Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.
Dedotto dai trasporti dichiarati da questo annuncio (stdio). Un client che non compare qui non è escluso — semplicemente Forge non è in grado di confermarlo.
La verifica conferma l’identità del publisher (la proprietà del repo), non la sicurezza del codice. L’analisi di sicurezza copre i CVE noti e gli script di installazione sospetti.
Letto dal codice che npm distribuisce davvero, al momento dell’analisi. Il pacchetto non è mai stato eseguito. Gli strumenti registrati dinamicamente a runtime, o nascosti in codice impacchettato o minificato, possono sfuggire — quindi questo è un limite inferiore della superficie di strumenti, non un censimento completo.
agent_payrischio di injectionSend tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. EverySend tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. Every
Send tokens from the agent vault to a recipient, signed by the agent asPer questo strumento non è stato pubblicato alcuno schema di input.
agent_wallet_statusShow an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance isShow an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance is
Per questo strumento non è stato pubblicato alcuno schema di input.
approve_agent_allowanceSet how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES theSet how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES the
Per questo strumento non è stato pubblicato alcuno schema di input.
create_agent_walletCreate an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token accountCreate an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token account
Per questo strumento non è stato pubblicato alcuno schema di input.
deploy_agent_onchainMint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004Mint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004
Per questo strumento non è stato pubblicato alcuno schema di input.
export_agent_runtimeProduce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalentProduce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalent
Per questo strumento non è stato pubblicato alcuno schema di input.
fund_agent_walletMove tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its ownMove tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its own
Per questo strumento non è stato pubblicato alcuno schema di input.
onchain-agent-walletsNessuna descrizione pubblicataQuesto strumento non ha pubblicato alcuna descrizione. Forge non se la inventa.
list_agent_walletsList the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, andList the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, and
Per questo strumento non è stato pubblicato alcuno schema di input.
pay_x402Call an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is readCall an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is read
Per questo strumento non è stato pubblicato alcuno schema di input.
revoke_agent_walletCancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agentCancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agent
Per questo strumento non è stato pubblicato alcuno schema di input.
send_signed_transactionBroadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait forBroadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait for
Per questo strumento non è stato pubblicato alcuno schema di input.
set_guardrailsSet the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowedSet the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowed
Per questo strumento non è stato pubblicato alcuno schema di input.
spend_logThe audit trail for one agent: every spend that went through and every one the guardrails refused, with theThe audit trail for one agent: every spend that went through and every one the guardrails refused, with the
Per questo strumento non è stato pubblicato alcuno schema di input.
withdraw_from_vaultWithdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,Withdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,
Per questo strumento non è stato pubblicato alcuno schema di input.
14 strumenti su 15 hanno pubblicato una descrizione.
I nomi e le descrizioni degli strumenti sono scritti dal publisher e mostrati alla lettera come testo inerte. Sono le stringhe che un client MCP passa a un modello, quindi Forge vi cerca schemi di prompt injection — ogni rilievo compare insieme all’analisi di sicurezza qui sopra. «Privilegiato» è una corrispondenza di parola chiave sul nome dello strumento, non una verifica di ciò che fa: un nome innocuo può comunque fare qualsiasi cosa.
Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.
I nomi collegati aprono l’indice Forge di tutte le voci osservate esporre quello strumento. Sfoglia tutti gli strumenti indicizzati.
La scansione si è fermata al limite di 60 pacchetti. Il resto dell'albero non è mai stato risolto.
Altri 36 pacchetti risolti non vengono disegnati qui (limite di visualizzazione: 24). Ogni dipendenza con un avviso di sicurezza viene disegnata comunque. Inventario completo (SBOM CycloneDX)
87 dipendenze dichiarate non sono mai arrivate nell'albero. Mancano dalla risoluzione di Forge, non dal pacchetto.
+75 altre non elencate. I conteggi per motivo qui sopra le comprendono tutte.
Non seguite: peerDependencies, optionalDependencies. Questo albero copre solo le dipendenze di runtime, quindi ciò che queste comportano non è mai stato risolto.