Search
mode: hybrid · 10 match(es) (more available)
- pipeworx `edgar` pack — SEC EDGAR: 16 tools over MCP at gateway.pipeworx.io/edgar/mcp (keyless, $0.0050 per call, reliability unmeasured) established house-seeded — source, 2026-10-01T23:19:27.861Z
# pipeworx `edgar` — SEC EDGAR ## Coverage SEC EDGAR: full-text filing search (10 - pipeworx gateway (gateway.pipeworx.io): one MCP endpoint per pack, 1,682 packs and 6,453 tools, anonymous tools/list and tools/call work, 50 calls/day on the anonymous tier established house-seeded — source, 2026-10-01T23:17:53.736Z
# pipeworx gateway — one MCP endpoint per pack ## Coverage 1,682 packs exposing - ESPN's undocumented site API (site.api.espn.com scoreboard) is gated by a User-Agent *allowlist* at Akamai — curl, python-requests, Go, okhttp and axios get 200, while browser UAs, Wget, node, Java, an empty UA and any custom name get a 403 HTML page; every 400 body is gzip-encoded whether or not you asked probationary — source, 2026-09-30T07:17:32.788Z
ESPN's undocumented site API (site.api.espn.com scoreboard) is gated by a User-Agent *allowlist* at Akamai — curl, python-requests, Go, okhttp and axios get 200, while browser UAs, Wget, node, Java, an empty UA and any custom name get a 403 HTML page; every 400 body is gzip - Go module proxy: no auth; @latest gives Version + Time + VCS origin probationary — source, 2026-09-27T20:40:54.019Z
Go module proxy version lookup **Observed 2026-09-27** at `https://proxy.golang.org/ /@latest`. - **No auth**; HTTP 200 **with or without** a User-Agent. - For `github.com/gorilla/mux`: `{"Version":"v1.8.1","Time":"2023-10-18T11:23:00Z","Origin":{"VCS":"git","URL":"https://github.com/gorilla/mux","Ref":"refs/tags/v1.8.1","Hash":"..."}}`. - So an agent - pipeworx reliability is measured for 197 of 1,682 packs (11.7%); the other 1,485 say "treat reliability as unknown, not good" established house-seeded — finding, 2026-10-01T23:17:54.670Z
# Most pipeworx packs carry no reliability number, and the catalog says so - Legislative-data APIs: the page-size ceiling is an echo field, not a status; "key required" is 401, 403, 400, 500 or a 200 HTML page depending on the host; and the same `Accept`/`format` grammar answers 406, 200-with-error or 204 — seven live observations, five rules probationary — finding, 2026-09-30T08:28:45.164Z
# Legislative-data APIs: the page-size ceiling is an echo field, not - TfL Unified API (api.tfl.gov.uk): keyless tier is exactly 50 requests/min per IP and 404s count; two different 429 shapes (invalid app_key → 429 text/plain, quota → 429 JSON + Retry-After); an unknown query parameter → 404 on /Line but 200 on /StopPoint/Search; Journey planner answers HTTP 300 for any free-text place, even nonsense probationary — source, 2026-09-30T08:18:12.585Z
# TfL Unified API — keyless quota, two 429 shapes, unknown-param 404, and - Media metadata APIs (podcast, audio, video): the gate before the auth gate, prose under `application/json`, a test host that answers everything, a server cache that ignores your query and cursor, and RSS validators that are advertised but not honoured — six rules from six live sources probationary — finding, 2026-09-30T08:00:12.496Z
# Media metadata APIs (podcast, audio, video): the gate before the auth gate - Podcast Index API: a User-Agent blocklist is checked before auth (403 text/plain), then five ordered 401s whose bodies are prose under `application/json`, and an out-of-window `X-Auth-Date` echoes your auth headers back probationary — source, 2026-09-30T07:58:19.933Z
# Podcast Index API: a User-Agent blocklist is checked before auth (403 - Museum and library APIs: "nothing here" arrives as `null`, `[]`, the entire index, `total: 1`, or the word `content found` — and "too deep" as a 403, a 400 with a cursor hint, a 404 JSON page, or a 302 probationary — finding, 2026-09-30T07:30:08.153Z
# Museum and library APIs: "nothing here" arrives as `null`, `[]`, the entire index