{
  "openapi": "3.1.0",
  "info": {
    "title": "Bonafido API",
    "version": "1.0.0",
    "summary": "Free business domain verification API and MCP server: verdict, trust score, risk flags and evidence (domain age, MX/SPF/DMARC, parked page, contacts, name match, Wikidata, look-alikes).",
    "description": "Paid API keys from $19/month (Check: 1,500 checks a month); free tier 20 checks a day per IP with no key. Buy: https://bonafido.cybermaxtools.com/buy/check?s=lead · all plans: https://bonafido.cybermaxtools.com/docs#pricing\n\nPricing: free tier 20 checks/day per IP, no key. Paid API keys: Check $19/month = 1,500 checks/month; Team $49/month = 5,000 checks/month; Business $99/month = 12,000 checks/month; Pay as you go $5 = 250 checks (one-time pack); Check yearly $190/year = 1,500 checks/month; Team yearly $490/year = 5,000 checks/month; Business yearly $990/year = 12,000 checks/month. Get a key: https://bonafido.cybermaxtools.com/docs#pricing\n\nGive a domain, URL or email, optionally with the company you expect. Bonafido checks DNS, domain age, mail setup, the live homepage, parked or for-sale pages, contact details, the company-name match, Wikidata and look-alike domains, then gives a verdict, a 0-100 trust score and evidence you can quote.\n\nFree tier: 10 calls per minute per IP address. Up to 5 domains per call. One contact page is read per domain (none when you send more than 3). About 15 seconds per call at most. Free, no key. Information only, not a guarantee or legal advice. No key needed. Remote MCP server: https://bonafido.cybermaxtools.com/mcp",
    "contact": {
      "name": "CyberMax",
      "url": "https://cybermax-tools-cybermax.static.hf.space/"
    },
    "license": {
      "name": "Proprietary (free tier + paid API keys)",
      "identifier": "LicenseRef-CyberMax"
    },
    "x-x402": {
      "protocol": "x402",
      "versions": [
        1,
        2
      ],
      "scheme": "exact",
      "network": [
        "base",
        "eip155:8453"
      ],
      "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
      "currency": "USDC",
      "price": {
        "perCallUsd": 0.025
      },
      "payPerCallEndpoints": [
        "/x402/api/verify"
      ],
      "alsoOn": "the plain endpoints answer 402 with the same terms once the free daily quota is used up (no key sent)",
      "headers": {
        "request": [
          "X-PAYMENT (v1)",
          "PAYMENT-SIGNATURE (v2)"
        ],
        "response": [
          "X-PAYMENT-RESPONSE",
          "PAYMENT-RESPONSE"
        ]
      }
    },
    "x-pricing": {
      "api": "Bonafido API",
      "currency": "USD",
      "free": {
        "price": 0,
        "callsPerDayPerIp": 20,
        "perMinutePerIp": 10,
        "key": "none needed"
      },
      "plans": [
        {
          "id": "check",
          "name": "Check",
          "price": 19,
          "billing": "per month",
          "calls": 1500,
          "per": "calendar month (UTC)",
          "perMinute": 30,
          "buy": "https://bonafido.cybermaxtools.com/buy/check?s=openapi"
        },
        {
          "id": "team",
          "name": "Team",
          "price": 49,
          "billing": "per month",
          "calls": 5000,
          "per": "calendar month (UTC)",
          "perMinute": 60,
          "buy": "https://bonafido.cybermaxtools.com/buy/team?s=openapi"
        },
        {
          "id": "business",
          "name": "Business",
          "price": 99,
          "billing": "per month",
          "calls": 12000,
          "per": "calendar month (UTC)",
          "perMinute": 120,
          "buy": "https://bonafido.cybermaxtools.com/buy/business?s=openapi"
        },
        {
          "id": "payg",
          "name": "Pay as you go",
          "price": 5,
          "billing": "one-time",
          "calls": 250,
          "per": "until used",
          "perMinute": 30,
          "buy": "https://bonafido.cybermaxtools.com/buy/payg?s=openapi"
        },
        {
          "id": "check-yearly",
          "name": "Check yearly",
          "price": 190,
          "billing": "per year",
          "calls": 1500,
          "per": "calendar month (UTC)",
          "perMinute": 30,
          "buy": "https://bonafido.cybermaxtools.com/buy/check-yearly?s=openapi"
        },
        {
          "id": "team-yearly",
          "name": "Team yearly",
          "price": 490,
          "billing": "per year",
          "calls": 5000,
          "per": "calendar month (UTC)",
          "perMinute": 60,
          "buy": "https://bonafido.cybermaxtools.com/buy/team-yearly?s=openapi"
        },
        {
          "id": "business-yearly",
          "name": "Business yearly",
          "price": 990,
          "billing": "per year",
          "calls": 12000,
          "per": "calendar month (UTC)",
          "perMinute": 120,
          "buy": "https://bonafido.cybermaxtools.com/buy/business-yearly?s=openapi"
        }
      ],
      "unit": "checks",
      "howToUse": {
        "header": "x-api-key: YOUR_KEY",
        "alt": [
          "Authorization: Bearer YOUR_KEY",
          "?key=YOUR_KEY"
        ],
        "mcp": "send the key as Authorization: Bearer YOUR_KEY",
        "usage": "https://bonafido.cybermaxtools.com/key"
      },
      "manageKey": "https://bonafido.cybermaxtools.com/manage",
      "allAccess": {
        "name": "CyberMax API All-Access",
        "apis": 10,
        "url": "https://api-all-access.cybermaxtools.com/?s=openapi-bonafido",
        "plans": [
          {
            "id": "all-access",
            "price": 119,
            "billing": "per month",
            "callsHere": 1500,
            "per": "calendar month (UTC)"
          },
          {
            "id": "all-access-pack",
            "price": 32,
            "billing": "one-time",
            "callsHere": 250,
            "per": "until used"
          }
        ],
        "note": "One key for every CyberMax API; Bonafido counts it separately."
      },
      "payments": "Stripe Checkout: card, Apple Pay, Google Pay, Link; sales tax/VAT handled by Stripe. Cancel any time at https://bonafido.cybermaxtools.com/manage."
    }
  },
  "servers": [
    {
      "url": "https://bonafido.cybermaxtools.com"
    },
    {
      "url": "https://bonafido.cybermax-tools.workers.dev"
    }
  ],
  "paths": {
    "/api/verify": {
      "get": {
        "tags": [
          "Bonafido"
        ],
        "summary": "Verify up to 5 business domains (optionally against a company name)",
        "description": "Runs DNS (A/AAAA/NS/MX/TXT/DMARC), RDAP registration date, homepage visit (redirects, parked/for-sale/placeholder pages, bot walls), contact signals, company-name match, Wikidata official-website lookup and look-alike detection, then returns verdict (verified, likely_legit, unverified, suspicious, not_found), trustScore 0-100, riskFlags, riskDetails and evidence.",
        "operationId": "verifyDomainsGet",
        "parameters": [
          {
            "name": "domain",
            "in": "query",
            "required": true,
            "description": "Up to 5 domains, URLs or emails, comma separated",
            "schema": {
              "type": "string"
            },
            "example": "stripe.com"
          },
          {
            "name": "company",
            "in": "query",
            "required": false,
            "description": "Expected company name (used when one domain is given)",
            "schema": {
              "type": "string"
            },
            "example": "Stripe"
          },
          {
            "name": "country",
            "in": "query",
            "required": false,
            "description": "ISO-2 country hint, e.g. us",
            "schema": {
              "type": "string"
            }
          }
        ],
        "responses": {
          "200": {
            "description": "Results (same field names as the bulk version's dataset records) plus the free-tier limits.",
            "content": {
              "application/json": {
                "schema": {
                  "type": "object",
                  "additionalProperties": true
                },
                "example": {
                  "results": [
                    {
                      "input": {
                        "domain": "stripe.com",
                        "companyName": "Stripe"
                      },
                      "domain": "stripe.com",
                      "registrableDomain": "stripe.com",
                      "companyName": "Stripe",
                      "country": null,
                      "verdict": "verified",
                      "trustScore": 81,
                      "summary": "stripe.com: verified (trust 81/100) - official website of Stripe per Wikidata, domain 31 years old, email on Google Workspace, contact page found. No risk flags.",
                      "riskFlags": [],
                      "riskDetails": [],
                      "evidence": [
                        {
                          "source": "dns",
                          "text": "MX: Google Workspace; SPF softfail; DMARC p=reject."
                        },
                        {
                          "source": "rdap",
                          "text": "Registered 1995-09-12 via SafeNames Ltd. (31 years ago)."
                        },
                        {
                          "source": "homepage",
                          "text": "HTTP 200 at https://stripe.com/, title \"Stripe | Financial Infrastructure to Grow Your Revenue\"."
                        },
                        {
                          "source": "website",
                          "text": "Found contact page on 2 page(s)."
                        },
                        {
                          "source": "website",
                          "text": "Links to company profiles on github, x, youtube, linkedin, facebook, crunchbase, instagram."
                        },
                        {
                          "source": "schema.org",
                          "text": "Organization markup names \"Stripe\"."
                        },
                        {
                          "source": "wikidata",
                          "text": "Q7624104 \"Stripe\" (Irish-American payment technology company) lists stripe.com as its official website."
                        },
                        {
                          "source": "name-match",
                          "text": "Company name vs. domain label 1.00, vs. homepage brand text 1.00."
                        }
                      ],
                      "resolves": true,
                      "reachable": true,
                      "httpStatus": 200,
                      "finalUrl": "https://stripe.com/",
                      "redirectsToOtherDomain": false,
                      "redirectTarget": null,
                      "pageType": "normal",
                      "siteName": "Stripe",
                      "domainAgeDays": 11336,
                      "registeredAt": "1995-09-12T04:00:00Z",
                      "registrar": "SafeNames Ltd.",
                      "tlsValid": null,
                      "tlsDaysLeft": null,
                      "tlsIssuer": null,
                      "mx": true,
                      "mxProvider": "Google Workspace",
                      "spf": true,
                      "dmarcPolicy": "reject",
                      "contact": {
                        "contactPage": true,
                        "contactPageUrl": "https://stripe.com/contact/sales",
                        "contactForm": false,
                        "emailFound": false,
                        "emails": [],
                        "phoneFound": false,
                        "phones": [],
                        "addressFound": false,
                        "address": null
                      },
                      "socials": {
                        "github": "https://github.com/stripe",
                        "x": "https://twitter.com/stripe",
                        "youtube": "https://youtube.com/@stripe",
                        "linkedin": "https://www.linkedin.com/company/stripe",
                        "facebook": "https://www.facebook.com/StripeHQ",
                        "crunchbase": "https://www.crunchbase.com/organization/stripe",
                        "instagram": "https://www.instagram.com/stripehq"
                      },
                      "nameMatch": {
                        "checked": true,
                        "score": 1,
                        "level": "strong",
                        "officialDomains": [
                          "stripe.com"
                        ],
                        "matchesOfficial": true,
                        "wikidata": {
                          "id": "Q7624104",
                          "label": "Stripe",
                          "description": "Irish-American payment technology company",
                          "url": "https://www.wikidata.org/wiki/Q7624104"
                        }
                      },
                      "lookalike": {
                        "suspected": false,
                        "of": null,
                        "reason": null
                      },
                      "errors": [],
                      "checkedAt": "2026-09-25T23:03:27.862Z",
                      "ms": 588
                    }
                  ],
                  "count": 1,
                  "verdicts": {
                    "verified": 1
                  }
                }
              }
            }
          },
          "400": {
            "description": "Invalid input",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "401": {
            "description": "Invalid or revoked API key",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "429": {
            "description": "Free tier used up (20/day per IP) or rate/plan limit reached; the body has an upgrade link.",
            "headers": {
              "Retry-After": {
                "schema": {
                  "type": "integer"
                }
              }
            },
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "504": {
            "description": "Took too long; ask for fewer items",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          }
        }
      },
      "post": {
        "tags": [
          "Bonafido"
        ],
        "summary": "Verify up to 5 business domains (optionally against a company name)",
        "description": "Runs DNS (A/AAAA/NS/MX/TXT/DMARC), RDAP registration date, homepage visit (redirects, parked/for-sale/placeholder pages, bot walls), contact signals, company-name match, Wikidata official-website lookup and look-alike detection, then returns verdict (verified, likely_legit, unverified, suspicious, not_found), trustScore 0-100, riskFlags, riskDetails and evidence.",
        "operationId": "verifyDomainsPost",
        "requestBody": {
          "required": true,
          "content": {
            "application/json": {
              "schema": {
                "type": "object",
                "properties": {
                  "items": {
                    "type": "array",
                    "minItems": 1,
                    "maxItems": 5,
                    "items": {
                      "anyOf": [
                        {
                          "type": "string"
                        },
                        {
                          "type": "object",
                          "properties": {
                            "domain": {
                              "type": "string"
                            },
                            "companyName": {
                              "type": "string"
                            },
                            "country": {
                              "type": "string",
                              "description": "ISO-2"
                            }
                          },
                          "required": [
                            "domain"
                          ]
                        }
                      ]
                    },
                    "description": "Domains, URLs or emails, or objects {domain, companyName, country}. Up to 5."
                  },
                  "country": {
                    "type": "string"
                  }
                },
                "required": [
                  "items"
                ]
              },
              "example": {
                "items": [
                  {
                    "domain": "stripe.com",
                    "companyName": "Stripe"
                  },
                  "paypa1-secure-login.com"
                ]
              }
            }
          }
        },
        "responses": {
          "200": {
            "description": "Results (same field names as the bulk version's dataset records) plus the free-tier limits.",
            "content": {
              "application/json": {
                "schema": {
                  "type": "object",
                  "additionalProperties": true
                },
                "example": {
                  "results": [
                    {
                      "input": {
                        "domain": "stripe.com",
                        "companyName": "Stripe"
                      },
                      "domain": "stripe.com",
                      "registrableDomain": "stripe.com",
                      "companyName": "Stripe",
                      "country": null,
                      "verdict": "verified",
                      "trustScore": 81,
                      "summary": "stripe.com: verified (trust 81/100) - official website of Stripe per Wikidata, domain 31 years old, email on Google Workspace, contact page found. No risk flags.",
                      "riskFlags": [],
                      "riskDetails": [],
                      "evidence": [
                        {
                          "source": "dns",
                          "text": "MX: Google Workspace; SPF softfail; DMARC p=reject."
                        },
                        {
                          "source": "rdap",
                          "text": "Registered 1995-09-12 via SafeNames Ltd. (31 years ago)."
                        },
                        {
                          "source": "homepage",
                          "text": "HTTP 200 at https://stripe.com/, title \"Stripe | Financial Infrastructure to Grow Your Revenue\"."
                        },
                        {
                          "source": "website",
                          "text": "Found contact page on 2 page(s)."
                        },
                        {
                          "source": "website",
                          "text": "Links to company profiles on github, x, youtube, linkedin, facebook, crunchbase, instagram."
                        },
                        {
                          "source": "schema.org",
                          "text": "Organization markup names \"Stripe\"."
                        },
                        {
                          "source": "wikidata",
                          "text": "Q7624104 \"Stripe\" (Irish-American payment technology company) lists stripe.com as its official website."
                        },
                        {
                          "source": "name-match",
                          "text": "Company name vs. domain label 1.00, vs. homepage brand text 1.00."
                        }
                      ],
                      "resolves": true,
                      "reachable": true,
                      "httpStatus": 200,
                      "finalUrl": "https://stripe.com/",
                      "redirectsToOtherDomain": false,
                      "redirectTarget": null,
                      "pageType": "normal",
                      "siteName": "Stripe",
                      "domainAgeDays": 11336,
                      "registeredAt": "1995-09-12T04:00:00Z",
                      "registrar": "SafeNames Ltd.",
                      "tlsValid": null,
                      "tlsDaysLeft": null,
                      "tlsIssuer": null,
                      "mx": true,
                      "mxProvider": "Google Workspace",
                      "spf": true,
                      "dmarcPolicy": "reject",
                      "contact": {
                        "contactPage": true,
                        "contactPageUrl": "https://stripe.com/contact/sales",
                        "contactForm": false,
                        "emailFound": false,
                        "emails": [],
                        "phoneFound": false,
                        "phones": [],
                        "addressFound": false,
                        "address": null
                      },
                      "socials": {
                        "github": "https://github.com/stripe",
                        "x": "https://twitter.com/stripe",
                        "youtube": "https://youtube.com/@stripe",
                        "linkedin": "https://www.linkedin.com/company/stripe",
                        "facebook": "https://www.facebook.com/StripeHQ",
                        "crunchbase": "https://www.crunchbase.com/organization/stripe",
                        "instagram": "https://www.instagram.com/stripehq"
                      },
                      "nameMatch": {
                        "checked": true,
                        "score": 1,
                        "level": "strong",
                        "officialDomains": [
                          "stripe.com"
                        ],
                        "matchesOfficial": true,
                        "wikidata": {
                          "id": "Q7624104",
                          "label": "Stripe",
                          "description": "Irish-American payment technology company",
                          "url": "https://www.wikidata.org/wiki/Q7624104"
                        }
                      },
                      "lookalike": {
                        "suspected": false,
                        "of": null,
                        "reason": null
                      },
                      "errors": [],
                      "checkedAt": "2026-09-25T23:03:27.862Z",
                      "ms": 588
                    }
                  ],
                  "count": 1,
                  "verdicts": {
                    "verified": 1
                  }
                }
              }
            }
          },
          "400": {
            "description": "Invalid input",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "401": {
            "description": "Invalid or revoked API key",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "429": {
            "description": "Free tier used up (20/day per IP) or rate/plan limit reached; the body has an upgrade link.",
            "headers": {
              "Retry-After": {
                "schema": {
                  "type": "integer"
                }
              }
            },
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "504": {
            "description": "Took too long; ask for fewer items",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          }
        }
      }
    },
    "/x402/api/verify": {
      "get": {
        "tags": [
          "Bonafido"
        ],
        "summary": "Verify up to 5 business domains (optionally against a company name) (pay per call in USDC via x402, no key)",
        "description": "Runs DNS (A/AAAA/NS/MX/TXT/DMARC), RDAP registration date, homepage visit (redirects, parked/for-sale/placeholder pages, bot walls), contact signals, company-name match, Wikidata official-website lookup and look-alike detection, then returns verdict (verified, likely_legit, unverified, suspicious, not_found), trustScore 0-100, riskFlags, riskDetails and evidence.\n\nPay per call with x402: $0.025 per call in USDC on Base. No key, no account: an unpaid call returns 402 with the payment requirements; retry with the X-PAYMENT (x402 v1) or PAYMENT-SIGNATURE (v2) header.",
        "operationId": "verifyDomainsGetPayPerCall",
        "parameters": [
          {
            "name": "domain",
            "in": "query",
            "required": true,
            "description": "Up to 5 domains, URLs or emails, comma separated",
            "schema": {
              "type": "string"
            },
            "example": "stripe.com"
          },
          {
            "name": "company",
            "in": "query",
            "required": false,
            "description": "Expected company name (used when one domain is given)",
            "schema": {
              "type": "string"
            },
            "example": "Stripe"
          },
          {
            "name": "country",
            "in": "query",
            "required": false,
            "description": "ISO-2 country hint, e.g. us",
            "schema": {
              "type": "string"
            }
          }
        ],
        "responses": {
          "200": {
            "description": "Results (same field names as the bulk version's dataset records) plus the free-tier limits.",
            "content": {
              "application/json": {
                "schema": {
                  "type": "object",
                  "additionalProperties": true
                },
                "example": {
                  "results": [
                    {
                      "input": {
                        "domain": "stripe.com",
                        "companyName": "Stripe"
                      },
                      "domain": "stripe.com",
                      "registrableDomain": "stripe.com",
                      "companyName": "Stripe",
                      "country": null,
                      "verdict": "verified",
                      "trustScore": 81,
                      "summary": "stripe.com: verified (trust 81/100) - official website of Stripe per Wikidata, domain 31 years old, email on Google Workspace, contact page found. No risk flags.",
                      "riskFlags": [],
                      "riskDetails": [],
                      "evidence": [
                        {
                          "source": "dns",
                          "text": "MX: Google Workspace; SPF softfail; DMARC p=reject."
                        },
                        {
                          "source": "rdap",
                          "text": "Registered 1995-09-12 via SafeNames Ltd. (31 years ago)."
                        },
                        {
                          "source": "homepage",
                          "text": "HTTP 200 at https://stripe.com/, title \"Stripe | Financial Infrastructure to Grow Your Revenue\"."
                        },
                        {
                          "source": "website",
                          "text": "Found contact page on 2 page(s)."
                        },
                        {
                          "source": "website",
                          "text": "Links to company profiles on github, x, youtube, linkedin, facebook, crunchbase, instagram."
                        },
                        {
                          "source": "schema.org",
                          "text": "Organization markup names \"Stripe\"."
                        },
                        {
                          "source": "wikidata",
                          "text": "Q7624104 \"Stripe\" (Irish-American payment technology company) lists stripe.com as its official website."
                        },
                        {
                          "source": "name-match",
                          "text": "Company name vs. domain label 1.00, vs. homepage brand text 1.00."
                        }
                      ],
                      "resolves": true,
                      "reachable": true,
                      "httpStatus": 200,
                      "finalUrl": "https://stripe.com/",
                      "redirectsToOtherDomain": false,
                      "redirectTarget": null,
                      "pageType": "normal",
                      "siteName": "Stripe",
                      "domainAgeDays": 11336,
                      "registeredAt": "1995-09-12T04:00:00Z",
                      "registrar": "SafeNames Ltd.",
                      "tlsValid": null,
                      "tlsDaysLeft": null,
                      "tlsIssuer": null,
                      "mx": true,
                      "mxProvider": "Google Workspace",
                      "spf": true,
                      "dmarcPolicy": "reject",
                      "contact": {
                        "contactPage": true,
                        "contactPageUrl": "https://stripe.com/contact/sales",
                        "contactForm": false,
                        "emailFound": false,
                        "emails": [],
                        "phoneFound": false,
                        "phones": [],
                        "addressFound": false,
                        "address": null
                      },
                      "socials": {
                        "github": "https://github.com/stripe",
                        "x": "https://twitter.com/stripe",
                        "youtube": "https://youtube.com/@stripe",
                        "linkedin": "https://www.linkedin.com/company/stripe",
                        "facebook": "https://www.facebook.com/StripeHQ",
                        "crunchbase": "https://www.crunchbase.com/organization/stripe",
                        "instagram": "https://www.instagram.com/stripehq"
                      },
                      "nameMatch": {
                        "checked": true,
                        "score": 1,
                        "level": "strong",
                        "officialDomains": [
                          "stripe.com"
                        ],
                        "matchesOfficial": true,
                        "wikidata": {
                          "id": "Q7624104",
                          "label": "Stripe",
                          "description": "Irish-American payment technology company",
                          "url": "https://www.wikidata.org/wiki/Q7624104"
                        }
                      },
                      "lookalike": {
                        "suspected": false,
                        "of": null,
                        "reason": null
                      },
                      "errors": [],
                      "checkedAt": "2026-09-25T23:03:27.862Z",
                      "ms": 588
                    }
                  ],
                  "count": 1,
                  "verdicts": {
                    "verified": 1
                  }
                }
              }
            }
          },
          "400": {
            "description": "Invalid input",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "401": {
            "description": "Invalid or revoked API key",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "402": {
            "description": "Payment Required: x402 payment requirements (body: x402Version 1 accepts[]; header PAYMENT-REQUIRED: x402 v2)."
          },
          "504": {
            "description": "Took too long; ask for fewer items",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          }
        },
        "security": [],
        "x-payment-info": {
          "price": {
            "mode": "fixed",
            "currency": "USD",
            "amount": "0.025"
          },
          "protocols": [
            {
              "x402": {
                "version": [
                  1,
                  2
                ],
                "network": [
                  "base",
                  "eip155:8453"
                ],
                "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
                "scheme": "exact"
              }
            }
          ]
        }
      },
      "post": {
        "tags": [
          "Bonafido"
        ],
        "summary": "Verify up to 5 business domains (optionally against a company name) (pay per call in USDC via x402, no key)",
        "description": "Runs DNS (A/AAAA/NS/MX/TXT/DMARC), RDAP registration date, homepage visit (redirects, parked/for-sale/placeholder pages, bot walls), contact signals, company-name match, Wikidata official-website lookup and look-alike detection, then returns verdict (verified, likely_legit, unverified, suspicious, not_found), trustScore 0-100, riskFlags, riskDetails and evidence.\n\nPay per call with x402: $0.025 per call in USDC on Base. No key, no account: an unpaid call returns 402 with the payment requirements; retry with the X-PAYMENT (x402 v1) or PAYMENT-SIGNATURE (v2) header.",
        "operationId": "verifyDomainsPostPayPerCall",
        "requestBody": {
          "required": true,
          "content": {
            "application/json": {
              "schema": {
                "type": "object",
                "properties": {
                  "items": {
                    "type": "array",
                    "minItems": 1,
                    "maxItems": 5,
                    "items": {
                      "anyOf": [
                        {
                          "type": "string"
                        },
                        {
                          "type": "object",
                          "properties": {
                            "domain": {
                              "type": "string"
                            },
                            "companyName": {
                              "type": "string"
                            },
                            "country": {
                              "type": "string",
                              "description": "ISO-2"
                            }
                          },
                          "required": [
                            "domain"
                          ]
                        }
                      ]
                    },
                    "description": "Domains, URLs or emails, or objects {domain, companyName, country}. Up to 5."
                  },
                  "country": {
                    "type": "string"
                  }
                },
                "required": [
                  "items"
                ]
              },
              "example": {
                "items": [
                  {
                    "domain": "stripe.com",
                    "companyName": "Stripe"
                  },
                  "paypa1-secure-login.com"
                ]
              }
            }
          }
        },
        "responses": {
          "200": {
            "description": "Results (same field names as the bulk version's dataset records) plus the free-tier limits.",
            "content": {
              "application/json": {
                "schema": {
                  "type": "object",
                  "additionalProperties": true
                },
                "example": {
                  "results": [
                    {
                      "input": {
                        "domain": "stripe.com",
                        "companyName": "Stripe"
                      },
                      "domain": "stripe.com",
                      "registrableDomain": "stripe.com",
                      "companyName": "Stripe",
                      "country": null,
                      "verdict": "verified",
                      "trustScore": 81,
                      "summary": "stripe.com: verified (trust 81/100) - official website of Stripe per Wikidata, domain 31 years old, email on Google Workspace, contact page found. No risk flags.",
                      "riskFlags": [],
                      "riskDetails": [],
                      "evidence": [
                        {
                          "source": "dns",
                          "text": "MX: Google Workspace; SPF softfail; DMARC p=reject."
                        },
                        {
                          "source": "rdap",
                          "text": "Registered 1995-09-12 via SafeNames Ltd. (31 years ago)."
                        },
                        {
                          "source": "homepage",
                          "text": "HTTP 200 at https://stripe.com/, title \"Stripe | Financial Infrastructure to Grow Your Revenue\"."
                        },
                        {
                          "source": "website",
                          "text": "Found contact page on 2 page(s)."
                        },
                        {
                          "source": "website",
                          "text": "Links to company profiles on github, x, youtube, linkedin, facebook, crunchbase, instagram."
                        },
                        {
                          "source": "schema.org",
                          "text": "Organization markup names \"Stripe\"."
                        },
                        {
                          "source": "wikidata",
                          "text": "Q7624104 \"Stripe\" (Irish-American payment technology company) lists stripe.com as its official website."
                        },
                        {
                          "source": "name-match",
                          "text": "Company name vs. domain label 1.00, vs. homepage brand text 1.00."
                        }
                      ],
                      "resolves": true,
                      "reachable": true,
                      "httpStatus": 200,
                      "finalUrl": "https://stripe.com/",
                      "redirectsToOtherDomain": false,
                      "redirectTarget": null,
                      "pageType": "normal",
                      "siteName": "Stripe",
                      "domainAgeDays": 11336,
                      "registeredAt": "1995-09-12T04:00:00Z",
                      "registrar": "SafeNames Ltd.",
                      "tlsValid": null,
                      "tlsDaysLeft": null,
                      "tlsIssuer": null,
                      "mx": true,
                      "mxProvider": "Google Workspace",
                      "spf": true,
                      "dmarcPolicy": "reject",
                      "contact": {
                        "contactPage": true,
                        "contactPageUrl": "https://stripe.com/contact/sales",
                        "contactForm": false,
                        "emailFound": false,
                        "emails": [],
                        "phoneFound": false,
                        "phones": [],
                        "addressFound": false,
                        "address": null
                      },
                      "socials": {
                        "github": "https://github.com/stripe",
                        "x": "https://twitter.com/stripe",
                        "youtube": "https://youtube.com/@stripe",
                        "linkedin": "https://www.linkedin.com/company/stripe",
                        "facebook": "https://www.facebook.com/StripeHQ",
                        "crunchbase": "https://www.crunchbase.com/organization/stripe",
                        "instagram": "https://www.instagram.com/stripehq"
                      },
                      "nameMatch": {
                        "checked": true,
                        "score": 1,
                        "level": "strong",
                        "officialDomains": [
                          "stripe.com"
                        ],
                        "matchesOfficial": true,
                        "wikidata": {
                          "id": "Q7624104",
                          "label": "Stripe",
                          "description": "Irish-American payment technology company",
                          "url": "https://www.wikidata.org/wiki/Q7624104"
                        }
                      },
                      "lookalike": {
                        "suspected": false,
                        "of": null,
                        "reason": null
                      },
                      "errors": [],
                      "checkedAt": "2026-09-25T23:03:27.862Z",
                      "ms": 588
                    }
                  ],
                  "count": 1,
                  "verdicts": {
                    "verified": 1
                  }
                }
              }
            }
          },
          "400": {
            "description": "Invalid input",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "401": {
            "description": "Invalid or revoked API key",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          },
          "402": {
            "description": "Payment Required: x402 payment requirements (body: x402Version 1 accepts[]; header PAYMENT-REQUIRED: x402 v2)."
          },
          "504": {
            "description": "Took too long; ask for fewer items",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/Error"
                }
              }
            }
          }
        },
        "security": [],
        "x-payment-info": {
          "price": {
            "mode": "fixed",
            "currency": "USD",
            "amount": "0.025"
          },
          "protocols": [
            {
              "x402": {
                "version": [
                  1,
                  2
                ],
                "network": [
                  "base",
                  "eip155:8453"
                ],
                "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
                "scheme": "exact"
              }
            }
          ]
        }
      }
    }
  },
  "components": {
    "schemas": {
      "Error": {
        "type": "object",
        "properties": {
          "error": {
            "type": "string"
          },
          "message": {
            "type": "string"
          },
          "retryAfterSeconds": {
            "type": "integer"
          },
          "limits": {
            "type": "object"
          }
        },
        "required": [
          "error",
          "message"
        ]
      }
    },
    "securitySchemes": {
      "ApiKeyHeader": {
        "type": "apiKey",
        "in": "header",
        "name": "x-api-key",
        "description": "Optional. Paid plan key from https://bonafido.cybermaxtools.com/docs#pricing; leave out for the free tier."
      },
      "BearerKey": {
        "type": "http",
        "scheme": "bearer",
        "description": "Same key as a Bearer token."
      }
    }
  },
  "x-mcp-server": "https://bonafido.cybermaxtools.com/mcp",
  "externalDocs": {
    "description": "Get an API key (pricing)",
    "url": "https://bonafido.cybermaxtools.com/docs#pricing"
  },
  "security": [
    {},
    {
      "ApiKeyHeader": []
    },
    {
      "BearerKey": []
    }
  ]
}