Mmcp.market

Agentpay MCP server

by up2itnow0822·io.github.up2itnow0822/agentpay·v3.1.0·6 stars

Non-custodial x402 payment MCP server for AI agents. Wallets and payments on 17 chains.

B83/100grade B
What users say
No reviews yet
Be the first
Safety scan
B83/100

full report

Adoption
Growing

6 stars111 downloads/wk

Reviews

Write one

Nobody has reviewed Agentpay yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

Agentpay tools (11, 3 write)

write = sends, deletes, buys or posts

Read from the package source without running it. The installed server may list more.

  • check_spend_limit

    Check whether a proposed payment amount is within the wallet's autonomous spend limits.

  • deploy_walletwrite action

    Deploy a new AgentAccountV2 wallet via the factory contract.

  • get_transaction_history

    Retrieve the wallet's recent on-chain transaction history from event logs.

  • get_wallet_info

    Get comprehensive wallet information including address, on-chain balance,

  • queue_approval

    Manage over-limit transactions queued for owner review.

  • send_paymentwrite action

    Send ETH or ERC20 tokens from the Agent Wallet.

  • x402_paywrite action

    Fetch a URL and automatically handle HTTP 402 Payment Required responses.

  • x402_session_end

    Explicitly close an x402 V2 session before it expires naturally.

  • x402_session_fetch

    Make an HTTP request within an established x402 V2 session — NO payment required.

  • x402_session_start

    Establish an x402 V2 payment session: make a SINGLE on-chain payment and receive

  • x402_session_status

    Check the status of x402 V2 payment sessions.

Public scan report

scanner v0.1.10 · 2026-09-27 · same rubric, same numbers if you re-run it

no findings
  • Code scan24 source files scanned25/25
  • –Live reliabilityno gateway calls yet and no remote to proben/a
  • –Tool poisoningtools not inspected (local package is not executed); not countedn/a
  • Auth qualitystatic API keys via environment variables6/15
  • Maintenancelast push 1 days ago15/15
  • Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10
Overall 83/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

Install Agentpay in Claude Code, Cursor or VS Code

Runs npx -y agentpay-mcp on your machine. Read the scan report first; the gateway never runs local packages.

claude mcp add agentpay -- npx -y agentpay-mcp
Add to Cursor

What the publisher says

From the Agentpay repository's README, as published. We do not edit it. Read it on GitHub

AgentPay MCP

AgentPay MCP is a stdio Model Context Protocol server for x402 payments and wallet operations. It exposes Agent Wallet SDK functions as MCP tools and loads a caller-controlled signing key from the local process environment.

The current npm package is agentpay-mcp v4.1.17.

Start without funds

Check the installed command without loading wallet credentials:

npx -y agentpay-mcp --version
npx -y agentpay-mcp --help

Use the AgentPay Wallet Starter for a no-funds verification of allowed, approval-required, and blocked policy outcomes.

MCP client configuration

Wallet tools read the following environment variables:

Example MCP configuration:

{
  "mcpServers": {
    "agentpay": {
      "command": "npx",
      "args": ["-y", "agentpay-mcp"],
      "env": {
        "AGENT_PRIVATE_KEY": "<secret-reference-or-local-key>",
        "AGENT_WALLET_ADDRESS": "0x<deployed-wallet-address>",
        "CHAIN_ID": "84532"
      }
    }
  }
}

Do not commit a real signing key. Use the client or operating system's secret mechanism where one exists. Start on Base Sepolia before using Base mainnet.

Tool groups

The tool registry in src/index.ts exposes these groups:

Tool schemas and handlers live under src/tools/.

Security boundaries

These boundaries matter more than the feature list:

viem for signing. Protect the process, environment, and MCP client config.

  • The server reads AGENTPRIVATEKEY into its local Node.js process and uses

call that tool again, and a process restart clears its rolling state.

  • setspendpolicy stores policy in the MCP server process. The same agent can

this is still application-level enforcement.

  • Every current value-moving handler calls the in-process policy check, but

AgentAccountV2. setspendpolicy does not write those contract limits.

  • On-chain limits exist only when the wallet owner configures them directly on

separate from the agent key.

  • An over-limit transaction is a human gate only when the owner key is kept

request log and does not record rejected pre-chain attempts or read-only calls.

  • gettransactionhistory reads on-chain wallet events. It is not an MCP

Sepolia. Unsupported chain IDs fail closed in src/utils/client.ts.

  • Runtime wallet configuration currently supports Base mainnet and Base

with bounded values and independent wallet limits.

  • Swap, bridge, escrow, and payment tools can move funds and consume gas. Test

Shortened. The full README is on GitHub.

Nothing above is checked by us. What we check is on the safety report.

Agentpay: common questions

Is Agentpay MCP server safe?
Mostly: it is graded B (83/100). Read the Agentpay safety report
How do I install Agentpay?
It runs on your machine. Copy the Claude Code, Cursor, VS Code or Claude Desktop config from the install section.
Does Agentpay need an API key?
Yes. The registry entry asks for AGENT_PRIVATE_KEY.
Is Agentpay maintained?
The last commit was in the last day (2026-09-26). The latest release is v3.1.0.
What can I use instead of Agentpay?
Servers from other publishers that do the same job: X402 List MCP server, PipRail MCP server and Pulsefeed X402 MCP server. Compare all Agentpay alternatives.

Alternatives to Agentpay

Same job from other publishers: the closest match first, then the best rated.

All Agentpay alternatives →
  • X402 List
    Find and vet x402 payment APIs before your agent pays one: uptime, price, on-chain volume.
    A
  • PipRail
    Budget-bound x402 payment wallet for AI agents — pays HTTP 402 URLs, capped locally. No backend.
    B
  • Pulsefeed X402
    Verify x402 payment endpoints before an AI agent pays: scam scan, on-chain checks, trust scores.
    A
  • three.ws Agent Payments
    Governed x402 payment sessions: pay any endpoint with budget, allowlist & per-tx caps, no key.
    B
  • Agent402.Tools: pay-per-call web tools
    Agentic Finance: 500+ agent tools, multi-chain USDC over x402 or MPP, free via PoW or card credits
    A

More from up2itnow0822 →