{
"dependencies": {
"fastapi": "0.116.1",
"example": "latest"
}
}
Application security guardrails · application-security
Delx Dependency Version Risk
Identify unbounded dependency declarations before an agent installs them. Use it as a bounded preflight or analysis step inside an enterprise agent workflow before data, policy, integration, security, or commercial decisions reach production. Returns deterministic machine-readable JSON for $0.003 USDC via x402 on Base. Execution is first-party, local-only, stateless, memory-only, and has no paid upstream or input retention. Results are advisory; the caller remains responsible for authorization and production controls.
One-command purchase
Run it from an agent.
No account or API key. AgentCash reads the 402 challenge, pays no more than the declared cap, retries the request and returns the result.
npx agentcash@latest fetch https://api.delx.ai/api/v1/x402/dependency-version-risk -m POST -H 'x-delx-source: product-page' --max-amount 0.003 -b '{"dependencies":{"fastapi":"0.116.1","example":"latest"}}'
{
"schema": "delx/util-dependency-version-risk/v1",
"dependency_count": 2,
"unbounded": [
"example"
],
"unbounded_count": 1,
"risk": "review",
"advisory": "Version ranges do not replace vulnerability scanning or lockfile review."
}
Machine-readable evidence