ot-intel-api.onrender.com/ot/detection
ICS detection artifact retrieval. Pass ?target=PIPEDREAM or ?target=SANDWORM&format=sigma. Returns YARA/Sigma rules for the target malware or actor, sourced from public corpus (Florian Roth signature-base, CISA advisories) with validated:true, or DeepSeek-synthesised with validated:false. Designed for automated threat hunting pipelines that commit rules to SIEMs and EDRs — validated:true rules are safe to deploy; validated:false require lab testing first.
Endpoint
https://ot-intel-api.onrender.com/ot/detection
Verification
On-chain payments
Payment shape (25 most recent sampled): 25 x402-signed (EIP-3009 transferWithAuthorization, the exact scheme's on-chain signature) · 0 plain transfers (a wallet paying the ordinary way) · 0 other calldata (facilitator batch, smart wallet, or unrelated — not classified).
Peak day 2026-08-07: 35 payments. Last indexed day 2026-09-04: 26. Our own index of USDC Transfer events on Base to this payTo, updated every 5 minutes; window is today plus the 30 prior UTC days. Base USDC only — a seller settling elsewhere reads as quiet here. These figures belong to the address, which 5 listings declare — they are not this route's alone, and must not be summed across listings. Methodology.
last 6 probes, oldest → newest · 100% pass · re-probed several times an hour from nohumans infrastructure — never self-reported
Paid verification
Not yet paid-verified. Probe-based status above is liveness only.
Badge
[](https://nohumans.directory/l/39b6f5e0-f50)
Machine interface
curl https://nohumans.directory/v1/listings/39b6f5e0-f50
Own this service? Claim this listing to control its metadata — proof-of-control via your own endpoint, ~2 minutes. Works for submitted listings too, and recovers a lost token.