XGuard Universal Paid AI Agent + Secretless Gateway API

The REST surface behind every XGuard product, published as OpenAPI 3.1.0 (info.version 5.1.0, 47 paths, 49 operations, servers[] https://api.xguardgate.com) at https://api.xguardgate.com/openapi.json. The Outcomes group is the canonical product: POST /v1/execute (operationId xguardExecute) takes an intent plus up to three public URLs, returns a free result for intent:demo or supplied HTML, and otherwise answers HTTP 402 with a Payment-Required header, a signed five-minute X-XGuard-Quote and an exact USDC price; a funded x402 v2 client signs and retries the identical body, and GET /v1/results/{payment_identifier} recovers a paid outcome with the original quote. The contract also carries the x402 facilitator relay (/supported, /verify, /settle, /discovery/*), the compatible paid xguard.web.fetch tool with a Base Sepolia testnet twin, the Secretless Egress operator and agent endpoints under /v1/egress/*, the Action Rail permit/execute pair under /v1/actions/*, the free ATS-100 transaction-safety test, ProofRail proof verification and health/readiness probes. Only one operation declares an operationId and no securitySchemes are declared; credentials are documented as headers (X-XGuard-Key, Payment-Signature, X-XGuard-Quote, X-XGuard-Credit) and a scoped capability token instead.

Operations 49

POST /v1/execute Execute a public-source outcome #
GET /supported Return x402 payment kinds supported by healthy upstream facilitators
POST /verify Firewall-check and verify an x402 payment payload
POST /settle Firewall-check, route and settle an x402 payment with replay protection and reconciliation
GET /healthz Control-plane and upstream health
GET /v1/receipts/{receipt_id} Read a durable XGuard settlement receipt
GET /v1/protocols Discover XGuard protocol-neutral control-plane capabilities
POST /v1/inspect Classify and policy-check an agent transaction without forwarding it
POST /v1/test Free Agent Transaction Safety Test across x402, MPP, AP2, UCP, ACP and MCP
GET /v1/test/schema Describe the free Agent Transaction Safety Test
POST /edge/{merchant-host}/{path} Proxy a DNS-authorized merchant transaction through XGuard
GET /facilitator Machine-readable XGuard facilitator identity and routing capabilities
GET /discovery/resources List x402 Bazaar resources reachable through XGuard catalogs
GET /discovery/search Search x402 Bazaar resources reachable through XGuard
GET /v1/facilitator/route Inspect the route XGuard would select for a network/scheme
GET /v1/actions Discover XGuard Action Rail
POST /v1/actions/permits Prepare one signed single-use AI action permit
POST /v1/actions/execute Execute the exact request bound to an XGuard action permit
GET /v1/actions/pricing Action Rail Usage Credit billing boundary
GET /v1/actions/stats Action Rail execution and billing counters
GET /v1/egress Discover XGuard Secretless Egress
POST /v1/egress/credentials Store an encrypted upstream credential (operator only)
GET /v1/egress/credentials List operator credential metadata
POST /v1/egress/capabilities Issue a short-lived scoped capability for an agent
DELETE /v1/egress/capabilities/{id} Revoke a capability; already dispatched work may finish
POST /v1/egress/fetch Execute one credential-backed outbound request using an XGuard capability
GET /v1/egress/pricing Secretless Egress Usage Credit boundary
GET /v1/capabilities List executable outcomes and exact pricing
GET /v1/pricing
GET /v1/preflight Describe the free guarded-request preflight
POST /v1/preflight Preflight a guarded paid request without contacting the target
POST /v1/pricing/quote Quote a live outcome or the compatible web.fetch tool
POST /v1/tools/web.fetch Fetch a public HTTPS resource only after required x402 settlement
POST /v1/tools/web.fetch/testnet Base Sepolia testnet form of xguard.web.fetch
GET /v1/operations/{payment_identifier} Read a payment/execution state
GET /v1/health Liveness probe
GET /v1/ready Dependency readiness probe
GET /v1/payment/readiness Inspect production and test payment readiness without exposing secrets
GET /v1/metrics Paid-gateway operational counters
GET /v1/proof Discover XGuard ProofRail
POST /v1/proofs/verify Verify a ProofRail compact proof
GET /v1/capabilities/{id}
GET /v1/results/{payment_identifier}
GET /agent-card.json Canonical discovery alias
GET /openapi.yaml Canonical discovery alias
GET /pricing Canonical discovery alias
GET /.well-known/agent-directory.json Discover the canonical XGuard agent card and tool catalog
GET /.well-known/oauth-protected-resource Resource metadata; public x402 tools do not require OAuth
GET /.well-known/oauth-protected-resource/mcp Resource metadata; public x402 tools do not require OAuth

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/xguard-universal-paid-agent-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

xguardgate-com-openapi.json Raw ↑
{"openapi":"3.1.0","info":{"title":"XGuard Universal Paid AI Agent + Secretless Gateway","version":"5.1.0","description":"Describe a supported outcome. Receive normalized results or an exact x402 price, then authorize and retry the same request. Start with intent:demo for free."},"servers":[{"url":"https://api.xguardgate.com"}],"paths":{"/v1/execute":{"post":{"operationId":"xguardExecute","tags":["Outcomes"],"summary":"Execute a public-source outcome","security":[],"requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","properties":{"intent":{"oneOf":[{"type":"string","maxLength":3000},{"type":"object"}],"example":"Get a technology news digest"},"capability":{"type":"string","enum":["extract-preview","web-extraction","product-offers","feed-digest"]},"url":{"type":"string","format":"uri"},"urls":{"type":"array","maxItems":3,"items":{"type":"string","format":"uri"}},"sources":{"type":"array","maxItems":3,"items":{"oneOf":[{"type":"string","format":"uri","pattern":"^https://"},{"type":"object","required":["url"],"properties":{"url":{"type":"string","format":"uri"},"fallbacks":{"type":"array","maxItems":1,"items":{"type":"string","format":"uri"}}},"additionalProperties":false}]}},"action":{"type":"string"},"desired_action":{"type":"string"},"html":{"type":"string","maxLength":12288},"limit":{"type":"integer","minimum":1,"maximum":30},"max_age_seconds":{"type":"integer","minimum":0,"maximum":60,"default":0},"query":{"type":"string","maxLength":200},"testnet":{"type":"boolean","default":false},"input":{"type":"object"},"arguments":{"oneOf":[{"type":"object"},{"type":"string","description":"JSON-encoded object, as used by tool calls"}]},"name":{"type":"string"},"tool":{"type":"string"},"tool_id":{"type":"string"},"toolId":{"type":"string"},"function":{"type":"object","required":["name","arguments"],"properties":{"name":{"type":"string"},"arguments":{"type":["string","object"]}},"additionalProperties":false},"type":{"const":"function"},"quantity":{"const":1},"units":{"const":1},"requests":{"const":1},"calls":{"const":1},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-sepolia"]},"operation":{"type":"object","description":"Resolved read-only OpenAPI operation with URL, method and desired action; no remote spec fetching."},"http":{"type":"object"},"command":{"type":"string"},"task":{"type":"object"}},"additionalProperties":false,"description":"Use intent:'demo' for a free result. Paid outcomes accept supported English/Arabic intents with public sources. Unknown jobs return repair guidance; this is not a general-purpose language model.","examples":[{"intent":"Get a technology news digest","limit":10}],"anyOf":[{"required":["intent"]},{"required":["capability"]},{"required":["tool"]},{"required":["tool_id"]},{"required":["toolId"]},{"required":["name"]},{"required":["function"]},{"required":["html"]},{"required":["action"]},{"required":["desired_action"]},{"required":["command"]},{"required":["input"]},{"required":["arguments"]},{"required":["operation"]},{"required":["http"]},{"required":["task"]}]},"example":{"intent":"Get a technology news digest","limit":10}}}},"parameters":[{"name":"X-XGuard-Quote","in":"header","required":false,"schema":{"type":"string"}},{"name":"Payment-Signature","in":"header","required":false,"schema":{"type":"string"}},{"name":"X-XGuard-Credit","in":"header","required":false,"schema":{"type":"string"}}],"responses":{"200":{"description":"Normalized outcome with integrity metadata and receipt","content":{"application/json":{"schema":{"type":"object","required":["ok","intent","capability","result","verification","cost","receipt"],"properties":{"ok":{"const":true},"intent":{"type":"object"},"capability":{"type":"string"},"result":{"type":"object"},"verification":{"type":"object"},"cost":{"type":"object"},"receipt":{"type":["object","null"]}}}}}},"400":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"402":{"description":"Exact x402 payment requirement; preserve X-XGuard-Quote and retry identical input with Payment-Signature","headers":{"Payment-Required":{"schema":{"type":"string"}},"X-XGuard-Quote":{"schema":{"type":"string"}}}},"403":{"description":"Unsafe target or recovery credential","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"409":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"413":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"422":{"description":"Self-describing repair.suggested_request","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"429":{"description":"Rate limit","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"500":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"502":{"description":"No usable source; execution credit retained","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"503":{"description":"Payment unavailable or settlement awaiting reconciliation","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}}},"description":"Live public-source work requires x402 payment at the exact quoted price. The supplied-HTML preview (intent:demo) is free. An unsigned request only returns a price; it does not fetch sources or settle payment.","x-payment-info":{"protocols":[{"x402":{}}],"price":{"mode":"dynamic","currency":"USD","min":"0","max":"0.006000"}}}},"/supported":{"get":{"summary":"Return x402 payment kinds supported by healthy upstream facilitators","responses":{"200":{"description":"Supported payment kinds"}}}},"/verify":{"post":{"requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","required":["paymentPayload","paymentRequirements"],"properties":{"x402Version":{"const":2},"paymentPayload":{"type":"object","required":["x402Version","accepted","payload"],"properties":{"x402Version":{"const":2},"accepted":{"type":"object"},"payload":{"type":"object"}}},"paymentRequirements":{"type":"object","required":["scheme","network","asset","payTo","amount"]}}}}}},"summary":"Firewall-check and verify an x402 payment payload","responses":{"200":{"description":"Verification result"},"400":{"description":"Blocked by XGuard payment firewall","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"413":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"429":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"503":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}}},"description":"Send the full x402 v2 paymentPayload and paymentRequirements on each request. payment_payload/payment and payment_requirements/requirements are accepted aliases; an encoded Payment-Signature value may supply the payload. Conflicting aliases are rejected. A prior verification response or client trust flag cannot authorize settlement."}},"/settle":{"post":{"requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","required":["paymentPayload","paymentRequirements"],"properties":{"x402Version":{"const":2},"paymentPayload":{"type":"object","required":["x402Version","accepted","payload"],"properties":{"x402Version":{"const":2},"accepted":{"type":"object"},"payload":{"type":"object"}}},"paymentRequirements":{"type":"object","required":["scheme","network","asset","payTo","amount"]}}}}}},"summary":"Firewall-check, route and settle an x402 payment with replay protection and reconciliation","responses":{"200":{"description":"Settlement result"},"400":{"description":"Blocked by XGuard payment firewall","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"402":{"description":"XGuard usage credits required after free allowance"},"409":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"413":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"429":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}},"503":{"description":"Request rejected with repair instructions; no automatic retry of ambiguous settlement.","content":{"application/json":{"schema":{"$ref":"#/components/schemas/PublicError"}}}}},"description":"Send the full x402 v2 paymentPayload and paymentRequirements on each request. payment_payload/payment and payment_requirements/requirements are accepted aliases; an encoded Payment-Signature value may supply the payload. Conflicting aliases are rejected. A prior verification response or client trust flag cannot authorize settlement."}},"/healthz":{"get":{"summary":"Control-plane and upstream health","responses":{"200":{"description":"Health"}}}},"/v1/receipts/{receipt_id}":{"get":{"summary":"Read a durable XGuard settlement receipt","parameters":[{"name":"receipt_id","in":"path","required":true,"schema":{"type":"string"}}],"responses":{"200":{"description":"Receipt"},"404":{"description":"Not found"}}}},"/v1/protocols":{"get":{"summary":"Discover XGuard protocol-neutral control-plane capabilities","responses":{"200":{"description":"Universal protocol manifest"}}}},"/v1/inspect":{"post":{"summary":"Classify and policy-check an agent transaction without forwarding it","requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","properties":{"target":{"type":"string"},"method":{"type":"string"},"headers":{"type":"object"},"body":{}},"required":["target"]}}}},"responses":{"200":{"description":"Detected protocol and policy result"}}}},"/v1/test":{"post":{"summary":"Free Agent Transaction Safety Test across x402, MPP, AP2, UCP, ACP and MCP","description":"Scores a supplied sample for retry safety, idempotency, context binding, replay uniqueness, freshness and auditability. The target is not contacted.","requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","properties":{"target":{"type":"string"},"method":{"type":"string"},"headers":{"type":"object"},"body":{}},"required":["target"]}}}},"responses":{"200":{"description":"0–100 structural runtime-readiness report"},"400":{"description":"Invalid sample"}}}},"/v1/test/schema":{"get":{"summary":"Describe the free Agent Transaction Safety Test","responses":{"200":{"description":"Test schema and supported protocols"}}}},"/edge/{merchant-host}/{path}":{"parameters":[{"name":"merchant-host","in":"path","required":true,"schema":{"type":"string"}},{"name":"path","in":"path","required":true,"schema":{"type":"string"}}],"post":{"summary":"Proxy a DNS-authorized merchant transaction through XGuard","responses":{"200":{"description":"Upstream response"},"402":{"description":"Usage credits required"},"403":{"description":"Merchant hostname has not authorized XGuard Edge"}}}},"/facilitator":{"get":{"summary":"Machine-readable XGuard facilitator identity and routing capabilities","responses":{"200":{"description":"Facilitator metadata"}}}},"/discovery/resources":{"get":{"summary":"List x402 Bazaar resources reachable through XGuard catalogs","responses":{"200":{"description":"Aggregated x402 discovery resources"}}}},"/discovery/search":{"get":{"summary":"Search x402 Bazaar resources reachable through XGuard","responses":{"200":{"description":"Aggregated x402 discovery search results"}}}},"/v1/facilitator/route":{"get":{"summary":"Inspect the route XGuard would select for a network/scheme","responses":{"200":{"description":"Live compatible route recommendation"},"503":{"description":"No compatible live route"}}}},"/v1/actions":{"get":{"summary":"Discover XGuard Action Rail","responses":{"200":{"description":"Action Rail manifest"}}}},"/v1/actions/permits":{"post":{"summary":"Prepare one signed single-use AI action permit","responses":{"201":{"description":"Signed action permit"},"401":{"description":"XGuard key required"},"402":{"description":"Usage Credits required"},"428":{"description":"Scoped mandate required"}}}},"/v1/actions/execute":{"post":{"summary":"Execute the exact request bound to an XGuard action permit","responses":{"200":{"description":"Upstream response after controlled execution"},"402":{"description":"Usage Credits required"},"409":{"description":"Replay, state or binding conflict"},"503":{"description":"Ambiguous outcome; fail closed"}}}},"/v1/actions/pricing":{"get":{"summary":"Action Rail Usage Credit billing boundary","responses":{"200":{"description":"Pricing metadata"}}}},"/v1/actions/stats":{"get":{"summary":"Action Rail execution and billing counters","responses":{"200":{"description":"Durable counters"}}}},"/v1/egress":{"get":{"summary":"Discover XGuard Secretless Egress","responses":{"200":{"description":"Egress manifest"}}}},"/v1/egress/credentials":{"post":{"summary":"Store an encrypted upstream credential (operator only)","responses":{"201":{"description":"Credential metadata; secret is never returned"},"401":{"description":"XGuard key required"}}},"get":{"summary":"List operator credential metadata","responses":{"200":{"description":"Credential metadata"}}}},"/v1/egress/capabilities":{"post":{"summary":"Issue a short-lived scoped capability for an agent","responses":{"201":{"description":"Scoped capability"}},"requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","required":["credential_id"],"properties":{"credential_id":{"type":"string"},"target_origin":{"type":"string","format":"uri"},"path_prefix":{"type":"string"},"allowed_methods":{"type":"array","items":{"type":"string","enum":["GET","HEAD","POST","PUT","PATCH","DELETE"]}},"ttl_seconds":{"type":"integer","minimum":30,"maximum":3600},"max_calls":{"type":"integer","minimum":1,"maximum":1000},"max_total_credits":{"type":"integer","minimum":1,"maximum":1000000000,"description":"XGuard gateway-credit budget; excludes provider charges"},"max_credits_per_call":{"type":"integer","minimum":1,"maximum":1000000}}}}}}}},"/v1/egress/capabilities/{id}":{"delete":{"summary":"Revoke a capability; already dispatched work may finish","parameters":[{"name":"id","in":"path","required":true,"schema":{"type":"string","pattern":"^[a-f0-9]{32}$"}},{"name":"X-XGuard-Key","in":"header","required":true,"schema":{"type":"string"}}],"responses":{"200":{"description":"Revoked"},"403":{"description":"Not the capability owner"}}}},"/v1/egress/fetch":{"post":{"summary":"Execute one credential-backed outbound request using an XGuard capability","responses":{"200":{"description":"Upstream response"},"401":{"description":"Capability required"},"402":{"description":"Usage Credits required"},"403":{"description":"Capability or credential scope denied"},"409":{"description":"Request digest conflicts with the key, execution is in progress, or its outcome is unknown; do not use a new key to retry an uncertain write"},"503":{"description":"Billing/decryption/network ambiguity; no automatic replay"}},"requestBody":{"required":true,"content":{"application/json":{"schema":{"type":"object","required":["capability","target"],"properties":{"capability":{"type":"string","description":"Short-lived XGuard capability issued by the operator."},"target":{"type":"string","description":"Public HTTPS URL within the capability scope."},"method":{"type":"string","enum":["GET","HEAD","POST","PUT","PATCH","DELETE"]},"idempotency_key":{"type":"string","minLength":8,"maxLength":128,"pattern":"^[A-Za-z0-9_:.\\-]+$","description":"Required for POST/PUT/PATCH/DELETE. Stable business-operation key; retry the exact same request with this key."},"headers":{"type":"object","additionalProperties":{"type":"string"}},"body_json":{},"body_text":{"type":"string"},"body_base64":{"type":"string"},"content_type":{"type":"string"}}}}}},"parameters":[{"name":"Idempotency-Key","in":"header","schema":{"type":"string","minLength":8,"maxLength":128},"description":"Same value as idempotency_key when both are provided"}]}},"/v1/egress/pricing":{"get":{"summary":"Secretless Egress Usage Credit boundary","responses":{"200":{"description":"Billing contract"}}}},"/v1/capabilities":{"get":{"tags":["Outcomes"],"summary":"List executable outcomes and exact pricing","responses":{"200":{"description":"Capabilities with input/output schemas and examples"}}}},"/v1/pricing":{"get":{"tags":["Outcomes"],"responses":{"200":{"description":"Exact per-execution outcome pricing"}}}},"/v1/preflight":{"get":{"summary":"Describe the free guarded-request preflight","responses":{"200":{"description":"Preflight schema and exact next steps","content":{"application/json":{"schema":{"type":"object"}}}}}},"post":{"summary":"Preflight a guarded paid request without contacting the target","description":"Free and read-only. Validates the normalized public HTTPS target, SSRF policy, trusted public DNS and payment readiness. On allow, call /v1/tools/web.fetch directly for an automatically quoted mandatory x402 v2 flow.","requestBody":{"required":true,"content":{"application/json":{"schema":{"oneOf":[{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","description":"Canonical public HTTPS target URL."},"target_url":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"targetUrl":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"uri":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"target":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"resource":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"endpoint":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"href":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"curl":{"type":"string","description":"One deterministic curl GET/HEAD command containing one absolute HTTPS URL."},"command":{"type":"string","description":"Alias for curl."},"operation":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"OpenAPI/MCP-style operation envelope."},"action":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"Action envelope."},"method":{"type":"string","enum":["GET","HEAD"],"default":"GET"},"timeout_ms":{"type":"integer","minimum":1000,"maximum":10000,"default":8000},"timeoutMs":{"type":"integer","minimum":1000,"maximum":10000,"deprecated":true},"max_bytes":{"type":"integer","minimum":1024,"maximum":131072,"default":131072},"maxBytes":{"type":"integer","minimum":1024,"maximum":131072,"deprecated":true},"mode":{"type":"string","enum":["auto","text","json"],"default":"auto"},"testnet":{"type":"boolean","default":false},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"object","required":["input"],"properties":{"tool":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"toolName":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"tool_name":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"capability":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"capability_id":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"capabilityId":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"input":{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","description":"Canonical public HTTPS target URL."},"target_url":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"targetUrl":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"uri":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"target":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"resource":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"endpoint":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"href":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"curl":{"type":"string","description":"One deterministic curl GET/HEAD command containing one absolute HTTPS URL."},"command":{"type":"string","description":"Alias for curl."},"operation":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"OpenAPI/MCP-style operation envelope."},"action":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"Action envelope."},"method":{"type":"string","enum":["GET","HEAD"],"default":"GET"},"timeout_ms":{"type":"integer","minimum":1000,"maximum":10000,"default":8000},"timeoutMs":{"type":"integer","minimum":1000,"maximum":10000,"deprecated":true},"max_bytes":{"type":"integer","minimum":1024,"maximum":131072,"default":131072},"maxBytes":{"type":"integer","minimum":1024,"maximum":131072,"deprecated":true},"mode":{"type":"string","enum":["auto","text","json"],"default":"auto"},"testnet":{"type":"boolean","default":false},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},"testnet":{"type":"boolean"},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"object","required":["capability","input"],"properties":{"capability":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"capability_id":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"capabilityId":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"input":{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","description":"Canonical public HTTPS target URL."},"target_url":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"targetUrl":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"uri":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"target":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"resource":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"endpoint":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"href":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"curl":{"type":"string","description":"One deterministic curl GET/HEAD command containing one absolute HTTPS URL."},"command":{"type":"string","description":"Alias for curl."},"operation":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"OpenAPI/MCP-style operation envelope."},"action":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"Action envelope."},"method":{"type":"string","enum":["GET","HEAD"],"default":"GET"},"timeout_ms":{"type":"integer","minimum":1000,"maximum":10000,"default":8000},"timeoutMs":{"type":"integer","minimum":1000,"maximum":10000,"deprecated":true},"max_bytes":{"type":"integer","minimum":1024,"maximum":131072,"default":131072},"maxBytes":{"type":"integer","minimum":1024,"maximum":131072,"deprecated":true},"mode":{"type":"string","enum":["auto","text","json"],"default":"auto"},"testnet":{"type":"boolean","default":false},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},"testnet":{"type":"boolean"},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"object","required":["name","arguments"],"properties":{"name":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"arguments":{"oneOf":[{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","description":"Canonical public HTTPS target URL."},"target_url":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"targetUrl":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"uri":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"target":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"resource":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"endpoint":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"href":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"curl":{"type":"string","description":"One deterministic curl GET/HEAD command containing one absolute HTTPS URL."},"command":{"type":"string","description":"Alias for curl."},"operation":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"OpenAPI/MCP-style operation envelope."},"action":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"Action envelope."},"method":{"type":"string","enum":["GET","HEAD"],"default":"GET"},"timeout_ms":{"type":"integer","minimum":1000,"maximum":10000,"default":8000},"timeoutMs":{"type":"integer","minimum":1000,"maximum":10000,"deprecated":true},"max_bytes":{"type":"integer","minimum":1024,"maximum":131072,"default":131072},"maxBytes":{"type":"integer","minimum":1024,"maximum":131072,"deprecated":true},"mode":{"type":"string","enum":["auto","text","json"],"default":"auto"},"testnet":{"type":"boolean","default":false},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"string","contentMediaType":"application/json"}]},"testnet":{"type":"boolean"},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"object","required":["tool_name","parameters"],"properties":{"tool_name":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"toolName":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"parameters":{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","description":"Canonical public HTTPS target URL."},"target_url":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"targetUrl":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"uri":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"target":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"resource":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"endpoint":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"href":{"type":"string","format":"uri","pattern":"^https://","deprecated":true,"description":"Accepted alias for url."},"curl":{"type":"string","description":"One deterministic curl GET/HEAD command containing one absolute HTTPS URL."},"command":{"type":"string","description":"Alias for curl."},"operation":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"OpenAPI/MCP-style operation envelope."},"action":{"oneOf":[{"type":"string"},{"type":"object"}],"description":"Action envelope."},"method":{"type":"string","enum":["GET","HEAD"],"default":"GET"},"timeout_ms":{"type":"integer","minimum":1000,"maximum":10000,"default":8000},"timeoutMs":{"type":"integer","minimum":1000,"maximum":10000,"deprecated":true},"max_bytes":{"type":"integer","minimum":1024,"maximum":131072,"default":131072},"maxBytes":{"type":"integer","minimum":1024,"maximum":131072,"deprecated":true},"mode":{"type":"string","enum":["auto","text","json"],"default":"auto"},"testnet":{"type":"boolean","default":false},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},"testnet":{"type":"boolean"},"network":{"type":"string","enum":["eip155:8453","eip155:84532","base","base-mainnet","base-sepolia","mainnet","testnet"]}},"additionalProperties":true},{"type":"object","required":["function"],"properties":{"function":{"type":"object","required":["name","arguments"],"properties":{"name":{"type":"string","enum":["xguard.web.fetch","web.fetch","fetch","xguard_web_fetch"]},"arguments":{"oneOf":[{"type":"object","anyOf":[{"required":["url"]},{"required":["target_url"]},{"required":["targetUrl"]},{"required":["uri"]},{"required":["target"]},{"required":["resource"]},{"required":["endpoint"]},{"required":["href"]},{"required":["curl"]},{"required":["command"]},{"required":["operation"]},{"required":["action"]}],"properties":{"url":{"type":"string","format":"uri","pattern":"^https://","descri

# --- truncated at 32 KB (75 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/xguardgate-com/refs/heads/main/openapi/xguardgate-com-openapi.json