@three-ws/onchain-agent-wallets

MCPcommunauté
v0.1.0io.github.nirholasUnknownMis à jour il y a 21 jnpmGitHub

Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.

Fonctionne dans
ClaudeCursorCopilotGemini

Déduit des transports déclarés par cette annonce (stdio). Un client absent de cette liste n’est pas écarté pour autant — c’est simplement quelque chose que Forge ne peut pas confirmer.

Indexé automatiquement depuis des sources publiques. Pas encore vérifié par son développeur sur Forge.Revendiquer cette annonce →
il y a 21 jDernière mise à jour
Paquet
Auteurio.github.nirholas
LicenceUnknown
Version0.1.0
Sourcenpm+mcp-registry
Statut de confiance
C
40/100Prudence
Listé dans l’index Forge+10/10
Identité de l’éditeur vérifiée+0/20
Éditeur : exécutez `forge publish` depuis le dépôt du paquet pour revendiquer la propriété
Signature de publication Ed25519+0/5
Incluse automatiquement quand l’éditeur exécute `forge publish`
Vérification de domaine+0/5
Éditeur : hébergez /.well-known/forge.json sur la page d’accueil du paquet avec { "publisher": "<github-login>" }
npm Trusted Publishing (Sigstore)+0/5
Publiez depuis GitHub Actions avec --provenance pour que l’attestation lie ce paquet à ce dépôt
Correspondance de mainteneur npm+0/5
Acquis dès que votre identité est vérifiée ci-dessus et que ce login est mainteneur npm de ce paquet
Analyse CVE · propre+30/30
Analyse statique · propre+0/20
Scripts d’installation suspects ou code obfusqué détectés
Collez-le dans Claude Code, Cursor ou tout assistant d’IA pour combler toutes les lacunes
StatutIndexé par la communauté
ÉditeurNon vérifié
SignatureNon signé
Domaine
Provenance
Dépendances✓ 60 résolues+ · aucune vulnérable
Surface d’outils15 outils · aucun privilégié
Analyse de sécurité⚠ Avertissements (1)v0.1.0 · aujourd’huiQuelle est l’efficacité de cette analyse ?
PROMPTtool:agent_payExfiltration-shaped instruction
ÉvaluationsAucune
Indexé20 août 2026

La vérification confirme l’identité de l’éditeur (la propriété du dépôt), pas la sûreté du code. L’analyse de sécurité couvre les CVE connues et les scripts d’installation suspects.

Outils

15 outils · aucun privilégié · 1 signalés pour injection
Extrait statiquement du paquet publiév0.1.0 · 3h ago

Lu dans le code que npm livre réellement, au moment de l’analyse. Le paquet n’a jamais été exécuté. Les outils enregistrés dynamiquement à l’exécution, ou cachés dans du code empaqueté ou minifié, peuvent passer inaperçus — c’est donc un plancher de la surface d’outils, pas un recensement complet.

agent_payrisque d’injectionSend tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. Every

Send tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. Every

INJECTIONExfiltration-shaped instructionSend tokens from the agent vault to a recipient, signed by the agent as

Aucun schéma d’entrée n’a été publié pour cet outil.

agent_wallet_statusShow an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance is

Show an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance is

Aucun schéma d’entrée n’a été publié pour cet outil.

approve_agent_allowanceSet how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES the

Set how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES the

Aucun schéma d’entrée n’a été publié pour cet outil.

create_agent_walletCreate an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token account

Create an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token account

Aucun schéma d’entrée n’a été publié pour cet outil.

deploy_agent_onchainMint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004

Mint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004

Aucun schéma d’entrée n’a été publié pour cet outil.

export_agent_runtimeProduce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalent

Produce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalent

Aucun schéma d’entrée n’a été publié pour cet outil.

fund_agent_walletMove tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its own

Move tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its own

Aucun schéma d’entrée n’a été publié pour cet outil.

onchain-agent-walletsAucune description publiée

Cet outil n’a publié aucune description. Forge n’en invente pas.

list_agent_walletsList the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, and

List the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, and

Aucun schéma d’entrée n’a été publié pour cet outil.

pay_x402Call an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is read

Call an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is read

Aucun schéma d’entrée n’a été publié pour cet outil.

revoke_agent_walletCancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agent

Cancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agent

Aucun schéma d’entrée n’a été publié pour cet outil.

send_signed_transactionBroadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait for

Broadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait for

Aucun schéma d’entrée n’a été publié pour cet outil.

set_guardrailsSet the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowed

Set the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowed

Aucun schéma d’entrée n’a été publié pour cet outil.

spend_logThe audit trail for one agent: every spend that went through and every one the guardrails refused, with the

The audit trail for one agent: every spend that went through and every one the guardrails refused, with the

Aucun schéma d’entrée n’a été publié pour cet outil.

withdraw_from_vaultWithdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,

Withdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,

Aucun schéma d’entrée n’a été publié pour cet outil.

14 outils sur 15 ont publié une description.

Les noms et descriptions d’outils sont écrits par l’éditeur et affichés tels quels, comme du texte inerte. Ce sont les chaînes qu’un client MCP transmet à un modèle, alors Forge y recherche des motifs d’injection de prompt — tout constat apparaît avec l’analyse de sécurité ci-dessus. « Privilégié » est une correspondance de mot-clé sur le nom de l’outil, pas un audit de ce qu’il fait : un nom anodin peut tout de même tout faire.

À propos

Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.

Mots-clés
mcp
Alternatives
Comparaison des surfaces d’outils…

Arbre de dépendances

Ce qu'une analyse Forge a résolu à partir des métadonnées npm le 2026-09-10 — résolution observée, et non une déclaration de l'éditeur.

60 paquets résolus · 9 directs · aucun porteur d'avis de sécurité La résolution s'arrête à la profondeur 4 et à 60 paquets.

L'exploration s'est arrêtée à la limite de 60 paquets. Le reste de l'arbre n'a jamais été résolu.

36 autres paquets résolus ne sont pas dessinés ici (limite d'affichage : 24). Toute dépendance porteuse d'un avis de sécurité est dessinée quelle que soit la limite. Inventaire complet (SBOM CycloneDX)

Déclarées mais non résolues

87 dépendances déclarées ne sont jamais arrivées dans l'arbre. Elles manquent à la résolution de Forge, pas au paquet.

+75 de plus non listées. Les comptes par motif ci-dessus les couvrent toutes.

Non suivies : peerDependencies, optionalDependencies. Cet arbre ne couvre que les dépendances d'exécution ; ce qu'elles entraînent n'a jamais été résolu.

Thèmes

Apparentés dans crypto & web3