVault OTX threat pulses for an IP (200 sats/call; free tier 100 calls/mo)
- `o_pageinfo`: Common Crawl capture index lookup (200 sats/call; free tier 100 calls/mo)
- `o_passgen`: Generate strong random passwords + passphrase (offline) (200 sats/call; free tier 100 calls/mo)
- `o_password_dumps`: Search Dehashed for leaked passwords (query-only) (200 sats/call; free tier 100 calls/mo)
- `o_paste_domain`: Find domain in public pastes via psbdmp.ws (no key) (200 sats/call; free tier 100 calls/mo)
- `o_paste_email`: Find email in public pastes via Wayback CDX + search links (no key) (200 sats/call; free tier 100 calls/mo)
- `o_peers`: Upstream/downstream BGP neighbours (200 sats/call; free tier 100 calls/mo)
- `o_permissions_pol`: Permissions-Policy: camera/mic/geo controls (200 sats/call; free tier 100 calls/mo)
- `o_pgp`: Public key published on keys.openpgp.org (200 sats/call; free tier 100 calls/mo)
- `o_phishing_intel`: Phishing kit tracking + URL detection (200 sats/call; free tier 100 calls/mo)
- `o_phoneapps`: WhatsApp / Telegram / Viber / Signal deep links (200 sats/call; free tier 100 calls/mo)
- `o_phonecc`: Country, trunk & intl dialing prefixes (offline) (200 sats/call; free tier 100 calls/mo)
- `o_phonefmt`: E.164 / national / international / RFC3966 formats (offline) (200 sats/call; free tier 100 calls/mo)
- `o_phonepivot`: Caller-ID / reputation site links (Truecaller, Sync.me…) (200 sats/call; free tier 100 calls/mo)
- `o_phonespam`: Robocall / scam report-database links (200 sats/call; free tier 100 calls/mo)
- `o_phonevcard`: Generate a .vcf contact card (offline) (200 sats/call; free tier 100 calls/mo)
- `o_pluscode`: Coords → Open Location Code / Google Plus Code (offline) (200 sats/call; free tier 100 calls/mo)
- `o_port`: Service + exposure notes for a port number (200 sats/call; free tier 100 calls/mo)
- `o_portlookup`: IANA port → service name (offline) (200 sats/call; free tier 100 calls/mo)
- `o_pubmed`: PubMed biomedical paper search (NCBI) (200 sats/call; free tier 100 calls/mo)
- `o_punycode`: IDN domain ↔ Punycode (xn--) homograph check (offline) (200 sats/call; free tier 100 calls/mo)
- `o_pypi`: Python package metadata + links (200 sats/call; free tier 100 calls/mo)
- `o_pypiproject`: PyPI version/license/links (200 sats/call; free tier 100 calls/mo)
- `o_pypistats`: PyPI recent download counts (200 sats/call; free tier 100 calls/mo)
- `o_quakes`: USGS recent quakes — global or near coords (M2.5+) (200 sats/call; free tier 100 calls/mo)
- `o_quoted_printable`: Quoted-printable encode/decode (200 sats/call; free tier 100 calls/mo)
- `o_railfence`: Rail-fence cipher over 3 rails (offline) (200 sats/call; free tier 100 calls/mo)
- `o_rdap`: Structured domain registration record (RDAP/IANA bootstrap, no key) (200 sats/call; free tier 100 calls/mo)
- `o_rdap_domain`: RDAP structured domain registration data (200 sats/call; free tier 100 calls/mo)
- `o_rdapip`: Authoritative RDAP record for an IP (200 sats/call; free tier 100 calls/mo)
- `o_redirects`: Full HTTP redirect chain (200 sats/call; free tier 100 calls/mo)
- `o_referrer_pol`: Referrer-Policy header — URL leakage risk (200 sats/call; free tier 100 calls/mo)
- `o_regdomain`: Extract eTLD+1 registered domain from URL (offline) (200 sats/call; free tier 100 calls/mo)
- `o_reversedns`: PTR record / hostname (200 sats/call; free tier 100 calls/mo)
- `o_revgeo`: lat,lon -> address (OSM Nominatim) (200 sats/call; free tier 100 calls/mo)
- `o_revgeocode`: Coordinates → nearest address (OSM) (200 sats/call; free tier 100 calls/mo)
- `o_revimg`: Reverse-image-search links (Lens/Yandex/TinEye/Bing) (200 sats/call; free tier 100 calls/mo)
- `o_robots`: Disallowed paths + sitemaps (200 sats/call; free tier 100 calls/mo)
- `o_robotsmeta`: meta-robots + X-Robots-Tag: noindex/nofollow/noarchive (200 sats/call; free tier 100 calls/mo)
- `o_roman`: Convert int <-> roman numeral, autodetecting (offline) (200 sats/call; free tier 100 calls/mo)
- `o_rot13`: ROT-13 encode/decode (200 sats/call; free tier 100 calls/mo)
- `o_rot47`: ROT47 ASCII cipher (offline, self-inverse) (200 sats/call; free tier 100 calls/mo)
- `o_rpki`: Route-origin validation for the covering prefix (200 sats/call; free tier 100 calls/mo)
- `o_rubygemrev`: Reverse dependencies of a RubyGem (200 sats/call; free tier 100 calls/mo)
- `o_rubygems`: Ruby gem stats + downloads (200 sats/call; free tier 100 calls/mo)
- `o_s3buckets`: S3/GCS/Azure buckets named for the domain (200 sats/call; free tier 100 calls/mo)
- `o_securitytxt`: RFC 9116 disclosure policy & contacts (200 sats/call; free tier 100 calls/mo)
- `o_semanticscholar`: Paper TLDR, citations, influence (200 sats/call; free tier 100 calls/mo)
- `o_semver`: Parse and validate semantic versioning (200 sats/call; free tier 100 calls/mo)
- `o_sitemap`: Fetch sitemap.xml + list URLs (200 sats/call; free tier 100 calls/mo)
- `o_slug`: Text → URL-safe slug (offline) (200 sats/call; free tier 100 calls/mo)
- `o_smtpbanner`: SMTP banner & EHLO capabilities (ports 25/587/465) (200 sats/call; free tier 100 calls/mo)
- `o_snusbase_hash`: Reverse MD5/SHA1 hash via breach-sourced hash DB (md5decrypt.net) (200 sats/call; free tier 100 calls/mo)
- `o_social`: Direct profile URLs across 20 platforms (200 sats/call; free tier 100 calls/mo)
- `o_sopostuser`: SO profile + reputation by numeric id (200 sats/call; free tier 100 calls/mo)
- `o_spacepeople`: Who is in space right now (names + craft) (200 sats/call; free tier 100 calls/mo)
- `o_sri_check`: Subresource Integrity: external scripts without integrity= (200 sats/call; free tier 100 calls/mo)
- `o_srvlookup`: SIP/XMPP/mail/CalDAV SRV record discovery (200 sats/call; free tier 100 calls/mo)
- `o_stackoverflow`: SO/SE user search by display name (200 sats/call; free tier 100 calls/mo)
- `o_steam_user`: Steam community profile via public XML (200 sats/call; free tier 100 calls/mo)
- `o_stringmetrics`: Length, entropy, character breakdown (200 sats/call; free tier 100 calls/mo)
- `o_subbrute`: Resolve a common-subdomain wordlist (per-target) (200 sats/call; free tier 100 calls/mo)
- `o_suntimes`: Sunrise/sunset/twilight for a coordinate (UTC) (200 sats/call; free tier 100 calls/mo)
- `o_supply_chain_risk`: Dependency vulns + typosquatting (200 sats/call; free tier 100 calls/mo)
- `o_swagger`: Exposed API docs at common paths (per-target) (200 sats/call; free tier 100 calls/mo)
- `o_teamcymru`: IP → ASN via Team Cymru DNS (fastest ASN lookup) (200 sats/call; free tier 100 calls/mo)
- `o_tech`: CMS/framework/server detection (200 sats/call; free tier 100 calls/mo)
- `o_telegram_channel`: Public channel preview: subscribers, description (200 sats/call; free tier 100 calls/mo)
- `o_threatcrowd`: OTX passive DNS resolution history (200 sats/call; free tier 100 calls/mo)
- `o_tldinfo`: TLD registry operator, type, purpose (offline) (200 sats/call; free tier 100 calls/mo)
- `o_tls`: Live cert: issuer, validity, SANs, cipher (200 sats/call; free tier 100 calls/mo)
- `o_tlsa`: Certificate-pinning DANE records on :443 (200 sats/call; free tier 100 calls/mo)
- `o_tlsscan`: Which SSL/TLS protocols the host accepts (200 sats/call; free tier 100 calls/mo)
- `o_tor`: Is the IP a known Tor exit node (200 sats/call; free tier 100 calls/mo)
- `o_transform`: rot13/base32/morse/reverse (offline) (200 sats/call; free tier 100 calls/mo)
- `o_trendingwiki`: Most-read Wikipedia articles today (200 sats/call; free tier 100 calls/mo)
- `o_trufflehog_url`: Scan raw URL content for API keys, tokens, private keys, JWTs (200 sats/call; free tier 100 calls/mo)
- `o_unicode_lookup`: Unicode codepoint: name, category, HTML entity (offline) (200 sats/call; free tier 100 calls/mo)
- `o_unpaywall`: Is a DOI open-access? Direct PDF link (200 sats/call; free tier 100 calls/mo)
- `o_urlparse`: Parse URL into components + query params (200 sats/call; free tier 100 calls/mo)
- `o_urlscan`: Past scans, verdicts, infra (IP/ASN/server) for a site (200 sats/call; free tier 100 calls/mo)
- `o_urlscansearch`: Public urlscan.io scan history for a domain (200 sats/call; free tier 100 calls/mo)
- `o_useragent`: Parse a User-Agent into OS/browser (offline) (200 sats/call; free tier 100 calls/mo)
- `o_username`: Presence across 16 public sites (200 sats/call; free tier 100 calls/mo)
- `o_utm`: Lat/lon → UTM coordinates (WGS84, offline) (200 sats/call; free tier 100 calls/mo)
- `o_uuencode`: Unix-to-Unix encoding (200 sats/call; free tier 100 calls/mo)
- `o_uuid`: Version/variant + v1 timestamp/MAC (offline) (200 sats/call; free tier 100 calls/mo)
- `o_uuid_validate`: UUID v1-v5 version and variant detector (200 sats/call; free tier 100 calls/mo)
- `o_waf`: Detect WAF/CDN from headers & cookies (200 sats/call; free tier 100 calls/mo)
- `o_wayback_leaks`: Search Wayback Machine for historically exposed .env/config/secrets (200 sats/call; free tier 100 calls/mo)
- `o_weather`: Current weather at a coordinate (Open-Meteo) (200 sats/call; free tier 100 calls/mo)
- `o_wellknown`: Which /.well-known/* resources exist (200 sats/call; free tier 100 calls/mo)
- `o_whois`: Registration, status, nameservers, DNSSEC (200 sats/call; free tier 100 calls/mo)
- `o_whoisserver`: TLD → WHOIS server mapping (offline + IANA fallback) (200 sats/call; free tier 100 calls/mo)
- `o_wikidata`: Search Wikidata entities by label (no key) (200 sats/call; free tier 100 calls/mo)
- `o_wikidatasearch`: Free-text → Wikidata entities (200 sats/call; free tier 100 calls/mo)
- `o_wikipedia`: Wikipedia REST summary: extract, type, coords (no key) (200 sats/call; free tier 100 calls/mo)
- `o_wikipv`: Page length, last edit, editor (200 sats/call; free tier 100 calls/mo)
- `o_wikisummary`: Page extract/description for a topic (200 sats/call; free tier 100 calls/mo)
- `o_wordcount`: Text stats: words/chars/lines/reading time (offline) (200 sats/call; free tier 100 calls/mo)
- `o_zenodo`: Zenodo open-research records search (200 sats/call; free tier 100 calls/mo)
- `px_info`: Proxy service capabilities, auth, billing info (50 sats/call; free tier 100 calls/mo)
- `px_order`: Check proxy order payment/fulfilment status (50 sats/call; free tier 100 calls/mo)
- `px_plans`: List residential proxy plans + sats pricing (50 sats/call; free tier 100 calls/mo)
- `qr`: SVG QR codes + barcodes (250 sats/call; free tier 100 calls/mo)
- `regex`: Test/replace regex patterns (200 sats/call; free tier 100 calls/mo)
- `re_report`: Cited multi-source research report. Call with {q} -> job_id, poll with {job_id} until done (charged on completion poll) (1500 sats/call; free tier 100 calls/mo)
- `re_search`: Search a private crawled+indexed knowledge cloud (OpenSearch+Qdrant) (200 sats/call; free tier 100 calls/mo)
- `re_semantic`: Vector/semantic search over the private knowledge cloud (250 sats/call; free tier 100 calls/mo)
- `re_summarize`: LLM summary of specific URLs (pass urls=comma-separated) (400 sats/call; free tier 100 calls/mo)
- `search`: Synthesize a research answer via local LLM (500 sats/call; free tier 100 calls/mo)
- `styx_beacon`: Tor gateway status + current exit IP (50 sats/call; free tier 100 calls/mo)
- `styx_fetch`: Fetch a URL through the Tor network (300 sats/call; free tier 100 calls/mo)
- `styx_renew`: Rotate to a fresh Tor circuit/identity (100 sats/call; free tier 100 calls/mo)
- `summarize`: Summarize docs, extract entities, sentiment (500 sats/call; free tier 100 calls/mo)
- `titan_beacon`: Check RTX 4080 GPU compute status (0 sats/call; free tier 100 calls/mo)
- `titan_generate`: Run LLM inference on the RTX 4080 (needs titan key) (0 sats/call; free tier 100 calls/mo)
- `titan_order`: Buy GPU compute credits (BTCPay invoice) (0 sats/call; free tier 100 calls/mo)
- `v_b64dec`: Base64-decode to text + hex (100 sats/call; free tier 100 calls/mo)
- `v_b64enc`: Base64-encode text (100 sats/call; free tier 100 calls/mo)
- `v_baseconv`: Convert a number between bases 2-36 (100 sats/call; free tier 100 calls/mo)
- `v_case`: camel/snake/kebab/pascal/title/upper/lower (100 sats/call; free tier 100 calls/mo)
- `v_cron`: Break down a 5-field cron expression (100 sats/call; free tier 100 calls/mo)
- `v_epoch`: Convert a unix epoch to UTC + relative (100 sats/call; free tier 100 calls/mo)
- `v_hash`: MD5/SHA1/SHA256/SHA512 of a string (100 sats/call; free tier 100 calls/mo)
- `v_hex2txt`: Decode hex bytes to text (100 sats/call; free tier 100 calls/mo)
- `v_htmldec`: Decode HTML entities (100 sats/call; free tier 100 calls/mo)
- `v_json_csv`: Flatten a JSON array of objects to CSV (100 sats/call; free tier 100 calls/mo)
- `v_json_diff`: Diff two JSON values (added/removed/changed) (100 sats/call; free tier 100 calls/mo)
- `v_json_format`: Validate + pretty-print JSON (100 sats/call; free tier 100 calls/mo)
- `v_jwt`: Decode a JWT header + payload (100 sats/call; free tier 100 calls/mo)
- `v_metrics`: Length/word/line counts + Shannon entropy (100 sats/call; free tier 100 calls/mo)
- `v_now`: Current unix time (UTC) (100 sats/call; free tier 100 calls/mo)
- `v_regex`: Test a regex, return matches + groups (100 sats/call; free tier 100 calls/mo)
- `v_slug`: Slugify text (lowercase, dashes, ascii) (100 sats/call; free tier 100 calls/mo)
- `v_txt2hex`: Encode text to hex (100 sats/call; free tier 100 calls/mo)
- `v_urldec`: Percent-decode a string (100 sats/call; free tier 100 calls/mo)
- `v_urlenc`: Percent-encode a string (100 sats/call; free tier 100 calls/mo)
- `v_urlparse`: Split a URL into scheme/host/path/query (100 sats/call; free tier 100 calls/mo)
- `v_uuid`: Generate a random UUID v4 (100 sats/call; free tier 100 calls/mo)
- `web_scrape`: Fetch any URL → clean markdown + metadata (400 sats/call; free tier 100 calls/mo)
