{
  "id": "cca-tool",
  "name": "CCA Tool",
  "description": "Public endpoints used by the CCA Tool browser-extension client for domain and IP security lookups and first-name spelling variants. Backend source ownership and a complete service contract are unverified.",
  "kind": "api",
  "audience": "public",
  "access": "open",
  "auth": "Observed endpoints are publicly accessible without authentication and return wildcard CORS; no broader authentication contract is attested.",
  "lifecycle": "active",
  "health": "unknown",
  "canonicalUrl": "https://ccatool.datasourceapi.com",
  "aliases": [],
  "governanceNote": "cca-tool-extension is evidence of client use only and must not be identified as the backend owner. The backend repository, complete route contract, deployment lifecycle, and operational health remain unverified. Keep this record in the broad directory only and exclude it from RFC 9727, APIs.json, MCP, and llms.txt until ownership and contract verification.",
  "provenance": [
    {
      "name": "CCA Tool extension client reference",
      "description": "The browser extension references this hostname as a client endpoint and identifies the narrowly observed lookup categories; that reference does not establish backend ownership.",
      "url": "https://github.com/coopalliance/cca-tool-extension"
    }
  ],
  "freshness": {
    "cadence": "No backend update cadence is verified.",
    "lastVerified": "2026-09-03"
  },
  "capabilities": [
    "domain-security-lookup",
    "first-name-spelling-variants",
    "ip-security-lookup"
  ],
  "examples": [],
  "operations": [],
  "agentReadiness": {
    "level": "limited",
    "score": 5,
    "summary": "Narrow public behavior is observed, but backend ownership, a complete contract, lifecycle, health, documentation, and callable operations are not verified."
  }
}