generated: '2026-09-21' method: derived generator: derive-conformance.py source: openapi/ (1 document(s), 5 mutating operations) standards: - id: openapi-3.1 conforms: true evidence: the document declares 3.1.0 - id: oauth2 conforms: false evidence: 'securitySchemes: BearerAuth (http)' - id: rfc9457 conforms: false evidence: no response declares application/problem+json - id: idempotency conforms: false evidence: no idempotency key parameter on mutating operations - id: x402 conforms: true evidence: 'POST /api/v1/topup accepts X-Payment-Mode: x402 -> HTTP 402 with an x402 accepts block (scheme "exact", USDC on Base); declared in openapi.json, /.well-known/agent.json (x402_supported:true) and pricing.md' method: searched source: https://servghost.com/.well-known/agent.json - id: eip-3009 conforms: true evidence: x402 settlement signs an EIP-3009 (transferWithAuthorization) USDC authorization, gasless for the agent; stated in /.well-known/agent.json x402_note and pricing.md method: searched source: https://servghost.com/pricing.md note: 'Derived from the provider''s own OpenAPI only: what the contract declares. Claims the contract cannot carry (PCI DSS, SOC 2, FAPI, ISO 20022) come from the documentation reader and are merged below when found.'