activedata

Business data intelligence platform providing company, employee, and job data from multiple sources. Access 3B+ regularly updated records via simple filters and data collection endpoints.

Implementation fingerprint
unknown no confident attribution
Fingerprint evidence
No implementation-specific public signal observed.
First seen
Aug 25, 2026, 6:43 PM UTC
Last seen
Oct 9, 2026, 12:26 PM UTC
Origin
https://mpp.orthogonal.com
Tags
companyemployeejobsintelligence

Payment surface

42 MPP endpoints

This count includes endpoints established by catalog, OpenAPI, or valid runtime 402 evidence. It does not count every URL the harmless scanner attempted.

This bounded detail view shows 25 endpoints. Continue with the next API page or the endpoint index.

JSON record →
GET
https://mpp.orthogonal.com/coresignal/v2/company_base/collect/%7Bcompany_id%7D
Get a full company profile by its Coresignal numeric ID. Use IDs returned by the 'Base Company Search (Filter)' or 'Base Company Search (Filter) Preview' endpoints. Returns company data including name, website, industry, size, description, specialties, headquarters location, and follower count.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_base/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_base/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_base/collect/%7Bprofile_url%7D
Get a full company profile by its professional network URL. Pass the URL-encoded company page URL in the path. Returns the same data as collecting by ID.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/company_base/search/filter
Search for companies using filters passed in the request body. Returns an array of numeric Coresignal company IDs (e.g., [4744382, 1635599, ...]). Use these IDs with the 'Base Company Collect' endpoint to get full company profiles. All filters are optional; combine any number of them to narrow results.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/company_base/search/filter/preview
Preview company search results with summary data. Pass filters in the request body. Returns matching companies with key fields: id, name, website, industry, size, country, and relevance score. Use the 'id' field with the 'Base Company Collect' endpoint to get full profiles.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_clean/collect/%7Bcompany_id%7D
Get a cleaned, deduplicated company profile by its Coresignal numeric ID. Use IDs returned by the search endpoints or look up by website using the 'Clean Company Enrich' endpoint. Returns normalized company data including name, website, industry, size, location, social URLs, and technology stack.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_clean/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_clean/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_clean/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_clean/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_clean/enrich
Look up a company by its website domain and get a full cleaned company profile. This is the easiest way to get company data if you know the company's website. Returns deduplicated, normalized data including name, industry, size, location, social URLs, and technology stack.
Status: 400TLS: tested-passRedirects: 0Challenge: not observedLast probe: Oct 1, 12:21 AM UTC
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_clean/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_clean/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_clean/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_clean/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/collect/%7Bcompany_id%7D
Get the most comprehensive company profile by its Coresignal numeric ID. Multi-source data is aggregated from professional networks, business databases, and other sources. Use IDs returned by the search endpoints or look up by website using the 'Multi-source Company Enrich' endpoint. Returns company name, website, industry, size, funding, social URLs, and more.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_multi_source/collect/{company_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/collect/%7Bprofile_url%7D
Get a comprehensive multi-source company profile by its professional network URL. Pass the URL-encoded company page URL in the path. Returns the same data as collecting by ID.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich
Look up a company by its website domain and get the most comprehensive company profile. This is the easiest way to get rich company data if you know the company's website. Multi-source data is aggregated from professional networks, business databases, and other sources.
Status: 400TLS: tested-passRedirects: 0Challenge: not observedLast probe: Oct 9, 12:26 PM UTC
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/company_multi_source/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/company_multi_source/enrich
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_base/collect/%7Bemployee_id%7D
Get a full employee/professional profile by its Coresignal numeric ID. Use IDs returned by the 'Base Employee Search (Filter)' or Preview endpoints. Returns professional data including name, headline, location, work experience history, education, skills, and connections count.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_base/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_base/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_base/collect/%7Bprofile_url%7D
Get a full employee profile by their professional network URL. Pass the URL-encoded profile URL in the path. Returns the same data as collecting by ID. This is the easiest way to look up a person if you have their profile URL.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_base/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/employee_base/search/filter
Search for professionals/employees using filters passed in the request body. Returns an array of numeric Coresignal employee IDs (e.g., [374311229, 958490751, ...]). Use these IDs with the 'Base Employee Collect by ID' endpoint to get full profiles. All filters are optional; combine any number of them to narrow results.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/employee_base/search/filter/preview
Preview employee search results with summary data. Pass filters in the request body. Returns matching professionals with key fields: id, full_name, headline, location, company, title, and relevance score. Use the 'id' field with the 'Base Employee Collect by ID' endpoint to get full profiles.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_clean/collect/%7Bemployee_id%7D
Get a cleaned, deduplicated employee profile by its Coresignal numeric ID. Use IDs returned by the search endpoints. Returns normalized professional data including name, headline, location, work experience, education, and skills.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_clean/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_clean/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_clean/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_clean/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_multi_source/collect/%7Bemployee_id%7D
Get the most comprehensive employee profile by its Coresignal numeric ID. Multi-source data is aggregated from multiple platforms. Use IDs returned by the search endpoints. Returns name, headline, location, full work experience history, education, skills, social URLs, and more.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_multi_source/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_multi_source/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_multi_source/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_multi_source/collect/{employee_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_multi_source/collect/%7Bprofile_url%7D
Get a comprehensive multi-source employee profile by their professional network URL. Pass the URL-encoded profile URL in the path. This is the easiest way to get the richest data on a person.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_multi_source/collect/{profile_url}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/employee_post/collect/%7Bpost_id%7D
Get a full professional network post by its numeric post ID. Use IDs returned by the 'Employee Posts Search (Filter)' endpoint (not a post URL or requestId). Returns the post author name, author profile URL, full post content, publish date, and engagement data.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_post/collect/{post_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_post/collect/{post_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_post/collect/{post_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_post/collect/{post_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/employee_post/search/filter
Search for professional network posts using filters like author profile URL or keywords. Pass filters in the request body (not a post URL). Returns an array of numeric post IDs (e.g., ["7431869637207928834", ...]). Use these IDs with the 'Employee Posts Collect' endpoint to get full post content.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/employee_post/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_post/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/employee_post/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/employee_post/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/coresignal/v2/job_base/collect/%7Bjob_id%7D
Get a full job listing by its Coresignal numeric ID. Use IDs returned by the 'Base Jobs Search (Filter)' or Preview endpoints. Returns job title, full description, company name, location, employment type, posting date, and application URL.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/job_base/collect/{job_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/collect/{job_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/collect/{job_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/job_base/collect/{job_id}
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/job_base/search/filter
Search for job listings using filters passed in the request body. Returns an array of numeric Coresignal job IDs (e.g., [406480270, 405917646, ...]). Use these IDs with the 'Base Jobs Collect' endpoint to get full job details. All filters are optional; combine to narrow results.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/job_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/job_base/search/filter
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/coresignal/v2/job_base/search/filter/preview
Preview job search results with summary data. Pass filters in the request body. Returns matching jobs with key fields: id, title, location, company_name, posting date, and relevance score. Use the 'id' field with the 'Base Jobs Collect' endpoint to get full job details.
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
mppchargeopenapiamount unknown USDC.e
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
tempo
Session · url
https://mpp.orthogonal.com/coresignal/v2/job_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
x402chargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
monad
Session · url
https://x402.orthogonal.com/coresignal/v2/job_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
npchargeopenapiamount unknown USDC
Recipient
not observed
Chain
not observed
Unit type
not observed
Session · rail
base
Session · settlement
circle-gateway
Session · version
x402-v2
Session · url
https://np.orthogonal.com/coresignal/v2/job_base/search/filter/preview
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/v2/company_base/collect/:company_id
Get a full company profile by its Coresignal numeric ID. Use IDs returned by the 'Base Company Search (Filter)' or
Status: 404TLS: tested-passRedirects: 0Challenge: not observedLast probe: Oct 8, 12:20 AM UTC
tempochargecatalog42000 0x20c000000000000000000000b9537d11c60e8b50
Recipient
not observed
Chain
not observed
Unit type
request
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
GET
https://mpp.orthogonal.com/v2/company_base/collect/:profile_url
Get a full company profile by its professional network URL. Pass the URL-encoded company page URL in the path. Returns
Status: 404TLS: tested-passRedirects: 0Challenge: not observedLast probe: Oct 7, 12:20 PM UTC
tempochargecatalog42000 0x20c000000000000000000000b9537d11c60e8b50
Recipient
not observed
Chain
not observed
Unit type
request
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/v2/company_base/search/filter
Search for companies using filters passed in the request body. Returns an array of numeric Coresignal company IDs
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
tempochargecatalog21000 0x20c000000000000000000000b9537d11c60e8b50
Recipient
not observed
Chain
not observed
Unit type
request
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.
POST
https://mpp.orthogonal.com/v2/company_base/search/filter/preview
Preview company search results with summary data. Pass filters in the request body. Returns matching companies with key
Status: not probedTLS: not-testedRedirects: unknownChallenge: not observedLast probe: unknown time
tempochargecatalog21000 0x20c000000000000000000000b9537d11c60e8b50
Recipient
not observed
Chain
not observed
Unit type
request
Economic exposure: unknown — the public observation does not contain enough session or authorization inputs to calculate it.

Probe coverage

66 harmless observations

These are bounded unauthenticated requests and scanner-policy stops. A response without MPP evidence remains a discovery result, not a security failure.

GET https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 9, 2026, 12:26 PM UTC

GET https://mpp.orthogonal.com/.well-known/api-catalog

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 6:28 PM UTC

GET https://mpp.orthogonal.com/v2/employee_clean/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 12:20 PM UTC

GET https://mpp.orthogonal.com/v2/company_clean/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 6:26 AM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/enrich

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 6:25 AM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 6:25 AM UTC

GET https://mpp.orthogonal.com/v2/employee_post/collect/:post_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 12:22 AM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 12:20 AM UTC

GET https://mpp.orthogonal.com/v2/employee_base/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 8, 2026, 12:19 AM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 7, 2026, 6:23 PM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 7, 2026, 6:23 PM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 7, 2026, 12:20 PM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_clean/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Oct 1, 2026, 12:21 AM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 30, 2026, 6:20 PM UTC

GET https://mpp.orthogonal.com/.well-known/api-catalog

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 PM UTC

GET https://mpp.orthogonal.com/v2/employee_base/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:22 PM UTC

GET https://mpp.orthogonal.com/v2/employee_clean/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 6:19 AM UTC

GET https://mpp.orthogonal.com/v2/job_base/collect/:job_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 AM UTC

GET https://mpp.orthogonal.com/v2/company_clean/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 AM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 AM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 AM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/enrich

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 29, 2026, 12:23 AM UTC

GET https://mpp.orthogonal.com/v2/employee_post/collect/:post_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 6:22 PM UTC

GET https://mpp.orthogonal.com/v2/company_clean/enrich

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 6:21 PM UTC

GET https://mpp.orthogonal.com/coresignal/openapi.json

HTTP 200

26,552 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 6:20 PM UTC

GET https://mpp.orthogonal.com/v2/employee_base/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 6:18 PM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 12:21 PM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 12:19 PM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 12:19 PM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 28, 2026, 6:18 AM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_clean/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 21, 2026, 6:21 PM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 21, 2026, 12:22 PM UTC

GET https://mpp.orthogonal.com/v2/employee_base/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 20, 2026, 6:22 AM UTC

GET https://mpp.orthogonal.com/.well-known/api-catalog

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 20, 2026, 6:22 AM UTC

GET https://mpp.orthogonal.com/v2/employee_clean/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 20, 2026, 12:20 AM UTC

GET https://mpp.orthogonal.com/v2/job_base/collect/:job_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:26 PM UTC

GET https://mpp.orthogonal.com/v2/company_clean/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:22 PM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:22 PM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:22 PM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/enrich

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:22 PM UTC

GET https://mpp.orthogonal.com/v2/employee_post/collect/:post_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:21 PM UTC

GET https://mpp.orthogonal.com/v2/company_clean/enrich

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:21 PM UTC

GET https://mpp.orthogonal.com/coresignal/openapi.json

HTTP 200

26,552 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:20 PM UTC

GET https://mpp.orthogonal.com/v2/employee_base/collect/:employee_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:19 PM UTC

GET https://mpp.orthogonal.com/v2/company_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:18 PM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:company_id

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:22 AM UTC

GET https://mpp.orthogonal.com/v2/employee_multi_source/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 6:20 AM UTC

GET https://mpp.orthogonal.com/v2/company_base/collect/:profile_url

HTTP 404

79 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 19, 2026, 12:22 AM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_clean/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 12, 2026, 12:23 PM UTC

GET https://mpp.orthogonal.com/coresignal/v2/company_multi_source/enrich

HTTP 400

319 response bytes · 0 redirects · HTTPS fetch completed with platform certificate validation

Sep 12, 2026, 12:20 PM UTC
Showing the latest 50 of 66 observations.

Evidence model

Security properties

Every result names its evidence state. Unknown and not tested never mean secure.

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 9, 2026, 12:26 PM UTC

bounded_response

Tested — pass

319 bytes within scanner limit

Basis: harmless scanner · Oct 9, 2026, 12:26 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 9, 2026, 12:26 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 9, 2026, 12:26 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 9, 2026, 12:26 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 9, 2026, 12:26 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 9, 2026, 12:26 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 9, 2026, 12:26 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 9, 2026, 12:26 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 9, 2026, 12:26 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 9, 2026, 12:26 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 9, 2026, 12:26 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 9, 2026, 12:26 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 9, 2026, 12:26 PM UTC

api_catalog_parse

Observed

No RFC 9727 API catalog was available at this URL (HTTP 404); prior advertised links were withdrawn

Basis: RFC 9727 discovery response · Oct 8, 2026, 6:28 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 6:28 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 6:28 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 6:28 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 6:28 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 6:28 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:28 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 6:28 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 6:28 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 6:28 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 6:28 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 6:28 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 6:28 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:28 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 6:28 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 12:20 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 12:20 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 12:20 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 12:20 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 12:20 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:20 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 12:20 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 12:20 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 12:20 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 12:20 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 12:20 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 12:20 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:20 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 12:20 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 6:26 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 6:26 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 6:26 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 6:26 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 6:26 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:26 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 6:26 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 6:26 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 6:26 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 6:26 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 6:26 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 6:26 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:26 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 6:26 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 6:25 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 6:25 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 6:25 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:25 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 6:25 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 6:25 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 6:25 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:25 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 6:25 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 6:25 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 6:25 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 6:25 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:25 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 6:25 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 6:25 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 6:25 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 6:25 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 6:25 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 6:25 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 12:22 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 12:22 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 12:22 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 12:22 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 12:22 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:22 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 12:22 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 12:22 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 12:22 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 12:22 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 12:22 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 12:22 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:22 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 12:22 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 12:20 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 12:20 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 12:20 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 12:20 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 12:20 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:20 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 12:20 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 12:20 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 12:20 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 12:20 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 12:20 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 12:20 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:20 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 12:20 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 8, 2026, 12:19 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 8, 2026, 12:19 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 8, 2026, 12:19 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 8, 2026, 12:19 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 8, 2026, 12:19 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:19 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 8, 2026, 12:19 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 8, 2026, 12:19 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 8, 2026, 12:19 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 8, 2026, 12:19 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 8, 2026, 12:19 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 8, 2026, 12:19 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 8, 2026, 12:19 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 8, 2026, 12:19 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 7, 2026, 6:23 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 7, 2026, 6:23 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 7, 2026, 6:23 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 6:23 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 7, 2026, 6:23 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 7, 2026, 6:23 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 7, 2026, 6:23 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 6:23 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 7, 2026, 6:23 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 7, 2026, 6:23 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 7, 2026, 6:23 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 7, 2026, 6:23 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 6:23 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 7, 2026, 6:23 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 7, 2026, 6:23 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 7, 2026, 6:23 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 7, 2026, 6:23 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 6:23 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 7, 2026, 6:23 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 7, 2026, 12:20 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Oct 7, 2026, 12:20 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 7, 2026, 12:20 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 7, 2026, 12:20 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 7, 2026, 12:20 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 12:20 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 7, 2026, 12:20 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 7, 2026, 12:20 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 7, 2026, 12:20 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 7, 2026, 12:20 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 7, 2026, 12:20 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 7, 2026, 12:20 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 7, 2026, 12:20 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 7, 2026, 12:20 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Oct 1, 2026, 12:21 AM UTC

bounded_response

Tested — pass

319 bytes within scanner limit

Basis: harmless scanner · Oct 1, 2026, 12:21 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Oct 1, 2026, 12:21 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Oct 1, 2026, 12:21 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Oct 1, 2026, 12:21 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 1, 2026, 12:21 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Oct 1, 2026, 12:21 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Oct 1, 2026, 12:21 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Oct 1, 2026, 12:21 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Oct 1, 2026, 12:21 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Oct 1, 2026, 12:21 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Oct 1, 2026, 12:21 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Oct 1, 2026, 12:21 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Oct 1, 2026, 12:21 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Sep 29, 2026, 12:22 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Sep 29, 2026, 12:22 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Sep 29, 2026, 12:22 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Sep 29, 2026, 12:22 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Sep 29, 2026, 12:22 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:22 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Sep 29, 2026, 12:22 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Sep 29, 2026, 12:22 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Sep 29, 2026, 12:22 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Sep 29, 2026, 12:22 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Sep 29, 2026, 12:22 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Sep 29, 2026, 12:22 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:22 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Sep 29, 2026, 12:22 PM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Sep 29, 2026, 12:23 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Sep 29, 2026, 12:23 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Sep 29, 2026, 12:23 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:23 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Sep 29, 2026, 12:23 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Sep 29, 2026, 12:23 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Sep 29, 2026, 12:23 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:23 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Sep 29, 2026, 12:23 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Sep 29, 2026, 12:23 AM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Sep 29, 2026, 12:23 AM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Sep 29, 2026, 12:23 AM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:23 AM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Sep 29, 2026, 12:23 AM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Sep 29, 2026, 12:23 AM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Sep 29, 2026, 12:23 AM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Sep 29, 2026, 12:23 AM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 29, 2026, 12:23 AM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Sep 29, 2026, 12:23 AM UTC

authorization_delivery_settlement

Not tested

Requires paid or state-changing behavior outside scanner scope

Basis: Tempo Aug 24 research class · Prior art: https://github.com/wevm/mppx/pull/510#discussion_r3377899233 · Sep 28, 2026, 6:21 PM UTC

bounded_response

Tested — pass

79 bytes within scanner limit

Basis: harmless scanner · Sep 28, 2026, 6:21 PM UTC

challenge_parse

Unknown

No MPP Payment challenge observed

Basis: unauthenticated HTTP response · Sep 28, 2026, 6:21 PM UTC

channel_lifecycle_binding

Not tested

Channel and settlement lifecycle require credentials or payments

Basis: public economic-security prior art · Sep 28, 2026, 6:21 PM UTC

concurrency_single_winner

Not tested

Concurrency and paid state changes are prohibited

Basis: public economic-security prior art · Sep 28, 2026, 6:21 PM UTC

credential_replay

Not tested

Scanner never sends credentials or payments

Basis: methodology · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 28, 2026, 6:21 PM UTC

economic_exposure_metadata

Unknown

No current Payment challenge exposes session or authorization inputs

Basis: observable challenge values only · Sep 28, 2026, 6:21 PM UTC

fee_payer_cosigner_binding

Not tested

Signature and fee-payer relationships are not observable unauthenticated

Basis: public economic-security prior art · Sep 28, 2026, 6:21 PM UTC

https_transport

Tested — pass

HTTPS fetch completed with platform certificate validation

Basis: platform TLS validation · Sep 28, 2026, 6:21 PM UTC

method_fallback_policy

Not tested

Scanner does not select, downgrade, or execute payment methods

Basis: public economic-security prior art · Sep 28, 2026, 6:21 PM UTC

price_debit_consistency

Not tested

Requires a completed paid interaction outside scanner scope

Basis: public economic-security prior art · Sep 28, 2026, 6:21 PM UTC

redirect_policy

Tested — pass

0 redirects; every hop passed URL and DNS validation

Basis: harmless scanner · Sep 28, 2026, 6:21 PM UTC

replay_idempotency_scope

Not tested

Scanner never replays signed credentials

Basis: public advisory and protocol prior art · Prior art: https://github.com/advisories/GHSA-fxc9-7j2w-vx54 · Sep 28, 2026, 6:21 PM UTC

ssrf_target_validation

Tested — pass

1 hop(s) resolved twice to stable public addresses

Basis: scanner URL, DNS and redirect policy · Sep 28, 2026, 6:21 PM UTC

openapi_parse

Tested — pass

84 payment offer(s) accepted

Basis: harmless discovery response · Sep 28, 2026, 6:20 PM UTC

History

Service changes

Showing the latest 50 of 265 changes. Continue in the changes API view.

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:api_catalog_parse: {"state":"observed","evidence":"API catalog source returned HTTP 404; prior advertised links were withdrawn","basis":"R… → {"state":"observed","evidence":"No RFC 9727 API catalog was available at this URL (HTTP 404); prior advertised links we…

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— security-property-changed

security:bounded_response: {"state":"tested-pass","evidence":"79 bytes within scanner limit","basis":"harmless scanner"} → {"state":"tested-pass","evidence":"26552 bytes within scanner limit","basis":"harmless scanner"}

Evidence: Repeated harmless observation changed the modeled property

— probe-observation

last_status → 400

Evidence: harmless unauthenticated HTTP observation

— probe-observation

tls_state: not-tested → tested-pass

Evidence: harmless unauthenticated HTTP observation

— probe-observation

redirect_count → 0

Evidence: harmless unauthenticated HTTP observation

— probe-observation

content_type → application/json; charset=utf-8

Evidence: harmless unauthenticated HTTP observation

— probe-observation

tls_state: not-tested → tested-pass

Evidence: harmless unauthenticated HTTP observation

— probe-observation

last_status → 400

Evidence: harmless unauthenticated HTTP observation

— probe-observation

redirect_count → 0

Evidence: harmless unauthenticated HTTP observation

— probe-observation

content_type → application/json; charset=utf-8

Evidence: harmless unauthenticated HTTP observation

— probe-observation

content_type → application/json; charset=utf-8

Evidence: harmless unauthenticated HTTP observation

— probe-observation

last_status → 404

Evidence: harmless unauthenticated HTTP observation

— probe-observation

tls_state: not-tested → tested-pass

Evidence: harmless unauthenticated HTTP observation

— probe-observation

redirect_count → 0

Evidence: harmless unauthenticated HTTP observation

— probe-observation

content_type → application/json; charset=utf-8

Evidence: harmless unauthenticated HTTP observation

— probe-observation

last_status → 404

Evidence: harmless unauthenticated HTTP observation

— probe-observation

redirect_count → 0

Evidence: harmless unauthenticated HTTP observation

— probe-observation

tls_state: not-tested → tested-pass

Evidence: harmless unauthenticated HTTP observation