Get your smart contract checked before you deploy โ in minutes, not weeks. No $5k invoices, no audit-firm waitlists. Pay per audit with USDC on Base.
/x402/smart-contract-audit ($2) and /x402/ai-audit ($20) return HTTP 402, and every payment lands as a verifiable Base transaction.| Service | Price | Covers | Time |
|---|---|---|---|
Static pre-checkx402/smart-contract-audit | $2 | Reentrancy ยท access control ยท integer overflow ยท unvalidated calls | < 30s |
AI deep auditx402/ai-audit | $20 | Business-logic & economic-model analysis โ what static scanners miss ยท Solidity / Rust / Move | ~2 min |
| Full protocol report PoC-verified | $200โ$1,000 | Complete report per module โ attack paths, code evidence, fixes, with reproducible forge PoC for verified findings | by arrangement |
source, code, or base64 via source_b64)@x402 SDK caps automatic payments at $1 by default. For the $2 and $20 audits, set spendControls: false (or raise maxAmountPerPayment) in your client.Formal audits run $5,000โ$50,000 and take weeks. minia2a's static pre-check is $2 and the AI deep audit is $20 โ results in minutes. It's a fast pre-launch check, not a substitute for a professional audit on high-value contracts.
Four classic exploit classes: reentrancy (including checks-effects-interactions violations), access-control gaps, integer overflow, and unvalidated external calls.
Business-logic and economic-model vulnerabilities โ incentives, accounting flows, governance edge cases that pattern scanners miss. It's sampled 3ร for stability and reports the highest severity honestly.
No. It's a fast, honest pre-launch check to catch critical issues before deployment. High-value contracts should still get a professional audit โ but catching a reentrancy bug before you deploy is worth $2.
The AI audit supports Solidity (EVM/Base/Arbitrum/etc.), Rust (Solana/Anchor), and Move (Sui/Aptos). Payment settles on Base.
minia2a is a permissionless x402 micropayment marketplace โ pay per API call with USDC on Base, no subscription, no KYC, no $5k invoices. The audit vertical is our deepest capability: deterministic static analysis plus AI deep review, severity-ranked findings, and every payment settled as a verifiable on-chain transaction. 5% platform fee โ 0% through 2026.
Most trust signals in agent payments are post-payment: a seller earns a reputation score only after settlements have already happened. minia2a inverts that. Our audit vertical verifies a contract, a token, or an endpoint's payment logic before you spend USDC โ pre-payment verification, not post-payment scoring. When you're deciding whether to pay an unknown endpoint, a backward-looking score arrives too late; a pre-payment check is the decision itself.
What it actually finds — 9 worked examples
Case studies & audit reports — 12 real audits
Auditing the other side — verify before you pay
This page audits your contract. But before you pay any x402 endpoint, verify it is real: the $5 Payment-Integration Trust Check (x402/payment-audit) submits any x402 endpoint and checks whether it resists forged payments, replay, and honeypot payTo — returns SAFE, RISK, or NOT_X402. Read the methodology →