Skip to main content
Independent MeasurementEndpoint record (L0 · L1)Published state: passLast probed: 2026-10-02 · 1 day ago

vulnfeed-api.novadyne.ai/vulnscan/cve/CVE-2021-44228

1.Catalog declaration

Catalog declaration for this endpoint
Resource URLhttps://vulnfeed-api.novadyne.ai/vulnscan/cve/CVE-2021-44228
Sourcecdp_bazaar
Declared methodGET
Networkeip155:8453
Receiving address0xbecce6dd106cfa910f78fea188b2fcceb73bdd0f
Declared price (base units)2000
Catalog statusactive
First seen / last seen2026-08-14 08:39 UTC / 2026-10-03 01:04 UTC
Catalog-reported calls / payers (30d)7 / 6

2.Probe history

2026-09-122026-10-02
Figure 1. Probe timeline, last 30 probes for this endpoint (UTC). Filled = pass, crossed = fail, dashed = unverified. Same-day probes overlap. Marks closer than one mark width are stepped down one lane.
L0 probe history, newest first
Probed atMethodVerdictHTTPLatencyReason
2026-10-02 22:40 UTCGETpass402124 ms—
2026-10-02 04:40 UTCGETpass402119 ms—
2026-10-01 04:40 UTCGETpass402426 ms—
2026-09-30 13:40 UTCGETpass402887 ms—
2026-09-29 16:40 UTCGETpass402569 ms—
2026-09-28 22:40 UTCGETpass402274 ms—
2026-09-28 04:40 UTCGETpass402470 ms—
2026-09-27 13:40 UTCGETpass402218 ms—
2026-09-26 22:40 UTCGETpass402201 ms—
2026-09-26 04:40 UTCGETpass402330 ms—
2026-09-25 13:40 UTCGETpass40279 ms—
2026-09-24 16:40 UTCGETpass402331 ms—
2026-09-23 22:40 UTCGETpass402224 ms—
2026-09-23 04:40 UTCGETpass402282 ms—
2026-09-22 13:40 UTCGETpass402282 ms—
2026-09-21 16:40 UTCGETpass40283 ms—
2026-09-20 22:40 UTCGETpass402200 ms—
2026-09-20 04:40 UTCGETpass402459 ms—
2026-09-19 13:40 UTCGETpass40284 ms—
2026-09-18 22:40 UTCGETpass402364 ms—
2026-09-18 04:40 UTCGETpass4022152 ms—
2026-09-17 13:40 UTCGETpass402177 ms—
2026-09-16 16:40 UTCGETpass402109 ms—
2026-09-15 22:40 UTCGETpass4022128 ms—
2026-09-15 04:40 UTCGETpass402240 ms—
2026-09-14 16:40 UTCGETpass402173 ms—
2026-09-13 22:40 UTCGETpass40269 ms—
2026-09-13 13:40 UTCGETpass40280 ms—
2026-09-12 16:40 UTCGETpass402340 ms—
2026-09-12 04:40 UTCGETpass40272 ms—

3.L1 — real purchases

4 of 4 paid attempts settled on-chain, and 4 of those also returned a 2xx response (delivered). Each settled row carries its on-chain transaction hash, and that transaction is the evidence. On this page a receipt means the seller's own settlement receipt (PAYMENT-RESPONSE); a settled row can have none (see “tx from our index”). A settled row reads as nonce-bound when the on-chain re-read also matched the one-time signature nonce we generated for that purchase, and amount + payee when it matched amount, payee, asset and chain with no nonce on record — the binding shipped on 2026-09-04, so earlier rows carry the weaker evidence and keep their label rather than being demoted (methodology). settled is the transfer we confirmed on-chain; delivered is the response arriving. A settled row whose paid request answered 5xx counts as settled and not as delivered — definitions.

A row marked tx from our index came back with no settlement receipt from the seller. Our own index of on-chain settlements found the transfer afterwards — our payer, this endpoint's payee, the exact amount, inside the time window — and the row goes through the same on-chain re-read as any other before it reads settled. The seller did not name that transaction; we did (methodology).

Terms in this table

settled (nonce-bound)
vet402 confirmed the USDC transfer on-chain, and the on-chain re-read also matched the one-time nonce vet402 signed for that purchase.
settled (amount + payee)
vet402 confirmed the USDC transfer on-chain; the on-chain re-read matched amount, payee, asset and chain; no nonce was on record (rows before 2026-09-04).
L2 no_declaration
the listing declares no output schema to check the response against.
Whose side
the same words as the seller page: seller's side only after failures on two different days (UTC), marked “under re-check”; vet402's side; or not sorted (the rules).
4/4
Figure 2. Settle-through: one cell per paid attempt. Filled = settled on-chain, crossed = signed, and not settled on-chain.
L1 purchase history, newest first
Attempted atResultHTTPOn-chain txLatency
09-19 18:00settled (nonce-bound)tx from our index2000x2ea6e2ab…66a11266 ms
2000 units (≈ $0.002 USDC) · L2 no_declarationWhose side: no failure (delivered)
09-09 12:09settled (nonce-bound)tx from our index2000xc306f61d…d3831195 ms
2000 units (≈ $0.002 USDC) · L2 no_declarationWhose side: no failure (delivered)
08-28 12:18settled (amount + payee)tx from our index2000x570ab774…1e15955 ms
2000 units (≈ $0.002 USDC) · L2 no_declarationWhose side: no failure (delivered)
08-21 08:33settled (amount + payee)tx from our index2000xca752cff…f72e837 ms
2000 units (≈ $0.002 USDC) · L2 no_declarationWhose side: no failure (delivered)

Embed this record

Run this endpoint? Show the settle-through record vet402 measured — the badge reads 4/4 settled · 4 delivered and updates as the record grows. It carries the host it is about and the date it was last measured, so a saved copy cannot pass itself off as current. It states a measurement, not a rating.

vet402: 4 of 4 paid attempts settled with an on-chain receipt, and 4 of those also returned a 2xx response. settled is the confirmed transfer; delivered is the response arriving. A measurement of what happened when vet402 paid this endpoint, not a recommendation. (vulnfeed-api.novadyne.ai · measured 2026-09-19)

[![vet402 receipt](https://vet402.com/api/badge/endpoint/8cbaaa9d-db6f-4672-a64a-7eedae554119.svg)](https://vet402.com/observatory/e/8cbaaa9d-db6f-4672-a64a-7eedae554119)

Get one email when this record's verdict changes. No digest, no marketing — one message per change, and only for this endpoint. We first send one confirmation email; nothing else goes out until you confirm.

4.Catalog listing events

No listing changes observed.

unverified is not a failure; a fail is published only after two consecutive failing probes. Definitions: methodology.

5.Dispute this record

Think a measurement above is wrong? Say which probe or purchase and what you observed instead. One person reads it and replies. The record is never deleted on dispute: if it was wrong, the correction is published with the same weight; if it was right, it stands. Operators who control the receiving address can also sign a dispute via POST /api/v1/observatory/disputes (API reference), which re-measures through the normal publication gate.

20–2,000 characters · 0 so far