OnTopX402 · Authentication Profile

Ontopx402 Authentication

Authentication

OnTopX402 declares 2 security scheme(s) across its OpenAPI definitions.

x402USDCAgent Paymentspaid-placementLeaderboards
Methods: Schemes: 2 OAuth flows: API key in:

Security Schemes

none (anonymous reads) none
x402 payment (X-PAYMENT header) x402

Source

Authentication Profile

Raw ↑
generated: '2026-09-03'
method: searched
source: https://ontopx402.com/llms.txt
docs: https://ontopx402.com/llms.txt
note: >-
  There are no accounts, API keys, OAuth flows or cards, by design — "the payment is
  the account." The OpenAPI declares no securitySchemes. Reads are anonymous; the
  only write is gated by an x402 v2 payment challenge instead of credentials.
schemes:
- name: none (anonymous reads)
  type: none
  applies_to:
  - api_leaderboard_api_leaderboard_get
  - api_entry_api_entry_get
  description: GET /api/leaderboard and GET /api/entry are free and need no key. Free reads are rate limited per address (429).
- name: x402 payment (X-PAYMENT header)
  type: x402
  applies_to:
  - api_bid_api_bid_post
  description: >-
    POST /api/bid with no payment header answers 402 carrying x402Version 2 payment
    requirements priced at the caller-named amount, payable in USDC on Base
    (eip155:8453, facilitator https://api.cdp.coinbase.com/platform/v2/x402) or
    Solana. The caller pays and resends the identical request with the X-PAYMENT
    header; the settlement receipt returns in X-PAYMENT-RESPONSE. A settled
    transaction is never credited twice.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/ontopx402-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.