Built on x402 · Base · Coinbase — open source, MIT

The rails of the agent economy.

Know it's safe. Prove you're allowed. Verify & get paid on one handle. And never lose your agent, your credits, or your evidence.

Four open-source pillars that give agents — and the humans who deploy them — identity, safety, permission, and custody.

The four pillars

Composable on their own; together they form a trust chain no single tool provides.

IDENTITY

Inbox

Your wallet address IS your email. Deterministic handle, SSRF-safe auto-verification, signed proofs.

● Live endpoint
SAFETY

Token Risk

Pay-per-call 0–100 risk scoring: market data + contract flags (honeypot, mintable, taxes).

● Live · charging via x402
PERMISSION

Authority

Least-privilege agent contracts, gates, and an append-only evidence ledger.

○ Open source
CUSTODY

Recovery

Guardian-threshold key recovery, signed proof-of-custody, verifiable ownership ledger.

● Live endpoint

Free

Agent Stack is open source and free to use.

Everything

$0
  • Wallet-address handle derivation
  • Token risk API — pay-per-call, free to try
  • Managed inbox · verifications · proof
  • Authority · evidence ledger · gates
  • Recovery · custody · ownership ledger
  • ● Live now · open source · MIT

No signup, no paywall, no card. Use the stack directly, or reach out to collaborate and support.

Live endpoints (verify by curl)

Every pillar is publicly reachable and tested.

ServiceEndpointCheck
Token Risk APItoken-risk-api-topaz.vercel.appGET /health → paymentMode: live
Agent Inboxagent-inbox-pi.vercel.appGET /handle/<addr> → wallet-email
Agent Recoveryagent-recovery.vercel.appGET /health + /custody/binding → signed proof

Demo handles / risk checks are stateless; Managed Inbox adds durable persistence. Endpoint responses are wrapped via the client; the underlying APIs return JSON directly.

Open source

Auditable by design — a trust standard must be. All MIT, on GitHub under prayingperceptions.

agent-inbox 13/13 tests

Identity + inbox. SSRF allowlist, HMAC-signed proofs, fail-closed.

token-risk-api 7/7 tests

Safety. Fail-closed x402 gate, official Bazaar discovery extension.

agent-authority green

Permission. Gate, contracts, evidence ledger, red-team tested.

agent-recovery 18/18 tests

Custody. Guardian threshold, signed body verification, rotation chain.

Security audit on file (red-team + pentest): research/security-audit-2026-09-22.md. Production-safety fixes applied across all repos.

Free · open · yours to build on

No signup, no paywall. If you want to learn more, collaborate, or support Agent Stack, reach out directly:

prayingperceptions@gmail.com