cc0.company/api
https://cc0.company/api/mcp
61
trust
0.55
confidence
medium
risk
trust-2026-08-12.2
observed 2d ago
Why this score
| tls_present_and_valid | +4 |
| mcp_capabilities_discoverable | +4 |
| reachable | +2 |
| hsts_enabled | +1 |
Findings (1)
| info | CORS allows any origin cors.wildcard_origin @ 1.0.0 |
Evidence (8)
| Type | Observed | SHA-256 |
|---|---|---|
| dns_resolution_observation | 2d ago | e96896b3dc79124a… |
| http_response_observation | 2d ago | 9a095a8610e2cc34… |
| availability_observation | 2d ago | 084a3980d6e5ee42… |
| hosting_provider_observation | 2d ago | 07b610f7cd67ffa2… |
| tls_certificate_observation | 2d ago | 86b4f8648be0aa76… |
| oauth_metadata_observation | 2d ago | a6b829ddf323cef4… |
| mcp_protocol_observation | 2d ago | 86f19d6abb2429e9… |
| mcp_capability_observation | 2d ago | eae66e4722fc8804… |
Every record is append-only and content-hashed. Corrections supersede; nothing is overwritten.
Operate this service?
Prove control of cc0.company/api to correct the record and request a rescan after fixing a finding. One DNS record — no account needed.