Skip to main content
The Trust Rating API provides programmatic access to Mnemom Trust Ratings, historical trends, embeddable badges, directory search, bulk lookups, and aggregate benchmarks. All reputation data is computed from independently verified AIP integrity checkpoints. Base URL: https://api.mnemom.ai/v1/reputation

Authentication

search and compare are genuinely public (no security requirement) — do not gate calls to them behind an API key. Only batch and the owner recompute require auth.
API key authentication: Pass in the Authorization header:
API keys can be created in your dashboard under Settings or via POST /v1/api-keys.

Rate limits

Reputation endpoints are rate-limited to prevent systematic enumeration. Limits are applied per-IP for unauthenticated requests and per-API-key (JWT sub) for authenticated requests. Badge and OG-image endpoints have generous limits because they are typically embedded in websites and served through CDN caching. Authenticate requests (via Authorization: Bearer <token>) to access higher limits on any category.

429 response format

Rate limit windows are 1 minute. Enterprise customers requiring higher limits should contact support.

Endpoints

GET /v1/reputation/{agent_id}

Retrieve the full reputation score for an agent, including all five component scores, trend data, and confidence level. Parameters: Response: 200 OK
Response fields: a2a_trust_extension object: Component object: Error responses:

GET /v1/reputation/{agent_id}/history

Retrieve weekly reputation snapshots for trend analysis. Parameters: Response: 200 OK
Snapshot object:

GET /v1/reputation/{agent_id}/badge.svg

Dynamic SVG badge showing the agent’s current reputation score. Parameters: Response: 200 OK with Content-Type: image/svg+xml
Badge variants (label is “Trust Score” for every variant except score_tier, which uses “Mnemom Trust”): Regardless of variant, an agent below the 50-checkpoint minimum instead renders:
and a private-visibility agent renders [ Trust Score | Private ]. See Embeddable Badges for the full variant reference and embed code in Markdown, HTML, React, and A2A formats.

GET /v1/reputation/{agent_id}/verify

Cryptographic verification of a reputation score. Returns the proof chain that independently confirms the score was computed from authentic, tamper-evident integrity checkpoints. Parameters: Response: 200 OK, Cache-Control: public, max-age=3600, s-maxage=3600
Response fields: There is no top-level verified boolean — treat a non-null verification block with hash_chain_valid: true as the confirming signal. verification object: Error responses:
Use the verification endpoint to independently confirm that a reputation score is backed by real integrity data. You can cross-reference the latest_certificate_hash with the certificate endpoint. Members of the agent’s org can also check the merkle_root against the Merkle root endpoint (authenticated).

GET /v1/reputation/{agent_id}/events

Recent reputation events for the agent (e.g. score_changed, grade_changed), newest first, capped at 50. Public, subject to the private-visibility gate.

GET /v1/reputation/{agent_id}/og-image

Returns a 1200x630 PNG (or an HTML fallback) suitable for og:image link previews when an agent’s public reputation page is shared. Public, no request body or query parameters beyond agent_id.

POST /v1/reputation/{agent_id}/recompute

Lets an authenticated agent owner or admin trigger an on-demand recompute instead of waiting for the 6-hour cron (30-second rate limit per agent). This endpoint is tagged under Reclassification in the OpenAPI spec, not Reputation, since the same path also re-evaluates pending reclassifications and card amendments; see that page for the full request/response shape.

POST /v1/reputation/batch

Retrieve reputation scores for multiple agents in a single request. Requires API key authentication. Request body:
Response: 200 OK
Error responses:

GET /v1/reputation/search

Search the public reputation directory (agents with visibility: public and is_eligible: true only). Public — no authentication required. Query parameters: Response: 200 OK
Directory agent object:

GET /v1/reputation/compare

Side-by-side comparison of 2 to 10 agents. Public — no authentication required. Query parameters: Example:
Response: 200 OK — each entry has the same shape as the single-agent GET /v1/reputation/{agent_id} response above (the full components array, not a flattened map). Private-visibility agents are silently omitted rather than erroring.
Error responses:

GET /v1/reputation/benchmarks

Aggregate statistics across all publicly scored agents. Useful for understanding where an agent stands relative to the ecosystem. Response: 200 OK, cached 5 minutes.
Benchmark fields:

Webhook events

Subscribe to reputation-related webhook events via Webhook Notifications:
Fires once per recomputation where the composite score actually changed (a no-op recompute never fires it).
Fires when a recomputation changes the agent’s letter grade (e.g., from BBB to A). This is a separate event from reputation.score_changed, not a modifier on it, though in practice a grade change is always accompanied by a score change.

Error codes

All error responses follow the standard envelope:

SDK usage

The @mnemom/reputation client only wraps the single-agent score lookup and a gate helper today (getReputation, getMyReputation, getA2AReputationExtension, createReputationGate). History, benchmarks, search, compare, and batch have no dedicated SDK helper — call the REST endpoints directly.

TypeScript

Python

There is no official Python SDK for reputation; call the REST API directly.

See also