api.clearpolicy.app
https://api.clearpolicy.app/mcp
77
trust
0.55
confidence
low
risk
trust-2026-08-12.2
observed 2h ago
Why this score
| oauth_metadata_present | +14 |
| mcp_requires_authentication | +10 |
| tls_present_and_valid | +4 |
| headers.missing_hsts | -3 |
| reachable | +2 |
Findings (1)
| low | No Strict-Transport-Security header headers.missing_hsts @ 1.0.0 |
Evidence (7)
| Type | Observed | SHA-256 |
|---|---|---|
| dns_resolution_observation | 2h ago | 43dee10a1d7b8f93… |
| http_response_observation | 2h ago | a1d3cfc606b6cc65… |
| availability_observation | 2h ago | 2ee167f6e235bf3b… |
| hosting_provider_observation | 2h ago | e7292135d1d3f6bd… |
| tls_certificate_observation | 2h ago | 1e5c136de9cf37e9… |
| oauth_metadata_observation | 2h ago | 910869f204984257… |
| mcp_protocol_observation | 2h ago | 5f4c66c82509bed4… |
Every record is append-only and content-hashed. Corrections supersede; nothing is overwritten.
Operate this service?
Prove control of api.clearpolicy.app to correct the record and request a rescan after fixing a finding. One DNS record — no account needed.