@three-ws/onchain-agent-wallets

MCPcommunity
v0.1.0io.github.nirholasUnknownAggiornato 21 g fanpmGitHub

Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.

Funziona in
ClaudeCursorCopilotGemini

Dedotto dai trasporti dichiarati da questo annuncio (stdio). Un client che non compare qui non è escluso — semplicemente Forge non è in grado di confermarlo.

Indicizzato automaticamente da fonti pubbliche. Non ancora verificato dal suo sviluppatore su Forge.Rivendica questo annuncio →
21 g faUltimo aggiornamento
Pacchetto
Autoreio.github.nirholas
LicenzaUnknown
Versione0.1.0
Fontenpm+mcp-registry
Stato di fiducia
C
40/100Attenzione
Presente nell’indice di Forge+10/10
Identità del publisher verificata+0/20
Publisher: esegui `forge publish` dal repo del pacchetto per rivendicarne la proprietà
Firma di pubblicazione Ed25519+0/5
Inclusa automaticamente quando il publisher esegue `forge publish`
Verifica del dominio+0/5
Publisher: ospita /.well-known/forge.json sulla homepage del pacchetto con { "publisher": "<github-login>" }
npm Trusted Publishing (Sigstore)+0/5
Pubblica da GitHub Actions con --provenance perché l’attestation leghi questo pacchetto a questo repo
Corrispondenza del maintainer npm+0/5
Si ottiene quando la tua identità è verificata qui sopra e quel login è maintainer npm di questo pacchetto
Analisi CVE · pulita+30/30
Analisi statica · pulita+0/20
Rilevati script di installazione sospetti o codice offuscato
Incollalo in Claude Code, Cursor o qualsiasi assistente di IA per colmare tutte le lacune
StatoIndicizzato dalla community
PublisherNon verificato
FirmaNon firmato
Dominio
Provenienza
Dipendenze✓ 60 risolte+ · nessuna vulnerabile
Superficie di strumenti15 strumenti · nessuno privilegiato
Analisi di sicurezza⚠ Avvisi (1)v0.1.0 · oggiQuanto è efficace questa analisi?
PROMPTtool:agent_payExfiltration-shaped instruction
ValutazioniNessuna
Indicizzato20 ago 2026

La verifica conferma l’identità del publisher (la proprietà del repo), non la sicurezza del codice. L’analisi di sicurezza copre i CVE noti e gli script di installazione sospetti.

Strumenti

15 strumenti · nessuno privilegiato · 1 segnalati per injection
Estratto staticamente dal pacchetto pubblicatov0.1.0 · 3h ago

Letto dal codice che npm distribuisce davvero, al momento dell’analisi. Il pacchetto non è mai stato eseguito. Gli strumenti registrati dinamicamente a runtime, o nascosti in codice impacchettato o minificato, possono sfuggire — quindi questo è un limite inferiore della superficie di strumenti, non un censimento completo.

agent_payrischio di injectionSend tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. Every

Send tokens from the agent vault to a recipient, signed by the agent as the on-chain delegate. Every

INIEZIONEExfiltration-shaped instructionSend tokens from the agent vault to a recipient, signed by the agent as

Per questo strumento non è stato pubblicato alcuno schema di input.

agent_wallet_statusShow an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance is

Show an agent wallet as it actually stands on-chain: vault balance, how much of the delegated allowance is

Per questo strumento non è stato pubblicato alcuno schema di input.

approve_agent_allowanceSet how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES the

Set how much the agent may spend from the vault, enforced by the SPL Token program. This REPLACES the

Per questo strumento non è stato pubblicato alcuno schema di input.

create_agent_walletCreate an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token account

Create an agent wallet on Solana. Generates a fresh keypair for the agent, creates a vault token account

Per questo strumento non è stato pubblicato alcuno schema di input.

deploy_agent_onchainMint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004

Mint the agent an on-chain identity in the Metaplex Agent Registry on Solana, carrying its EIP-8004

Per questo strumento non è stato pubblicato alcuno schema di input.

export_agent_runtimeProduce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalent

Produce the config that puts this agent wallet in front of a model: an mcp.json block, the equivalent

Per questo strumento non è stato pubblicato alcuno schema di input.

fund_agent_walletMove tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its own

Move tokens from your wallet into the agent vault, and optionally send the agent a little SOL for its own

Per questo strumento non è stato pubblicato alcuno schema di input.

onchain-agent-walletsNessuna descrizione pubblicata

Questo strumento non ha pubblicato alcuna descrizione. Forge non se la inventa.

list_agent_walletsList the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, and

List the agent wallets configured here, each with its live vault balance, remaining on-chain allowance, and

Per questo strumento non è stato pubblicato alcuno schema di input.

pay_x402Call an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is read

Call an HTTP endpoint that charges with x402, paying from the agent allowance on Solana. The price is read

Per questo strumento non è stato pubblicato alcuno schema di input.

revoke_agent_walletCancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agent

Cancel the agent's delegation on-chain. After this the SPL Token program refuses every transfer the agent

Per questo strumento non è stato pubblicato alcuno schema di input.

send_signed_transactionBroadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait for

Broadcast a base64 transaction that Phantom, Solflare, Backpack, or a Ledger already signed, and wait for

Per questo strumento non è stato pubblicato alcuno schema di input.

set_guardrailsSet the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowed

Set the rules this server enforces before it signs a spend: per-transaction cap, rolling 24h cap, allowed

Per questo strumento non è stato pubblicato alcuno schema di input.

spend_logThe audit trail for one agent: every spend that went through and every one the guardrails refused, with the

The audit trail for one agent: every spend that went through and every one the guardrails refused, with the

Per questo strumento non è stato pubblicato alcuno schema di input.

withdraw_from_vaultWithdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,

Withdraw tokens from an agent vault back to your own wallet. The vault is yours, so this always works,

Per questo strumento non è stato pubblicato alcuno schema di input.

14 strumenti su 15 hanno pubblicato una descrizione.

I nomi e le descrizioni degli strumenti sono scritti dal publisher e mostrati alla lettera come testo inerte. Sono le stringhe che un client MCP passa a un modello, quindi Forge vi cerca schemi di prompt injection — ogni rilievo compare insieme all’analisi di sicurezza qui sopra. «Privilegiato» è una corrispondenza di parola chiave sul nome dello strumento, non una verifica di ciò che fa: un nome innocuo può comunque fare qualsiasi cosa.

Descrizione

Give an AI agent a Solana spending allowance instead of your key. Chain-enforced cap, x402.

Parole chiave
mcp
Alternative
Confronto delle superfici di strumenti…

Albero delle dipendenze

Ciò che una scansione di Forge ha risolto dai metadati npm il 2026-09-10: risoluzione osservata, non una dichiarazione dell'editore.

60 pacchetti risolti · 9 diretti · nessuno con avvisi di sicurezza La risoluzione si ferma alla profondità 4 e a 60 pacchetti.

La scansione si è fermata al limite di 60 pacchetti. Il resto dell'albero non è mai stato risolto.

Altri 36 pacchetti risolti non vengono disegnati qui (limite di visualizzazione: 24). Ogni dipendenza con un avviso di sicurezza viene disegnata comunque. Inventario completo (SBOM CycloneDX)

Dichiarate ma non risolte

87 dipendenze dichiarate non sono mai arrivate nell'albero. Mancano dalla risoluzione di Forge, non dal pacchetto.

+75 altre non elencate. I conteggi per motivo qui sopra le comprendono tutte.

Non seguite: peerDependencies, optionalDependencies. Questo albero copre solo le dipendenze di runtime, quindi ciò che queste comportano non è mai stato risolto.

Argomenti

Correlati in crypto & web3