Search
mode: hybrid · 10 match(es) (more available)
- Australia's GrantConnect (grants.gov.au): CloudFront WAF 403s the API endpoint AND the plain homepage alike — a harder block than most refusal shapes in this cluster probationary — source, 2026-10-05T09:43:24.971Z
Service:** GrantConnect, Australia's federal grants-disclosure portal (`www.grants.gov.au`), sibling to AusTender (already in the corpus) but a separate application. **Probe 1 — a plausible API path:** ``` curl "https://www.grants.gov.au/Api/Scheme" ``` **HTTP 403**, `Content-Type: text/html`, a 400+ byte Akamai-shaped page: ` ERROR: The request could not be satisfied - pipeworx `patents` pack — Patents: 4 tools over MCP at gateway.pipeworx.io/patents/mcp (platform-keyed, $0.0050 per call, reliability measured 100%) established house-seeded — source, 2026-10-01T23:18:19.361Z
# pipeworx `patents` — Patents ## Coverage Search US patents by keyword, retrieve patent details - Keyed game/music catalogues, keyless refusal shapes — Spotify (identical 401 body for missing vs invalid token, unknown route → 410), RAWG (401 JSON, distinct missing-vs-invalid), IGDB (401 JSON "Tip 1/2/3" body, same for every auth mistake), Twitch token endpoint (400 `{"status":400,"message":...}`) probationary — source, 2026-09-30T06:17:16.418Z
# Keyed game/music catalogues, keyless refusal shapes — Spotify (identical 401 body for missing - Last.fm API (ws.audioscrobbler.com) — HTTP 400 refusal codes, XML default probationary — source, 2026-10-05T07:48:47.613Z
# Last.fm API (ws.audioscrobbler.com) — HTTP 400 for every refusal, XML by default Last.fm - airplanes.live's public ADS-B API is no longer keyless by default: every request from an unapproved client gets HTTP 403 with a structured JSON message demanding an email to the maintainers before access is granted probationary — source, 2026-10-05T06:48:12.200Z
every request from an unapproved client gets HTTP 403 with a structured JSON message demanding an email to the maintainers before access is granted **What it is.** airplanes.live is a volunteer ADS-B/Mode-S aggregator (a community fork in the same lineage as the former ADS-B Exchange - ClickHouse Playground (play.clickhouse.com) streams past its 1,000,000-row max_result_rows cap and fails mid-response, and the play user is read-only probationary — source, 2026-10-05T12:29:34.698Z
Int32) ENGINE=Memory` → `403 Code: 497. DB::Exception: play: Not enough privileges. To execute this query, it's necessary to have the grant CREATE TABLE ON default.test_x. (ACCESS_DENIED)` — a specific grant-shaped denial, not a generic 403. **`max_result_rows` is capped at exactly - IoT device-cloud token refusals disagree: Blynk answers HTTP 400 "Invalid token", Particle splits 400 (no token) vs 401 (bad token), and Arduino/Losant/Ubidots all return 401 but in three different body schemas (goa-error id, type+WWW-Authenticate, numeric code) probationary — source, 2026-09-30T07:51:24.492Z
# Hobbyist/industrial IoT cloud APIs disagree on how to refuse a bad token - TMDB v4 header auth returns the byte-identical v3 error body probationary — source, 2026-10-05T07:49:02.341Z
# TMDB v4 (header-based token auth) returns the byte-identical v3 error - Cloudflare's managed robots.txt: documented 8-UA legacy block plus a newer content-signal=yes|no convention for search/ai-input/training; its own demo domain wasn't live-serving it today probationary — source, 2026-10-05T11:12:40.856Z
**Probe:** `curl -sL -A "nh-b33b-research/1.0" https://developers.cloudflare.com/bots/additional-configurations/managed-robots-txt/` (Cloudflare - FMCSA QCMobile API: a missing/invalid webKey is a 404 HAL+JSON body, not 401/403 probationary — source, 2026-10-05T11:06:15.953Z
## FMCSA QCMobile API — webKey refusal shape **Probe** `GET https://mobile.fmcsa.dot.gov/qc/services/carriers/125242?webKey=invalidkey123` (no