moss.dev

agent readiness score · scanned Aug 18, 2026 · 6s · AI & ML

#41 of 979 · #9 in category

78/ 100B

Moss provides a real-time semantic search runtime designed for AI agents, voice agents, copilots, and multimodal applications, offering sub-10ms lookups without requiring external vector databases or significant infrastructure.

badge

Discovery 17.5/20

Access 30/30

Usability 20/40

Payments 10/10

Top fixes

  1. MCP handshake & tools list

    MCP endpoint https://moss.dev/.well-known/mcp.json failed handshake: Not a JSON-RPC endpoint. Support streamable HTTP with protocol version negotiation; if auth-gated, return RFC 9728 metadata in WWW-Authenticate.

    +3.7
  2. agents.md

    Add /agents.md: what agents may do on your site, key URLs, auth, rate limits, and who to contact.

    +2.8
  3. Docs quality

    Docs scored 1/5 on completeness. The documentation provides a high-level overview and a single code snippet, but lacks comprehensive API references, detailed setup instructions, or explanations of core concepts like PROJECT_ID and PROJECT_KEY.

    +2.8
  4. OAuth authorization server metadata

    Metadata at https://moss.dev/.well-known/oauth-authorization-server lacks authorization_endpoint, code_challenge_methods_supported including S256. Serve complete RFC 8414 metadata with PKCE (S256) so agents can self-onboard.

    +2.8
  5. Brand search discoverability

    Your domain doesn't surface when agents search "Moss". Strengthen brand pages, structured data, and third-party citations (docs portals, GitHub, directories).

    +2.5
  6. MCP server discovery

    Publish /.well-known/mcp/server-card.json describing your MCP endpoint so agents can autodiscover it. Evidence found: llms.txt.

    +2.3

1.Can an agent discover and trust you?

6/8

Whether agents can crawl you, find you in the registries and searches they check, and trust what they find.

  • Sitemap present & freshrequired4/4

    Sitemap at https://www.moss.dev/sitemap.xml: 28 entries, freshest <lastmod> 2026-08-05 (12 days ago)

    Resolved the sitemap from robots.txt or /sitemap.xml, validated XML, and checked lastmod freshness

    spec ↗
  • Brand search discoverabilityrequired2/4

    Search "Moss ai ml" cited moss.dev (https://docs.moss.dev/docs/integrations/moss-cli), but search "Moss" did not cite your domain

    fix → Your domain doesn't surface when agents search "Moss". Strengthen brand pages, structured data, and third-party citations (docs portals, GitHub, directories).

    Ran clean brand-name web searches and checked whether your domain is cited in the results

  • MCP registry listingsrecommendedna

    No MCP server detected for this product

    Queried the official MCP registry, Smithery, Glama, and PulseMCP for servers matching your domain

    spec ↗

2.Do you welcome agents?

13/16

Whether your robots policy, bot protection, and agent guidance actively admit AI agents instead of blocking them.

  • robots.txt present & parseablerequired2/2

    /robots.txt parses: 8 User-agent group(s), 2 Sitemap line(s)

    Fetched /robots.txt and validated it parses as a robots policy

    spec ↗
  • AI crawler policyrequired5/5

    All 12 AI crawler user-agents (GPTBot, ClaudeBot, PerplexityBot, …) are allowed at / by robots.txt

    Evaluated robots.txt groups for the major AI agent user-agents (GPTBot, ClaudeBot, PerplexityBot, …)

  • Content Signals directivesemerging2/2

    8 valid Content-Signal line(s) in robots.txt (e.g. `Content-Signal: ai-train=yes, search=yes, ai-input=yes`)

    Looked for Content-Signal lines in robots.txt

    spec ↗
  • Agent user-agent paritybetarequired4/4

    All three UAs get HTTP 200; bot bodies are ClaudeBot 100%, GPTBot 100% of the browser response (151658 bytes)

    Compared responses served to browser and AI-agent user-agents (informational while in beta)

  • agents.mdrecommended0/3

    No agents.md: https://moss.dev/agents.md → HTTP 404, https://moss.dev/AGENTS.md → HTTP 404

    fix → Add /agents.md: what agents may do on your site, key URLs, auth, rate limits, and who to contact.

    Fetched /agents.md and checked for substantive agent guidance

    spec ↗

3.Does an agent understand who you are and what you do?

18/18

Whether your pages carry machine-readable identity: structured data, llms.txt, clear copy an agent can quote.

  • Homepage states what you arerequired3/3

    Homepage clarity rated 5/5 — an agent can confidently say what this company does (model's one-sentence read: "Moss provides a real-time semantic search runtime designed for AI agents, voice agents, copilots, and multimodal applications, offering sub-10ms lookups without requiring external vector databases or significant infrastructure.")

    An LLM read your homepage as an agent would and rated how confidently it could say what you do

  • OpenGraph / social metadatarecommended2/2

    Homepage has og:title, og:description, and og:image (twitter:card="summary_large_image" present)

    Parsed homepage og:title / og:description / og:image and twitter:card meta tags

    spec ↗
  • llms.txtrecommended4/4

    /llms.txt is valid llmstxt.org shape: H1 "Moss", 12 markdown link(s)

    Fetched /llms.txt and validated it against the llmstxt.org shape (H1, summary, curated links)

    spec ↗
  • llms-full.txtbonusrecommended2/2

    /llms-full.txt serves 26173 chars of markdown

    Fetched /llms-full.txt and checked for substantial inline markdown content

    spec ↗
  • JSON-LD structured datarequired4/4

    11 JSON-LD block(s) on homepage and pricing page (types: Organization, WebSite, SoftwareApplication, Service, SoftwareSourceCode, FAQPage); Organization block is well-formed

    Extracted and validated application/ld+json blocks on the homepage and pricing page

    spec ↗
  • Markdown content negotiationrecommended3/3

    https://moss.dev/ returns markdown for `Accept: text/markdown` (content-type text/markdown)

    Requested key pages with Accept: text/markdown and probed .md twin URLs

4.Can an agent integrate with you?

watch →16.5/21

Whether the artifacts an agent needs to build on you — docs, API specs, SDKs, MCP servers — exist and are findable.

  • Developer resource discoverabilityrecommended3/3

    Search "Moss API documentation" cited your own domain: https://docs.moss.dev/docs/api-reference/v1/getting-started/introduction, https://docs.moss.dev/docs, https://docs.moss.dev/docs/reference/js/api, https://www.moss.dev/, https://docs.moss.dev/docs/changelog

    Searched for your brand with developer-keyword suffixes and checked which official resources are cited

  • OpenAPI spec discoverablerequired5/5

    OpenAPI spec found at https://moss.dev/api/openapi.json (version 3.1.0)

    Probed standard OpenAPI locations and docs links for a fetchable, parseable spec

    spec ↗
  • Docs discoverablerequired4/4

    Docs found at https://www.moss.dev/use-cases/docs-search (via homepage link, 3092 chars of readable text)

    Followed homepage nav/footer links and probed /docs, /developers, docs.{domain}

  • MCP server discoveryrequired2.5/5

    MCP evidence found only as a mention in llms.txt: "https://moss.dev/.well-known/mcp.json" — no well-known server card

    fix → Publish /.well-known/mcp/server-card.json describing your MCP endpoint so agents can autodiscover it. Evidence found: llms.txt.

    Probed /.well-known/mcp/server-card.json, mcp.json, and docs mentions for an MCP endpoint

    spec ↗
  • npm SDKrecommended0/2

    No official npm SDK found: probed 6 candidate(s) (@moss/sdk, @moss/moss, moss, moss-sdk, moss-api, moss-js) — found but not domain-verified: moss, moss-api

    fix → Publish an official npm SDK (suggest @moss/sdk) with your domain in package.json homepage so agents can verify it's official.

    Searched the npm registry for an official, domain-verified SDK package

  • PyPI SDKrecommended2/2

    Official PyPI package "moss" (verified via project_urls.Documentation https://docs.usemoss.dev/): latest 1.7.2 published 2026-07-21

    Searched PyPI for an official, domain-verified SDK package

5.Is your integration well-built?

watch →3/8

Whether your specs, docs, and tools are complete and descriptive enough for an agent to use them without guessing.

  • OpenAPI validity & qualityrecommended3/3

    Spec at https://moss.dev/api/openapi.json: 7/7 quality criteria passed (5 paths, 9 operations)

    Linted the spec: descriptions, operationIds, securitySchemes, servers

  • Docs qualityrecommended0/3

    Docs at https://www.moss.dev/use-cases/docs-search scored clarity 3/5, completeness 1/5, runnable examples 2/5, agent-friendliness 2/5 (mean 2.0/5)

    fix → Docs scored 1/5 on completeness. The documentation provides a high-level overview and a single code snippet, but lacks comprehensive API references, detailed setup instructions, or explanations of core concepts like PROJECT_ID and PROJECT_KEY.

    An LLM rated your docs for clarity, completeness, runnable examples, and agent-friendliness

  • Quickstart / getting startedrecommended0/2

    No quickstart/getting-started link or heading found on docs page https://www.moss.dev/use-cases/docs-search (searched 37 links)

    fix → Add a copy-pasteable quickstart (auth → first API call) — agents follow it literally.

    Looked for a quickstart/getting-started guide containing code blocks

  • MCP tool qualityrecommendedna

    No tools listed by the MCP endpoint — nothing to lint

    Linted listed tools for descriptions, typed input schemas, and naming

6.Can an agent use you reliably in production?

watch →3/4

Response hygiene, TLS and redirect discipline, and security contact channels agents depend on at runtime.

  • TLS & redirect hygienerequired2/2

    http://moss.dev/ upgrades to https in 1 hop(s), 2 redirect(s) total, final HTTP 200; HSTS present

    Checked http→https redirect behavior, chain length, and TLS health

  • Response speed & weightrequired1/1

    Homepage TTFB 113ms, payload 148KB, Content-Encoding: br

    Measured homepage TTFB, payload size, and compression

  • security.txtrecommended0/1

    https://moss.dev/.well-known/security.txt returned HTTP 404

    fix → Publish RFC 9116 /.well-known/security.txt with a Contact and a future Expires.

    Fetched /.well-known/security.txt and validated Contact + Expires

    spec ↗

7.Can an agent authenticate to you?

watch →3/7

Whether agents can discover your auth model machine-readably (OAuth metadata) and follow documented steps to credentials.

  • OAuth authorization server metadatarecommended0/3

    OAuth metadata at https://moss.dev/.well-known/oauth-authorization-server is missing/invalid: authorization_endpoint, code_challenge_methods_supported including S256

    fix → Metadata at https://moss.dev/.well-known/oauth-authorization-server lacks authorization_endpoint, code_challenge_methods_supported including S256. Serve complete RFC 8414 metadata with PKCE (S256) so agents can self-onboard.

    Fetched /.well-known/oauth-authorization-server (and openid-configuration fallback)

    spec ↗
  • OAuth protected resource metadatarecommended2/2

    Valid RFC 9728 metadata at https://moss.dev/.well-known/oauth-protected-resource: resource https://www.moss.dev, 1 authorization server(s) (https://www.moss.dev)

    Fetched /.well-known/oauth-protected-resource

    spec ↗
  • Auth documentationrecommended1/2

    Auth page https://portal.usemoss.dev/auth/sign-up?utm_source=moss.dev&utm_medium=navbar&utm_campaign=start_for_free exists but contains no code examples

    fix → Add a runnable example (key creation → header format → example call) to your auth docs — agents follow it literally.

    Looked for /auth.md or an authentication docs page with code examples

8.Can an agent transact with you?

watch →10/15

Whether pricing is discoverable and machine-readable, and whether you support agent payment protocols.

  • Pricing discoverablerequired5/5

    Pricing page found at https://www.moss.dev/pricing (via homepage link) with legible price signals ("$5 / month free creditsBuild &").

    Followed nav/footer links and probed /pricing for a page with legible price signals

  • Machine-readable pricingrecommended5/5

    LLM extracted 2 numerically-priced plan(s) from https://www.moss.dev/pricing at confidence 1.00: DEVELOPER (no listed price); HOBBYIST USD 30/month; START-UP USD 200/month; ENTERPRISE (contact sales).

    Looked for Offer JSON-LD, then had an LLM attempt structured extraction of your plans

    spec ↗
  • x402 payment supportbonusrecommended0/2

    /.well-known/x402 returned HTTP 404. API probe GET https://service.usemoss.dev/v1/indexes returned HTTP 404 without x402 payment requirements. No x402 support detected (bonus check — absence costs nothing).

    fix → Support x402: serve payment requirements at /.well-known/x402, or answer unauthenticated API calls with HTTP 402 plus an x402 payment-requirements payload (x402Version, accepts[]).

    Probed /.well-known/x402 and API endpoints for HTTP 402 payment-required envelopes

    spec ↗
  • AP2 readinessemerging0/1

    No AP2 hints found — scanned llms.txt, docs page (https://www.moss.dev/use-cases/docs-search), OpenAPI spec (https://moss.dev/api/openapi.json); /.well-known/ap2 returned HTTP 404.

    fix → Adopt AP2 to accept delegated agent payments — see https://ap2-protocol.org.

    Scanned fetched artifacts and well-known paths for AP2 hints

    spec ↗
  • Agentic Commerce Protocolemerging0/1

    No Agentic Commerce Protocol hints found — scanned llms.txt, docs page (https://www.moss.dev/use-cases/docs-search), OpenAPI spec (https://moss.dev/api/openapi.json); /.well-known/acp returned HTTP 404.

    fix → Adopt the Agentic Commerce Protocol so agent checkouts can complete against your store — see https://developers.openai.com/commerce.

    Scanned docs and specs for agentic checkout endpoints

    spec ↗
  • Other agent payment protocolsbonusemerging0/1

    No UCP/MPP hints found — scanned llms.txt, docs page (https://www.moss.dev/use-cases/docs-search), OpenAPI spec (https://moss.dev/api/openapi.json).

    fix → Track emerging agent payment protocols (UCP, MPP) and adopt the ones your buyers' agents use.

    Scanned fetched artifacts for UCP/MPP protocol hints

9.Can a user act through an agent?

0/4

Whether an end user's agent can operate on their behalf: working MCP tools, published skills, agent configs.

  • Agent skill publishedbonusemergingna

    Requires the analysis phase — not yet evaluated

    Checked /skill.md, /.well-known/skills/, and skills.sh for published agent skills

  • MCP handshake & tools listrequired0/4

    MCP endpoint https://moss.dev/.well-known/mcp.json failed handshake: Not a JSON-RPC endpoint

    fix → MCP endpoint https://moss.dev/.well-known/mcp.json failed handshake: Not a JSON-RPC endpoint. Support streamable HTTP with protocol version negotiation; if auth-gated, return RFC 9728 metadata in WWW-Authenticate.

    Performed a streamable-HTTP initialize + tools/list against the MCP endpoint

    spec ↗
  • Agent configs in public repobonusemergingna

    Requires the analysis phase — not yet evaluated

    Checked your public GitHub org's main repos for AGENTS.md / .claude / .cursor configs

10.Can an agent operate your website directly?

5.5/9

Whether the site itself is legible to non-rendering and browser agents: semantic HTML, no JS walls, accessibility.

  • NLWeb endpointemerging0/1

    No NLWeb endpoint detected: /.well-known/nlweb.json returned HTTP 404 (text/html); GET /ask?query=hello returned HTTP 404 (text/html)

    fix → Consider exposing an NLWeb /ask endpoint (and /.well-known/nlweb.json) for conversational access to your content.

    Probed /.well-known/nlweb.json and the /ask endpoint

    spec ↗
  • Semantic HTML structurerequired1.5/3

    3/6 semantic signals present on the homepage (missing: <main> landmark, <header>/<footer>, text-to-markup ratio ≥ 0.10)

    fix → Add the missing structure: <main> landmark, <header>/<footer>, text-to-markup ratio ≥ 0.10. Agents parse structure, not pixels.

    Scored landmark elements, heading hierarchy, and text-to-markup ratio on the homepage

  • Content readable without JavaScriptrequired2/2

    Homepage raw HTML contains 4050 chars of visible text without JavaScript

    Measured visible text in the raw, unrendered homepage HTML

  • Accessibility basicsrequired2/2

    Homepage accessibility: 5/5 checks passed

    Static checks: lang attribute, title, alt coverage, labeled inputs, landmarks

  • WebMCPemerging0/1

    No WebMCP evidence on homepage: no application/webmcp script and no navigator.modelContext reference

    fix → Consider WebMCP to expose page actions as tools to browser agents.

    Looked for WebMCP script declarations on the homepage

    spec ↗