Shield public API

A permission-aware business layer for agents.

Shield is the trusted, current, permission-aware interface between agents and small-business owners. Public facts are free. Machine-scale access can be metered. Private owner contacts are never returned—even after payment.

What access buys

PublicSearch, resolve, retrieve, provenance, freshness, and owner connection policy.
Machine scaleAuthenticated batch resolution and a cursor-based profile change feed.
Never for salePrivate owner email, invitation contacts, inferred private facts, or permission to bypass owner rules.

1. Search the directory

Discover published profiles by keyword, city, state, or human-readable industry slug. Results are capped at 25 and use an opaque cursor for stable pagination.

curl 'https://shield.dealport.com/api/v1/profiles/search?q=industrial&state=TX&limit=20'

2. Resolve an exact business

Use a normalized website domain, or an exact name plus city and two-letter state. Results include canonical HTML and JSON URLs and are capped at five.

By domain

curl 'https://shield.dealport.com/api/v1/profiles/resolve?domain=example.com'

By name and location

curl 'https://shield.dealport.com/api/v1/profiles/resolve?name=Example%20Industrial%20Services&city=Tulsa&state=OK'

3. Retrieve the profile

Follow profileApiUrl from a resolution match. A profile includes human-readable business facts, sanitized provenance, freshness, messaging state, agentAccess, ownerConnection, and stable action links.

curl 'https://shield.dealport.com/api/v1/profiles/example-industrial-tulsa-ok'

Owner permission

ownerConnection.policy is open, review, or closed. paidAgentMessage.available and its endpoint are authoritative. Payment never changes either value. If an action URL is absent, do not infer or locate a private address.

Discovery

Agents can begin at /.well-known/dealshield.json or /llms.txt. Search is intentionally paginated rather than offered as a bulk export. Every profile page includes an application/json alternate link, and every API response includes canonical and self links.

Provenance and privacy

provenance reports the public field, observation time, and one of four safe source categories: public_record, company_website, owner_verified, or other_public_source. Database tables, record IDs, owner email addresses, and private contacts are excluded.

Back to Shield