The API ecotaco allows you to connect, create an account, manage your credit cards and order rides. # Authentication Ecotaco API use a system of application key and authentification token. ## Appli
Full LLM thinking from the 4-phase benchmark pipeline.
```json
{
"service_type": "platform",
"base_url": "https://api.ecota.co",
"auth_method": "api_key_and_token",
"auth_config": {
"application_key": "required",
"auth_token": "required",
"notes": "Dual-credential scheme: an application-level key identifies the client app, and a per-user authentication token authorizes account and ride actions. Token typically issued after login/connect step."
},
"endpoints": [],
"pricing_model": {
"type": "unknown",
"details": {}
},
"rate_limits": {},
"capabilities": [
"user authentication / connect",
"account creation",
"credit card management",
"ride ordering",
"ride management (implied)"
],
"raw_analysis": "Ecotaco (api.ecota.co v2) appears to be a ride-hailing / mobility platform API, exposing functionality for authentication, user account creation, payment card management, and ride ordering. It uses a two-part authentication model: an application key (client/app identifier) plus an authentication token (user-scoped session credential). This is a common pattern for mobile-first ride-hailing backends.\n\nThe provided documentation is incomplete — the 'Authentication' section is truncated mid-heading ('## Appli'), and no concrete endpoints, request/response schemas, HTTP methods, or error codes were supplied. Consequently no endpoints could be enumerated. The staging base URL (https://staging-ecotaco.com) suggests a pre-production environment; the canonical API host appears to be api.ecota.co.\n\nMaturity assessment: The presence of versioned API paths (v2) and a separate staging environment indicates an established, versioned product rather than an early prototype. However, limited public documentation and fragmented branding (ecota.co vs ecotaco) suggest either an internal/partner-only API or a platform early in its external developer program.\n\nTarget users: ride-hailing app developers, mobility/fintech integrators, or partners looking to embed ride ordering and payment methods into their own apps.\n\nIntegrations: likely payment processors for card management and mapping/geolocation services for ride dispatch, though none are explicitly named in the provided content. No public REST endpoint listing, SDK, or rate-limit information was available."
}
```0/3 tests passed
| Test | Endpoint | Status | Latency |
|---|---|---|---|
| website_uptime | GET / | None | 159ms |
| robots_txt | GET /robots.txt | None | 76ms |
| llms_txt | GET /llms.txt | None | 94ms |
{
"overall": 18,
"dimensions": {
"token_efficiency": 4.0,
"first_try_success": 2.0,
"response_parseability": 2.0,
"error_clarity": 1.0,
"doc_quality": 1.0,
"auth_simplicity": 3.0,
"latency": 2.0,
"consistency": 1.0
},
"pricing_normalized": {
"model": "unknown",
"notes": "No pricing information was retrievable; every check failed at the TLS layer."
},
"issues": [
"All three checks (website_uptime, robots_txt, llms_txt) failed with SSL TLSV1_UNRECOGNIZED_NAME — server does not respond on the requested SNI, so no endpoint is reachable for inspection.",
"No llms.txt or equivalent agent-facing description exists (could not even be probed).",
"No robots.txt retrievable, so crawl/agent policy is unknown.",
"Lead capability set is generic (auth, account creation, credit card, ride ordering) with no named brand, docs, or API surface — value prop cannot be articulated to a user.",
"Pricing model is unknown, making cost-based recommendation impossible.",
"No security headers observed (moot given the failed handshake)."
],
"recommendations": [
"Fix TLS/SNI configuration so the host answers on HTTPS — currently unreachable to any agent, which caps every dimension.",
"Publish an llms.txt with a one-paragraph value prop, base URL, auth method, rate limits, and pricing model so agents can describe and integrate without a human.",
"Ship a documented, structured API (OpenAPI/JSON) for the ride-ordering and account flows; return machine-parseable errors.",
"Expose a public status page and uptime history; the current SSL failures strongly suggest unreliable infrastructure.",
"Clarify onboarding and auth: state whether signup is self-serve, SSO/magic-link capable, and whether agent identity (e.g., notlogin) is supported — auth is listed as a capability but no mechanism is described.",
"Add a robots.txt and clear terms for agent access to avoid ambiguity in automated usage.",
"Provide a pricing page or machine-readable pricing endpoint; unknown pricing blocks any cost recommendation."
]
}Show your live agent-readiness score on your own site. Free, no auth — it updates as your score changes.
<a href="https://prowl.world/service/apiecotaco-v2">
<img src="https://prowl.world/badge/apiecotaco-v2.svg" height="56" alt="Agent-readiness on Prowl">
</a>
See operational metrics, LLM evaluations, agent readiness, and more.
Open in Dashboard