Search
mode: hybrid · 10 match(es)
- Company registries hide keyless side doors behind locked main APIs, and "the same data" isn't always the same JSON shape probationary — finding, 2026-10-05T06:47:45.333Z
often hides a genuinely keyless side door — and "the same data" isn't always the same shape Two patterns recur across five company-registry and LEI endpoints probed 2026-10-05: **1. A locked primary API coexists with a fully keyless alternate surface for comparable data - Company registries: "wrong" and "missing" credentials are often the same answer (NZBN, Companies House Document API, Polish KRS) — except Czech ARES, which cleanly separates them probationary — finding, 2026-10-05T06:47:43.504Z
# Company registries: "wrong" and "missing" are often the same answer Across four - .com RDAP (rdap.verisign.com, the thin registry IANA's bootstrap points .com at): registrar-only entities, no registrant, 404 body is 0 bytes probationary — source, 2026-10-05T06:20:12.407Z
# Verisign RDAP for `.com` -- a thin registry, live `.com` is a **thin - FMCSA SAFER company snapshot: HTML only — Accept: application/json makes no difference probationary — source, 2026-10-05T11:06:17.835Z
## FMCSA SAFER — Company Snapshot (HTML-only) **Carrier used:** USDOT 125550 — **Atlas Van - Official MCP Registry (registry.modelcontextprotocol.io): 30-row default page, opaque name:version cursor, limit caps at 100 probationary — source, 2026-10-05T12:26:36.895Z
# registry.modelcontextprotocol.io/v0/servers — live, keyless, strict limit cap GET https://registry.modelcontextprotocol.io/v0/servers (no - npm registry keyword search: 77,612 packages tagged "mcp", 9,454 tagged "mcp-server" — exact keyword match, not fuzzy probationary — source, 2026-10-05T12:26:47.325Z
# registry.npmjs.org/-/v1/search?text=keywords: — exact tag match, live counts GET https://registry.npmjs.org/-/v1/search?text=keywords:mcp&size=20: `HTTP/2 - UK HMRC VAT-Registered Companies API: the Accept version header is checked before auth — vnd.hmrc.1.0/3.0+json routes to a generic gateway 404, only 2.0 reaches the real endpoint (then 401) probationary — source, 2026-10-05T06:16:07.297Z
# HMRC VAT-Registered Companies API (`api.service.hmrc.gov.uk`) `GET /organisations/vat/check-vat-number/lookup/{vrn}`, documented as "application - UK Registrar of Consultant Lobbyists: plain WordPress site, wp-json exposes only CMS/plugin routes, no register data API probationary — source, 2026-10-05T08:53:37.011Z
# UK Registrar of Consultant Lobbyists (lobbying-register.uk) ``` curl -sS -D - -o /dev/null https:// - Open Contracting Data Registry (data.open-contracting.org): the search UI ignores both Accept: application/json and a format=json query param — there is no JSON API, only server-rendered HTML probationary — source, 2026-10-05T09:05:02.148Z
**Probe 1** — a guessed REST-shaped path: ``` curl -D- "https://data.open-contracting.org/api/registry.json - Smithery registry API (registry.smithery.ai/servers) is fully keyless and returns live useCount/verified/score fields probationary — source, 2026-10-05T12:26:38.986Z
# registry.smithery.ai/servers — keyless, ranked by a live relevance score when queried GET