-
Notifications
You must be signed in to change notification settings - Fork 4
Skill Packs
100 curated multi-tool workflows. Each pack solves a real job that no single tool covers — auditing a domain, working up a time series, decoding an opaque blob, pulling the macro backdrop — and ships as a single MCP prompt. An agent calls prompts/get { name: "<pack>", arguments: { … } } and gets back a ready-to-run plan with the right Agent402 tools wired in (in the right order, with the right inputs).
-
Browse on the live site:
agent402.tools/skills(full templates, arguments, examples) -
MCP discovery: every MCP-aware client picks them up via
prompts/list→prompts/get -
Find-by-task:
/api/find?q=<task>also recommends a matching pack alongside individual tools, so a task-shaped query points at the workflow, not just the raw tools.
The template is the plan — the agent then executes each step. Payment (USDC via x402 or free proof-of-work) only happens when the agent actually calls each tool.
| Pack | What it solves |
|---|---|
| security-audit | Enumerate a domain's external attack surface: certs, DNS posture, email auth, HTTP headers, tech stack. |
| email-deliverability | Diagnose why a domain's email lands in spam: SPF, DMARC, DKIM strength, MX, composite score. |
| fraud-signals | Is this domain a phishing site / typosquat / scam? Pull the reputation signals before you click. |
| jwt-forensics | "Is this JWT valid?" Decode, render the time claims, compute expiry, then HMAC-verify against the secret. |
| domain-intel | Full domain security + SEO intel: WHOIS, DNS, TLS, headers, tech stack, robots, certificate transparency. |
| ssl-audit | TLS/SSL posture: live certificate inspection, HTTP security headers, and CAA DNS records. |
| email-security | Full email auth posture: SPF, DMARC, DKIM, and a composite deliverability score. |
| brand-protection | Is this domain legitimate? WHOIS age, DNS, scam/phishing search, and HTTP headers for a trust read. |
| domain-age | How old and legit is this domain? WHOIS registration, DNS resolution, and TLS certificate in one pass. |
| password-audit | Score a password's strength (entropy, crack time, weaknesses) and generate a strong replacement. |
| Pack | What it solves |
|---|---|
| content-extraction | Turn arbitrary URLs and PDFs into clean structured text — articles, page metadata, PDF pages, OCR. |
| structured-scrape | Pull structured data out of any page deterministically — articles, tables, elements by CSS selector. |
| any-to-markdown | "I have a URL but it might be HTML, PDF, or an image — give me clean markdown either way." |
| document-intel | Turn any PDF or image URL into structured data — metadata, text, page ranges, OCR, barcodes. |
| link-preview | Turn a URL into a card-shaped preview — OpenGraph/Twitter metadata + normalized social image + thumbnail. |
| pdf-pipeline | Full PDF pipeline — metadata, markdown conversion, and first-page extraction in one call. |
| url-inspector | Quick URL health + metadata — parse the structure, verify reachability, and pull page metadata. |
| content-grade | Grade a page's content quality — extract the readable content then analyze keyword density. |
| Pack | What it solves |
|---|---|
| seo-audit | Can search engines and AI crawlers index this page? Reachability, TLS, robots, sitemap, meta/OG, link graph. |
| page-audit | Full page SEO + security audit: content, metadata, HTTP headers, robots policy, and sitemap health. |
| competitor-scan | What's a competitor running? Tech stack, HTTP headers, WHOIS, and page metadata in one call. |
| status-snapshot | "Is this site healthy, addressable, and crawlable — right now?" DNS → HTTP → headers → TLS → robots. |
| content-quality | Readability scores, keyword density, and a URL-ready slug from a block of text. |
| Pack | What it solves |
|---|---|
| financial-research | SEC filings + real-time quotes + history + macro context for a single ticker. |
| financial-analysis | Quick company snapshot: live quote, 9 key financial metrics, and upcoming earnings. |
| loan-comparison | Compare two or more loan offers on one rubric — monthly payment, total interest, NPV, effective rate. |
| investment-decision | Run a capital-allocation decision — NPV at your hurdle rate, IRR, opportunity cost, levered cashflow. |
| retirement-planning | Will my plan work? Project accumulation with compound interest, then model the drawdown phase. |
| savings-goal | How much to save each month to hit $X in N years? Pin down the required contribution. |
| company-dossier | Comprehensive company research in one call: quote, financials, filings, insider trades, news. |
| earnings-watch | Is this company reporting soon and what's the consensus? Earnings calendar, quote, recent results. |
| insider-alert | Insider buying/selling for a stock: Form 4 trades, live quote, and recent SEC filings. |
| price-monitor | Side-by-side snapshot of a stock and a crypto asset: live quotes, 1-year history, date-stamped compare. |
| finance-calc | Compound interest, amortization schedule, and loan payment — the three calculators agents need most. |
| Pack | What it solves |
|---|---|
| macro-economics | Pull the canonical US macro dataset — yield curve, CPI, unemployment, fed funds, Sahm rule. |
| macro-context | "Is the economic backdrop you're modeling against still current?" — refresh the macro snapshot. |
| sec-filings-deep-dive | Full EDGAR picture of one company: filings, key financial time series, insider trades, full-text search. |
| regulatory-watch | "Who just filed / bought / IPO'd?" — EDGAR full-text search, recent filings, Form 4s, 13F, IPO calendar. |
| ipo-watch | What's going public? Recent S-1/IPO filings from EDGAR plus a web search for IPO news. |
| yield-dashboard | Current yield-curve snapshot: full Treasury curve, key spreads, and average rates. |
| inflation-check | Is the economy in recession territory? CPI, fed funds, unemployment, and Sahm rule. |
| fx-monitor | Major currency snapshot: EUR/USD, GBP/USD, JPY/USD plus the full FX dashboard. |
| fred-snapshot | Key Fed indicators — fed funds rate, unemployment, and CPI — in one call. |
| world-data | GDP and population for a country — two key World Bank indicators. |
| Pack | What it solves |
|---|---|
| trend-analysis | Take any numeric series and run the full workup — descriptives, moving averages, trend, outliers, forecast. |
| forecasting-bake-off | Backtest all four methods (naive/drift, SES, Holt, Holt-Winters), rank by RMSE, forecast with the winner. |
| number-crunch | Descriptive statistics, correlation analysis, and outlier detection on a single dataset. |
| math-suite | Calculate an expression, summarize a dataset, and compute percentages — bundled. |
| Pack | What it solves |
|---|---|
| market-brief | Quick crypto snapshot: price for a coin, trending coins, and global market stats in one call. |
| crypto-research | Live price, market structure, OHLC history, trending status, global context, and news for a coin. |
| crypto-dossier | Everything about a coin: live price, 90-day history, trending status, market context, news + top article. |
| defi-dashboard | DeFi overview: total TVL, ETH price, Base gas, and global crypto stats. |
| nft-portfolio | NFT + wallet snapshot: NFT holdings, native balance, and ETH price for an address. |
| wallet-audit | Full wallet review: balance, recent transactions, and token metadata for an address. |
| wallet-readiness | "Can this wallet pay right now?" USDC on Base + Solana, live Base gas, and an Onramp funding link. |
| onchain-analyst | Ask Base anything in SQL — your query runs against Coinbase's indexed, decoded chain data. |
| gas-optimizer | Find the cheapest gas: Base gas, Ethereum gas, Base fee estimate, and ETH price for USD conversion. |
| cheapest-rail | Where should an agent transact this minute? Live gas across L2s, a fee estimate, and ETH spot. |
| Pack | What it solves |
|---|---|
| dns-network-ops | End-to-end DNS health check: records, multi-resolver propagation, WHOIS, ASN, robots.txt, reachability. |
| api-investigation | Point at an unknown API and figure out how to use it: auth, content type, version, rate limits, schema. |
| schema-evolution | "Did this API contract change in a way that breaks us?" — diff two OpenAPI snapshots, lint, validate. |
| api-health | Is this API endpoint healthy? Liveness check, response headers, and TLS certificate status. |
| openapi-audit | Lint an OpenAPI spec and validate a sample payload against it — catch schema errors in one pass. |
| Pack | What it solves |
|---|---|
| csv-profile | Hand it a CSV and get a column-by-column profile: stats, outliers, correlations, baseline regression. |
| data-interchange | Bring data in from any format, normalize through JSON, merge, diff, and fan out to CSV/YAML/JSON. |
| text-hygiene | Turn dirty text into something downstream code can trust — measure, redact PII, dedupe, sort, extract. |
| rag-prep | Turn a raw document into a vector-DB-ready JSONL dataset — chunk, token-count, attach metadata, validate. |
| json-pipeline | Validate, pretty-print, and convert JSON to CSV — the complete JSON processing workflow. |
| data-convert | CSV → JSON → YAML — convert tabular data through the common interchange formats in one chain. |
| xml-json | Convert XML to JSON and pretty-print it — the "legacy API response to modern format" workflow. |
| Pack | What it solves |
|---|---|
| decode-blob | Hand the agent an opaque string — JWT, base64 JSON, gzipped response — and identify + unwrap it layer by layer. |
| webhook-debug | A webhook hit your endpoint — confirm it's authentic, valid, and safe to log. |
| jwt-toolkit | Decode and verify a JWT in one pass — see the payload and check the signature. |
| checksum-suite | All checksums at once — SHA-256, CRC32, and Adler-32 for one input. |
| hash-verify | All major hash algorithms at once — SHA-256, SHA-512, and MD5 for any input. |
| encoding-suite | Encode text in all common formats at once — Base64, hex, and URL encoding. |
| Pack | What it solves |
|---|---|
| user-onboarding | Take a signup form and run onboarding deterministically — validate, score, mint ID, slug, hash, verify 2FA. |
| identity-mint | Server-side identity issuance — UUIDv4 + deterministic UUIDv5 + slug + recovery password + session JWT. |
| contact-verify | Verify an email is deliverable — syntax validation plus MX record check on the domain. |
| uuid-suite | Generate all common ID formats — UUIDv4 (random), ULID (time-sortable), UUIDv5 (namespace-based). |
| Pack | What it solves |
|---|---|
| location-intel | Point at an address and assemble the brief — coords, address, nearby, weather, NWS alerts, seismic. |
| meeting-scheduler | Schedule across timezones without round-tripping — convert, verify working days, present the slot. |
| trip-planner | Plan a multi-stop journey — geocode each stop, sum pairwise distances, add travel time, pull weather. |
| weather-brief | Full weather briefing for a location: current conditions, 7-day forecast, and air quality. |
| timezone-planner | Timezone conversion, business-day calculation, and cron schedule preview — scheduling in one pass. |
| date-math | Date calculations in one pass — difference between dates, add time, and age from a birthdate. |
| Pack | What it solves |
|---|---|
| media-pipeline | "User uploaded a thing, normalize it before storing." Probe → decode → resize → thumbnail → convert. |
| a11y-audit | Deterministic WCAG 2.x audit of an HTML page from a string and a fg/bg color pair. |
| color-palette | Full color analysis — parse any format, check WCAG contrast, and simulate color blindness. |
| qr-gen | Generate a QR code and validate the URL in one pass — the encoded image plus a parsed URL breakdown. |
| Pack | What it solves |
|---|---|
| text-analyze | Full text analysis — word/sentence stats, keyword extraction, and token count. |
| content-clean | Clean and deduplicate text — redact PII, remove duplicate lines, and sort. |
| text-transform | Convert text to all common cases — camelCase, slug-form, and snake_case. |
| markdown-convert | Markdown → HTML and back — a round-trip that proves fidelity and yields both formats. |
| lorem-gen | Generate placeholder text and immediately size it — words, characters, estimated tokens. |
| regex-test | Test a regular expression against text and get matches plus text statistics. |
| semver-check | Compare two semantic versions and see the structural diff — major/minor/patch and what changed. |
| validator-suite | Validate common identifiers — ISBN (book), IBAN (bank account), and credit card (Luhn). |
| Pack | What it solves |
|---|---|
| search-and-cite | Research a question, return an answer with citations — synthesized take + SERP + news, verified by fetch. |
| article-digest | Quick research brief on any topic — web search results plus an AI-generated answer. |
A single tool answers a question. A pack answers a job.
When an agent says "audit a domain", picking one tool (whois? dns? tls-cert? cert-transparency?) is a guess — the right answer is "all of them in the right order, then synthesize." That's what a pack encodes:
- The plan is in the template, not in the model. Same pack, same plan, every time — no token-spending discovery loop.
-
The tools are pinned. When a new better tool ships, the pack template gets updated server-side; agents calling
prompts/getalways get the current best plan. - Pricing is transparent. Each tool's price is deterministic; the pack template lists every call so total cost is predictable before the first call.
- No LLM in the serving path. The pack rendering itself is deterministic — no hidden inference, no surprise dependencies.
Packs live in src/skills.js. A pack is { slug, title, tagline, useCase, toolSlugs[], arguments[], workflow[], notes[] } — see the existing entries for the shape. CI's "answers its own example" check covers the underlying tools; pack templates are validated by scripts/test-mcp-all.js (prompts/list returns N typed entries; prompts/get renders each one without throwing).
- Tool Catalog — the underlying 500+ tools the packs orchestrate
- MCP Connector — how to wire the connector into Claude / Cline / any MCP-aware client
- Getting Started — your first call (free, no wallet) in 60 seconds
- x402-Index-and-Router — what Agent402 looks like inside the wider x402 ecosystem
agent402.tools · synced from wiki/ in the main repo — edit there, not here.
Using it (for agents / buyers)
- Getting Started
- Paying with x402
- Robinhood Chain (USDG)
- Paying with Compute
- MCP Connector
- Adapters
- AWS Bedrock AgentCore
- Tool Catalog
- Skill Packs
- x402 Index and Router
- x402 Leaderboard
- LLM Gateway (OpenAI /v1)
- LLM Proxy Gateway
- Image Generation Gateway
- Code Execution Sandbox
- Text-to-Speech
- Speech-to-Text
- Text Embeddings
- Payments and x402
- Memory and Coordination
Tollbooth (for site owners)
- Pay-per-crawl — what it is, install, modes
- Pay-per-crawl Walkthrough — 5-min hands-on
- Tollbooth for Agencies — many-site playbook
- Try Tollbooth Cloud (managed)
Website & Developer
- Quickstart — first call in 60 seconds
- Playground — try tools in your browser
- SDK REPL — live code editor
- API Explorer — browse OpenAPI
- Adapter Docs — per-framework guides
- Workflows — chaining patterns
- Blog · Changelog
Under the hood