Back to Browse

Agentwallet MCP Server

FinanceModerate7.0MCP RegistryLocal
Free

Server data from the Official MCP Registry

Wallet infrastructure for Ai agents. EVM + Solana. x402 payments. No KYC.

About

Wallet infrastructure for Ai agents. EVM + Solana. x402 payments. No KYC.

Security Report

7.0
Moderate7.0Low Risk

Valid MCP server (2 strong, 4 medium validity signals). 3 known CVEs in dependencies (0 critical, 3 high severity) Imported from the Official MCP Registry. 1 finding(s) downgraded by scanner intelligence.

3 files analyzed · 4 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

What You'll Need

Set these up before or after installing:

Your AgentWallet API key from hifriendbot.com/wallet/Required

Environment variable: AGENTWALLET_API_KEY

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-hifriendbot-agentwallet": {
      "env": {
        "AGENTWALLET_API_KEY": "your-agentwallet-api-key-here"
      },
      "args": [
        "-y",
        "agentwallet-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

AgentWallet MCP Server

Permissionless wallet infrastructure for AI agents. Create wallets, sign transactions, and broadcast on-chain, on any EVM chain and Solana. Built-in guards. No KYC. The only AI agent wallet that accepts crypto for its own API fees.

Your keys can stay on your machine. Set one environment variable and every signature happens in your own process. No server sees the key, no company can freeze the wallet, and you can verify that claim by reading src/local-wallet.ts or by running the server with the API pointed at a closed port.

No KYC. No KYT. No approval process. No transaction monitoring. No one can block your wallet. Pay with USDC on-chain, no credit card required.

Two modes

Local (self-custody)Hosted (custodial)
Who holds the keyYou, in your own processEncrypted on AgentWallet servers
Set upOne env var, no account neededAPI key
ChainsEVM + SolanaEVM + Solana
Can anyone freeze itNoYes, that is what pause is for
Spend guardsAGENTWALLET_MAX_TX_NATIVE, AGENTWALLET_MAX_TX_SOL, AGENTWALLET_MAX_AUTOPAYServer-side limits, pause, rate limits
Paywalls, usage, billingNeeds an API key tooIncluded

Run wallet_mode at any time and the server will tell you which one you are in, and which address it controls.

Local signing in one variable

{
  "mcpServers": {
    "agentwallet": {
      "command": "npx",
      "args": ["-y", "agentwallet-mcp"],
      "env": {
        "AGENTWALLET_PRIVATE_KEY": "0xyour_key",
        "AGENTWALLET_RPC_8453": "https://your-own-rpc",
        "AGENTWALLET_MAX_TX_NATIVE": "0.05"
      }
    }
  }
}

Use AGENTWALLET_KEYFILE=/path/to/key instead if you would rather keep the key out of your shell config. The key is read once, never written to disk, never logged, and never included in an error message.

AGENTWALLET_RPC_<chainId> (or AGENTWALLET_RPC_URL for all chains) points at an endpoint you trust. Without it a public RPC is used, and a public RPC can see which addresses you ask about.

AGENTWALLET_MAX_TX_NATIVE is a per-transaction ceiling in native units. In hosted mode the server enforces limits; in local mode there is no server, so this guard is the only one there is. Set it.

Solana local signing

"env": {
  "AGENTWALLET_SOLANA_KEY": "[12,34...]",
  "AGENTWALLET_SOLANA_RPC": "https://your-own-rpc",
  "AGENTWALLET_MAX_TX_SOL": "1"
}

Accepts whichever format you already have: a solana-keygen id.json array, a base58 secret key as exported by Phantom, or base64. Use AGENTWALLET_SOLANA_KEYFILE to point at a file instead. Native SOL and SPL token transfers are both signed locally, and a missing associated token account is created for the recipient automatically.

Set either key, or both. They are independent: run EVM locally and Solana hosted, or the reverse.

An operation with no matching local key is refused, never silently routed to the hosted signer. If you have an EVM key configured and ask for a Solana transfer with no Solana key, the server stops and tells you which variable is missing. Quietly moving funds onto a key you do not hold, while you believe you are in self-custody, is the worst thing this server could do.

About the dependency tree

Local signing uses viem for EVM and @solana/web3.js for Solana, plus bs58 for key parsing. SPL instructions are built by hand rather than with @solana/spl-token, because that package pulls in bigint-buffer, which carries a high severity buffer overflow advisory. A wallet has no business shipping that to save a dozen lines of instruction encoding.

npm audit currently reports issues inside @modelcontextprotocol/sdk's HTTP transport dependencies. This server speaks stdio, so that code never loads, and the SDK is not something this package can patch. Run the audit yourself. Publishing a tree you can inspect is the point.

Features

  • 31 MCP tools: create wallets, send transactions, approve tokens, wrap ETH, transfer SPL tokens, pay and accept x402 payments, verify custody mode, and more
  • EVM + Solana: Ethereum, Base, Polygon, BSC, Arbitrum, Optimism, Avalanche, Zora, PulseChain, Solana, and any other EVM-compatible chain
  • SOL + SPL tokens: native SOL transfers and SPL token transfers (USDC, USDT, etc.) with automatic account creation
  • Built-in guards: daily spending limits, gas price protection, emergency pause, rate limiting, replay protection, and on-chain verification, all active by default
  • x402 payments: pay for x402-enabled APIs automatically, or accept x402 payments on your own endpoints (EVM and Solana)
  • Self-custody option: run local mode and the key never leaves your machine. In hosted mode, keys are encrypted at rest, decrypted only during signing, and zeroed from memory immediately after. Either way you can export and walk away.
  • Permissionless: No KYC. No KYT. No identity verification. No approval process. No compliance gatekeeping. Sign up, get an API key, and start transacting immediately.
  • 30-second setup: three lines of config. No SDK to install. No dependencies to manage.

Pricing

  • $0.00345 per operation
  • 6,000 free operations/month
  • $0.0005 per x402 verification
  • 1,000 free x402 verifications/month
  • Pay with USDC on-chain via x402, no credit card required
  • No monthly fee, no tiers, just pay as you go

Competitor comparisons are kept at hifriendbot.com/wallet/#pricing with the date they were last verified. They live there rather than here because a published npm README cannot be corrected when someone else changes their prices.

Quick Start

Get your free API key at hifriendbot.com/wallet, no credit card required, no KYC, no approval wait.

Claude Desktop / OpenClaw

Add to your config:

{
  "mcpServers": {
    "agentwallet": {
      "command": "npx",
      "args": ["-y", "agentwallet-mcp"],
      "env": {
        "AGENTWALLET_USER": "your_username",
        "AGENTWALLET_PASS": "your_api_key",
        "AGENTWALLET_WALLET_ID": "1"
      }
    }
  }
}

AGENTWALLET_WALLET_ID is optional. Set it to enable x402 auto-pay: when you exceed the free tier without a credit card, the MCP server automatically pays for operations with USDC from this wallet.

Auto-pay safety cap. AGENTWALLET_MAX_AUTOPAY (optional, default 1) is the maximum amount, in human-readable units of the asset, that x402 auto-pay will authorize for a single payment. Any 402 requirement above this cap is rejected instead of paid, so a malformed or tampered payment requirement cannot drain the wallet. Raise it only if you genuinely need larger automatic payments (for example "5" to allow up to 5 USDC per call).

Claude Code

claude mcp add agentwallet \
  -e AGENTWALLET_USER=your_username \
  -e AGENTWALLET_PASS=your_api_key \
  -e AGENTWALLET_WALLET_ID=1 \
  -- npx -y agentwallet-mcp

VS Code

Add to your settings:

{
  "mcp": {
    "servers": {
      "agentwallet": {
        "command": "npx",
        "args": ["-y", "agentwallet-mcp"],
        "env": {
          "AGENTWALLET_USER": "your_username",
          "AGENTWALLET_PASS": "your_api_key",
          "AGENTWALLET_WALLET_ID": "1"
        }
      }
    }
  }
}

Tools

ToolDescription
create_walletCreate a new EVM or Solana wallet
list_walletsList all your wallets
get_walletGet wallet details by ID
get_balanceCheck native token balance on any chain
get_token_balanceCheck ERC-20 or SPL token balance
get_token_infoGet ERC-20 token name, symbol, and decimals
transferSend native tokens (ETH, SOL, POL, BNB, etc.)
transfer_tokenSend ERC-20 or SPL tokens (USDC, USDT, etc.)
send_transactionSign and broadcast a raw transaction
sign_transactionSign a transaction without broadcasting
call_contractRead-only contract call (eth_call)
approve_tokenApprove ERC-20 token spending for DeFi
get_allowanceCheck ERC-20 token allowance
wrap_ethWrap native tokens to WETH/WAVAX/etc.
unwrap_ethUnwrap WETH back to native tokens
pay_x402Pay x402 invoices automatically (fetch, pay, retry)
create_paywallCreate an x402 paywall to charge for a resource
list_paywallsList all your x402 paywalls
get_paywallGet paywall details by ID
update_paywallUpdate paywall pricing, resource, or status
delete_paywallDelete a paywall
get_paywall_paymentsView payment history for a paywall
get_x402_revenueAggregate revenue stats across all paywalls
wallet_modeReport whether signing is local (self-custody) or hosted, and which address is in use
export_wallet_keyHow to export a hosted wallet key and move to self-custody
buy_verification_creditsBuy x402 verification credits with USDC on-chain
get_usageCheck your monthly usage and billing
get_chainsList all supported chains
pause_walletEmergency pause a wallet
unpause_walletResume a paused wallet
delete_walletDelete a wallet

Supported Chains

ChainIDNative TokenStablecoin
Ethereum1ETHUSDC
Base8453ETHUSDC
Polygon137POLUSDC
BSC56BNBUSDT
Arbitrum42161ETHUSDC
Optimism10ETHUSDC
Avalanche43114AVAXUSDC
Zora7777777ETHUSDC
PulseChain369PLSUSDC
Solana900SOLUSDC
Solana Devnet901SOLUSDC

Use Case: GuessMarket

Pair with guessmarket-mcp to let your AI agent trade prediction markets:

  1. Create a wallet on Base
  2. Approve USDC spending
  3. Buy YES/NO shares on prediction markets
  4. Provide liquidity and earn trading fees
  5. Claim winnings

All on-chain. All through MCP. No frontend needed.

x402 Payments

AgentWallet natively supports the x402 open payment standard. When your Ai agent encounters an API that returns HTTP 402 Payment Required, the pay_x402 tool handles the entire flow automatically:

  1. Fetches the URL and detects the 402 response
  2. Parses the payment requirements (amount, token, chain)
  3. Executes the on-chain payment from your wallet
  4. Retries the request with proof of payment
  5. Returns the final response

Set max_payment to control spending:

pay_x402(
  url="https://api.example.com/premium-data",
  wallet_id=1,
  max_payment="1.00"
)

max_payment is enforced as a hard per-payment cap. If you omit it, pay_x402 falls back to AGENTWALLET_MAX_AUTOPAY (default 1), the same cap the auto-pay path uses, so a malicious or compromised 402 endpoint can never authorize an unbounded payment. Set max_payment explicitly (or raise AGENTWALLET_MAX_AUTOPAY) to allow a larger single payment.

Supports ERC-20 tokens, SPL tokens, and native tokens on EVM and Solana. Compatible with x402 V1 and V2 (CAIP-2 chain identifiers), and reads the token address from the standard x402 asset field (falling back to extra.token).

x402 Acceptance

AgentWallet also lets you accept x402 payments. Create a paywall, point it at any resource, and get a public URL that charges agents automatically:

create_paywall(
  wallet_id=1,
  name="Premium API",
  amount="0.01",
  token_name="USDC",
  token_address="0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
  chain_id=8453,
  resource_url="https://your-api.com/data"
)

When an agent hits the paywall URL:

  1. Gets back HTTP 402 with payment requirements
  2. Pays on-chain using pay_x402 (or any x402-compatible client)
  3. Retries with proof of payment
  4. Receives the protected content

On-chain verification ensures every payment is real. Replay protection prevents double-spending. Revenue tracking shows you who paid, how much, and when. 1,000 free verifications/month, then $0.0005 each. See the pricing comparison for how that stacks up.

How We Compare

FeatureCoinbase CDPAgentWallet
Setup TimeInstall SDK + configure3 lines of config
Approval ProcessIdentity verification requiredNone, instant access
KYC RequiredYesNo
KYT / Transaction MonitoringYesNo
Can Block Your WalletYesNo
Built-in GuardsYes (requires setup)Yes (active by default)
Free Operations / Month5,0006,000
Cost Per Operation$0.005$0.00345
x402 Verification Cost$0.001$0.0005
Free x402 Verifications / Month1,0001,000
x402 Acceptance (Paywalls)NoYes
Pay for API Fees with CryptoNo (credit card only)Yes (USDC via x402)
Supported Chains8 EVM + SolanaAny EVM + Solana
Token ToolsYesERC-20 + SPL (29 tools)
MCP ServerYesYes

Pay with Crypto, No Credit Card Required

AgentWallet is the only AI agent wallet infrastructure that accepts crypto for its own API fees. Every competitor, Coinbase CDP, Circle, MoonPay, Crossmint, Turnkey, requires a credit card or monthly invoice. With AgentWallet, your agent can pay for operations with USDC on-chain via the x402 protocol. No credit card, no invoice, no billing portal. Just on-chain payments.

When your agent exceeds the free tier (6,000 ops/month) without a credit card configured, the API returns HTTP 402 with USDC payment instructions. Your agent pays on-chain, retries with proof of payment, and the operation executes. Fully automated via the MCP server.

You can also pre-purchase x402 verification credits with USDC using the buy_verification_credits tool, keeping your paywalls running beyond the free 1,000 verifications/month without needing a credit card.

Built-in Guards

All guards are active by default, no configuration required.

  • Encrypted at rest: private keys encrypted before storage and never leave the server
  • Memory zeroing: keys wiped from memory immediately after every signing operation
  • Daily spending limits: set a per-wallet daily cap in USD, enforced automatically on every transaction
  • Gas price protection: transactions blocked when gas prices spike above safe thresholds
  • Emergency pause: instantly freeze any wallet or all wallets with one click
  • Rate limiting: API requests capped per minute to prevent abuse and brute force attacks
  • Replay protection: every x402 payment verified on-chain with unique transaction tracking
  • On-chain verification: x402 payments verified directly on the blockchain with finalized commitment
  • Bug bounty program: $50,$500 for responsible disclosure (details)

Links

Security

pay_x402 validates the target URL before every outbound request and again on each redirect hop. IP literals are canonicalized (including IPv4-mapped IPv6 such as [::ffff:127.0.0.1]) and hostnames are resolved, with loopback, private, link-local, carrier-grade NAT, multicast and cloud-metadata destinations refused. Report security issues privately to security@hifriendbot.com.

License

MIT

Reviews

No reviews yet

Be the first to review this server!