# AI Analytics — Indexed Evidence Products Payment status: live. This is configuration status, not an attestation of a completed financial transaction. Company records preparation: live. Mine records preparation: live. Product availability and payment availability are separate. Company product: A bounded packet for one SEC-indexed organization identified by ticker or CIK. SEC issuer-matched institutional filings use a 365-day window. If the first query returns at least 25 candidates but retains no eligible issuer filing, one additional capped family=current query is permitted; coverage remains incomplete. OFAC civil-enforcement name matches remain candidates except an explicitly reviewed reference mapping. Optional CISA vendor-query results are candidates, not verified per-record institutional matches. Candidate-only or identity-only packets are rejected. This is not a fraud, compliance, credit or risk score. Mine product: The separate mine-records product uses one exact seven-digit nonzero MSHA mine ID, preserving leading zeroes. It returns a mine profile and at most 250 indexed citations from a bounded sample, with a 251st-row truncation sentinel. The sample is not represented as the latest citations or complete mine history. A mine is a facility, not a SEC issuer; mine artifacts contain no synthetic CIK. Preparation is unavailable unless the separate mine product status is live. ## Authoritative discovery - OpenAPI: https://api.ai-analytics.org/paid/openapi.json - Human guide: https://api.ai-analytics.org/paid/ - Service status: https://api.ai-analytics.org/paid/health - Existing free API: https://api.ai-analytics.org/openapi.json - Source rights and license terms: https://api.ai-analytics.org/license - Support, corrections and uncertain payments: https://ai-analytics.org/contact/ ## Browser entity links Open https://api.ai-analytics.org/paid/?identifier=AAPL#preview-heading or https://api.ai-analytics.org/paid/?product=mine-records&mineId=4801833#preview-heading to fill a public entity form. Company links optionally accept expectedName with at least three trimmed characters. Navigation does not prepare, connect a wallet or pay; choose Prepare free preview explicitly. Explicit link inputs take priority over unrelated saved previews. A copied entity link preserves the original input, not a resolved replacement. Only the landing route accepts these strict query shapes. Never place a job ID, status/recovery token, payment authorization, wallet or redirect in a link; all other endpoint canonical rules remain unchanged. ## Browser buyer The page at https://api.ai-analytics.org/paid/ saves and resumes free preparations. An explicit wallet discovery/connection, reviewed exact offer and separate checked authorization permit one $0.02 native-USDC/Base purchase using a compatible injected plain-EOA wallet. The private payment journal is separate from previews and blocks repeat authorizations for the same company/mine in this browser, including aliases and interrupted attempts. No automatic network switch or payment retry. Browser storage can be cleared or isolated across profiles/devices; do not switch clients or erase state to retry an uncertain purchase. Smart accounts and mobile WalletConnect are not supported. A funded browser purchase and independent settlement remain unverified. The page retains response headers/body before validating delivery, exports the same hash-verified JSON/CSV and annual mine summaries as the Node client, and offers credential-based GET recovery without another charge. Private payment-record downloads contain capabilities and must not be published. The separate browser backup opener reads current payment-backup files locally for public export or one explicit original-result GET. It never imports payment storage, unlocks retries or proves settlement; stale files cannot show later activity. Preview-only backups and CLI journals are not accepted by this browser file opener. Gateway-reported settlement, verified artifact delivery and independent chain confirmation remain separate. The browser manifest/license notices are at https://api.ai-analytics.org/paid/client/browser-manifest.json and https://api.ai-analytics.org/paid/client/browser-licenses.txt. ## Downloadable buyer client Download https://api.ai-analytics.org/paid/client/buyer.mjs to a persistent local directory. Node.js 22+ on macOS/Linux; payment libraries are bundled, so no npm installation or private repository access is required. The release checksum and dependency versions are at https://api.ai-analytics.org/paid/client/manifest.json; license notices at https://api.ai-analytics.org/paid/client/licenses.txt. Run: node buyer.mjs --product mine-records --mine-id 4801833 Or: node buyer.mjs --identifier AAPL --expected-name "Apple Inc." Default mode creates/reuses a private job, prints its public preview and verifies an unsigned x402 challenge. It never reads a signing key or makes a signed request. Only append --pay after the buyer explicitly authorizes the offer and provides EVIDENCE_BUYER_PRIVATE_KEY through their local secret manager. This client allows at most one exact 0.02 native-USDC/Base attempt for a retained job, checks the pinned recipient and artifact hash, and never automatically retries a signed/uncertain attempt. It does not prove that every paid delivery succeeds. Keep the file in the same directory between preview and purchase. Private journals in evidence-live-receipts/ beside the downloaded file hold status tokens, responses and any returned recovery capability. Do not publish journals or delete/move them to force another payment. The browser preview and CLI prepare separate jobs; use the CLI's displayed preview for its purchase. No keys go to this service or its support team. ## Export and recover a purchased artifact Use the same product arguments with --export to write the retained, hash-verified artifact as bundle.json, records.csv, sources.csv, metadata.json and a checksum manifest in a fresh private folder under evidence-live-receipts/exports/. Mine exports also include annual-summary.csv, grouped by valid issue-date year, with unknowns, explicit missing counts and separate proposed-penalty/reported-payment USD totals. Summaries cover only delivered records. They are not complete history, final assessments, unpaid balances or source refreshes. CSV text guards spreadsheet formulas and identifier rounding; original JSON values are retained. Example: node buyer.mjs --product mine-records --mine-id 4801833 --export Offline export makes no network request and remains available after quote/recovery expiry if the local artifact survives. --recover instead makes one GET to the saved canonical recovery URL, using its saved token, checks the original preparation commitment and exports the recovered artifact. It does not purchase, sign, retry, update settlement status or create a replacement job. A missing/expired recovery capability fails before network access; use a retained local artifact or reconcile the original receipt. Do not combine --export or --recover with --pay. Recovery transport/retained artifact validity and financial settlement remain separate. ## Prepare without payment POST https://api.ai-analytics.org/paid/v1/evidence-jobs Content-Type: application/json Company body (unchanged): {"identifier":"AAPL","expectedName":"Apple Inc."} Mine body (only when mine preparation is live): {"product":"mine-records","mineId":"4801833"} Company input uses one ticker or nonzero CIK; optional expectedName must agree with the resolved organization. Mine input requires exactly seven digits as a string, preserving leading zeroes. Do not send company identifier/expectedName fields with a mine product, and do not add product to the legacy company input. Maximum request body: 2,048 UTF-8 bytes. No extra input fields. Both products share the same price, capacity limits and job/admission/recovery URLs. A 201 response includes id, preview, payment_status, artifact_sha256, artifact_hash_profile, quote, status_url, status_token and recovery_retained_until. Review the identity, useful-record count, candidates, truncation and source limitations before buying. Full records and the recovery token are not included. Empty useful evidence, candidate-only evidence or identity-only evidence is rejected; source failures do not produce a payable packet. ## Status GET the returned status_url with Authorization: Bearer STATUS_TOKEN. The response includes preview, quote_expires_at, retained_until, payment_status and admission_available. This token cannot retrieve the full result. Existing free API routes remain unchanged. ## Paid admission Preparation and status are free. When enabled, each protected POST admission is a separate $0.02 USDC request on Base (eip155:8453), negotiated through the actual x402 v2 challenge. Expected amount: 20000 atomic units; USDC contract: 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913; operator-designated receiving wallet: 0xB0b3fCa940e04F99367f08e665E1C2CB4ebd4912. Confirm the actual challenge's amount, asset, network and recipient before signing. A 402 challenge, origin execution or advertised live status is not proof of payment settlement. Quotes expire 24 hours after preparation. Do not automatically repeat admission if payment or delivery is uncertain. POST the exact quote.admission_url with a compatible x402 v2 client. No body or status bearer is required. The observed unpaid 402 has an empty JSON object body; decode the base64 Payment-Required header for the actual challenge. Payment-Signature carries client payment authorization; preserve Payment-Response when returned. Do not append queries, suffixes or trailing slashes to job URLs. Do not sign or submit payment merely because a preview is available. The successful response includes bundle, recovery {url, token, expires_at}, and delivery {price_usd, artifact_sha256, artifact_hash_profile, receipt_header}. Save the complete response and receipt. The price is per protected POST request, not a subscription or unlimited-admission entitlement. ## Free recovery and interrupted requests A successful admission returns a separate recovery capability. GET recovery retrieves only the original immutable result without a new paid admission, until the returned retained-until timestamp: 90 days from preparation, not 90 days after purchase. Keep both bearer tokens out of URLs and logs. A status token cannot recover a result. If settlement may have occurred but no recovery capability arrived, preserve the job ID and receipt and contact support; do not blindly purchase again. GET recovery.url with Authorization: Bearer RECOVERY_TOKEN. A successful response is {"bundle": ...}. Recovery does not rerun the source queries or update the result. A 404 hides absent/invalid capabilities or expired retention; 429 is a read limit. Never substitute the status token for the recovery token. ## Verify the saved result evidence-artifact-json.v1 recursively sorts object keys using JavaScript Object.keys(value).sort(), preserves array order, applies JSON.stringify to keys and scalar values, joins with JSON punctuation without whitespace, encodes as UTF-8, and hashes the complete bundle object with SHA-256. Compare against artifact_sha256 from preparation or delivery. bundle.content_hash instead identifies the declared evidence projection described by bundle.hash_profile; it is not the complete artifact hash. ## Source limits Both products remain within the 96 KiB bundle limit. Company records: at most six provider fetches, three source families and 25 retained records per family. The first SEC query requests at most 25 filing candidates in 365 days; non-institutional forms can consume that cap. Only when it returns at least 25 candidates and retains no eligible issuer filing does the service make one additional family=current query, also limited to 25 candidates in 365 days. Both query paths remain in source coverage; returned/rejected counts include both requests, while truncation and incomplete coverage remain explicit. This does not retrieve comprehensive filing history. OFAC data concerns civil enforcement, not current sanctions-list status. A reviewed reference mapping is specifically labeled; other name matches require review. CISA is optional, currently uses a curated Apple search term, and all returned CVEs remain vendor-query candidates because per-record vendor identity is absent from that provider response. They do not count toward the useful-evidence minimum. Mine records: a separate mine-records-bundle.v1 artifact and mine-records-preview.v1 preview. At most 250 indexed citations are retained; a 251st row detects truncation, and a byte cap may reduce the delivered count. Source coverage identifies the sample and its limits. Do not interpret source index order as latest-first or a complete history. Preserve the distinction between proposed penalties, reported payments and contested entries; do not treat a mine/operator label as proof of corporate ownership. The mine subject has mine_id, not a CIK. No source claims complete coverage. Provider generation time, ingestion observations and source event dates differ. Most primary documents are not fetched or reviewed again during preparation. A missing record is not clearance; CVEs do not prove a company breach or wrongdoing. Source-specific rights and qualifications apply; there is no blanket CC0 or open-license assertion for all underlying records. ## Errors and retry discipline 400 invalid input/JSON/product; 404 mine ID absent from the provider index; 413 request too large; 415 wrong media type; 422 identity mismatch/no useful evidence/packet cap; 429 capacity limit; 502 invalid or failed source; 503 mine product pending, temporary service failure or payments unavailable. An absent mine or citation is not a clean-record conclusion. Admission may return 402 for the actual Gateway challenge or 404 for an absent/expired/price-mismatched job. After an uncertain paid attempt, preserve the receipt and contact support before another admission. Free status/recovery requests are separate from purchasing.