Skip to main content
POST

Authorizations

Authorization
string
header
required

Bearer authentication header of the form Bearer <token>, where <token> is your auth token.

Body

application/json
cspHeader
string
required

CSP header value

pageOrigin
string

Page origin (optional)

checkType
enum<string>

What do you want to test?

Available options:
url,
inline-script,
inline-style
resourceKind
enum<string>

Resource type

Available options:
script,
style,
image,
font,
connect,
frame,
media,
object,
worker,
manifest,
formAction,
baseUri,
frameAncestors
resourceUrl
string

Resource URL

inlineContent
string

Inline content

Response

Tool output

outputs
object
required
tool
string
required

The tool's slug, echoing the {slug} in the request path.

tool_version
string
required

Output-contract version for this tool.

credits_used
integer
required

Credits this call consumed, after any settlement refund. 0 when metering is disabled.

credits_remaining
integer | null
required

Credits left in the current monthly allowance, or null when metering is disabled.

request_id
string

Correlation id, also sent as x-request-id.