Agent Readiness Score
codeium.com
52 — Developing. Agents can find parts of this site, but key capabilities are hard to reach.
HonestClaw measured how well codeium.com's site and APIs work for AI agents — across 9 dimensions and 45 automated checks.
Dimensions
Discoverability3.5/13
Content Accessibility3.5/5
Bot Access ControlNot yet scored
Protocol & Capability Discovery13.4/26
Authentication & Credentials15.8/19
Documentation Quality8.5/10
Structured Data I/O5.6/13
Observable State & Reliability2/15
Agent Safety & TrustNot yet scored
Checks
Discoverability
API existenceapi-existenceA real API surface is declared at https://petstore3.swagger.io/api/v3/openapi.json: the spec lists servers and paths. (source: spec)Parseable
API catalogapi-catalogNo RFC 9727 API Catalog found at /.well-known/api-catalog.Not detected
API versioningapi-versioningThe API version is declared in the spec (info.version) at https://petstore3.swagger.io/api/v3/openapi.json. (source: spec)Parseable
robots.txtrobots-txtNo live subdomains matched this check.Couldn't verify
sitemap.xmlsitemap-xmlNo live subdomains matched this check.Couldn't verify
Canonical domaincanonical-domainNo live subdomains matched this check.Couldn't verify
+ 1 more in the interactive report →Content Accessibility
llms.txtllms-txtA curated llms.txt index is published on a non-top subdomain at https://docs.windsurf.com/llms.txt: 125 links across 2 sections. Its credit is capped at useful because it is not published on the main domain.Useful
llms-full.txtllms-full-txtNo live subdomains matched this check.Couldn't verify
Markdown twinmarkdown-twinNo live subdomains matched this check.Couldn't verify
ai.txtai-txtNo live subdomains matched this check.Couldn't verify
+ 3 more in the interactive report →Bot Access Control
AI bot rulesai-bot-rulesNo live subdomains matched this check.Couldn't verify
Content signalscontent-signalsNo live subdomains matched this check.Couldn't verify
TDM reservationtdmrepNo live subdomains matched this check.Couldn't verify
+ 1 more in the interactive report →Protocol & Capability Discovery
MCP supportmcp-supportA first-party MCP support page exists at https://docs.devin.ai/work-with-devin/deepwiki-mcp, but it does not identify a concrete HTTPS MCP endpoint or fully establish a company-operated service.Parseable
SDK availabilitysdk-availabilitySDK libraries page at https://docs.devin.ai/federal/api/python-sdk: 0 GitHub repos, 0 registry links, 1 install command (1 pointer).Useful
A2A Agent Carda2a-agent-cardAn A2A Agent Card is described at https://docs.codeium.com/.well-known/agent-card.json, but it is missing required fields (name, description, version, supportedInterfaces, or skills).Parseable
Rate limit documentationrate-limit-docsA rate-limit documentation page exists at https://docs.devin.ai/desktop/accounts/quota, but it doesn't state a concrete limit alongside a rate-limit response header.Parseable
MCP descriptormcp-descriptorInformational — not scoredAn MCP server is described at https://docs.codeium.com/.well-known/mcp.json, but the description doesn't include a web address for the server.Parseable
MCP Server Cardmcp-server-cardA file exists at https://docs.codeium.com/.well-known/mcp/server-card.json, but it doesn't contain the fields that describe an MCP Server Card.Detected
OpenAPI specificationopenapi-specValid OpenAPI 3.0.4 spec at https://petstore3.swagger.io/api/v3/openapi.json: 19 operations, 6 schemas, 100% response coverage, servers declared.Cross-verified
WebMCPwebmcpInformational — not scoredWebMCP browser probing is not yet available in this scanner release.Couldn't verify
Link headerslink-headersNo live subdomains matched this check.Couldn't verify
.well-known indexwell-known-indexNo live subdomains matched this check.Couldn't verify
+ 3 more in the interactive report →Authentication & Credentials
Programmatic auth flowprogrammatic-auth-flowA programmatic auth flow is fully documented at https://docs.devin.ai/api-reference/authentication, with a non-interactive grant, token endpoint, scopes, and token expiry/refresh.Cross-verified
Credential managementcredential-managementCredential management is fully documented at https://docs.devin.ai/api-reference/v3/service-users/rotate-enterprise-service-user-api-key, covering rotation, revocation, and credential scoping/expiry.Cross-verified
Auth documentationauth-documentationAuthentication is fully documented at https://docs.devin.ai/api-reference/authentication, naming complete method(s) and how they are sent, corroborated across surfaces or covering multiple methods.Cross-verified
Sandbox environmentsandbox-environmentA sandbox/testing page exists at https://docs.devin.ai/cli/sandbox, but it doesn't show how to obtain test credentials or a test base URL.Parseable
Documentation Quality
API reference depthapi-reference-depthThe API reference at https://docs.devin.ai/onboard-devin/environment/blueprint-reference documents parameters with example requests and responses. To reach the top level, it would need request and response bodies, authentication, pagination, and error codes.Useful
Changelog presencechangelog-presenceA changelog is published at https://docs.devin.ai/desktop/changelog with multiple recent dated entries, indicating it is actively maintained.Cross-verified
Structured Data I/O
Structured data I/Ostructured-data-ioThe spec at https://petstore3.swagger.io/api/v3/openapi.json declares typed response schemas as a rule (63% of operations) — no documented pagination pattern, no structured error envelope. (source: spec)Useful
Machine-readable pricingmachine-readable-pricingNo machine-readable pricing endpoint found (HTML pricing pages do not qualify).Not detected
Data export APIdata-export-apiNo data export or bulk API documentation found at the standard docs locations an agent would check.Not detected
Observable State & Reliability
Status & health endpointsstatus-and-healthStatus page found at https://status.windsurf.com/# (HTTP 200).Detected
Webhook documentationwebhook-documentationNo webhook or event documentation found at the standard docs locations an agent would check.Not detected
Retry & idempotencyretry-and-idempotencyNo retry or idempotency documentation found at the standard docs locations an agent would check.Not detected
Error documentationerror-documentationAn error documentation page exists at https://docs.devin.ai/desktop/accounts/api-reference/errors, but it doesn't enumerate specific error codes or a documented error response shape.Parseable
Machine payments (x402/MPP)x402-or-mpp-supportInformational — not scoredNo machine-payment signal observed (no HTTP 402, no payment-required response header, and no /.well-known/x402.json manifest). Payment support cannot be ruled out from an unauthenticated probe.Couldn't verify
Agent Safety & Trust
security.txtsecurity-txtNo live subdomains matched this check.Couldn't verify
Legal policy pageslegal-pagesNo live subdomains matched this check.Couldn't verify
Org identity signalsorg-identityNo live subdomains matched this check.Couldn't verify
+ 1 more in the interactive report →