{
  "format": "delx/intent-card/v1",
  "id": "tool-permission-audit-api",
  "intent": "Tool Permission Audit for an agent workflow",
  "title": "Tool Permission Audit API for agents",
  "description": "Compare requested agent tools with an explicit least-privilege allowlist. Use it as a bounded preflight or analysis step inside an enterprise agent workflow before data, policy, integration, security, or commercial decisions reach production. Returns deterministic machine-readable JSON for $0.003 USDC via x402 on Base. Execution is first-party, local-only, stateless, memory-only, and has no paid upstream or input retention. Results are advisory; the caller remains responsible for authorization and production controls.",
  "keywords": [
    "Tool Permission Audit API",
    "Tool Permission Audit for agents",
    "pay per result API",
    "x402 API",
    "no API key"
  ],
  "updated_at": "2026-08-06",
  "canonical_url": "https://commerce.delx.ai/intents/tool-permission-audit-api",
  "machine_url": "https://commerce.delx.ai/intents/tool-permission-audit-api.json",
  "recommendation": {
    "tool_name": "util_tool_permission_audit",
    "service_name": "Delx Tool Permission Audit",
    "method": "POST",
    "resource": "https://api.delx.ai/api/v1/x402/tool-permission-audit",
    "price_usdc": "0.003",
    "payment_protocols": [
      "x402",
      "mpp"
    ],
    "input_schema": {
      "type": "object",
      "properties": {
        "requested": {
          "description": "Input field: requested.",
          "type": "array"
        },
        "allowed": {
          "description": "Input field: allowed.",
          "type": "array"
        }
      },
      "required": [
        "requested",
        "allowed"
      ],
      "additionalProperties": true
    },
    "example_input": {
      "requested": [
        "read",
        "deploy"
      ],
      "allowed": [
        "read"
      ]
    },
    "example_output": {
      "schema": "delx/util-tool-permission-audit/v1",
      "permitted": false,
      "requested_count": 2,
      "denied": [
        "deploy"
      ],
      "allowed_requested": [
        "read"
      ],
      "least_privilege_advisory": true
    },
    "agentcash": {
      "buy": "npx agentcash@latest fetch https://api.delx.ai/api/v1/x402/tool-permission-audit -m POST -H 'x-delx-source: intent-card-tool-permission-audit-api' --max-amount 0.003 -b '{\"requested\":[\"read\",\"deploy\"],\"allowed\":[\"read\"]}'",
      "max_amount_usdc": "0.003"
    }
  },
  "attribution": {
    "header": "x-delx-source",
    "value": "intent-card-tool-permission-audit-api"
  },
  "evidence": {
    "paid_openapi": "https://api.delx.ai/openapi.x402.json",
    "governed_portfolio": "https://api.delx.ai/x402-portfolio.json",
    "live_contract": "https://api.delx.ai/api/v1/x402/tool-permission-audit"
  }
}
