Install
$ agentstack add mcp-haustorium12-gold-402 ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ● Network access Used
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
gold-402
> The gold standard for x402 resources. Facilitators, SDKs, APIs, MCP servers, tools, and ecosystem data — curated by 24K Labs. No filler. No dead links. Updated monthly.
[](https://github.com/Haustorium12/gold-402) [](https://github.com/Haustorium12/gold-402/commits/main) [](https://x402.org/ecosystem) [](https://24klabs.ai) [](directory/facilitators.md)
The x402 ecosystem passed 50M transactions in March 2026. 300+ projects across 8 chains. 10,000%+ year-over-year growth. The community awesome-list accepts everything — that's its job.
gold-402 doesn't. Every entry in the README earned its place. The full catalog lives in [directory/](directory/).
This is the editorial layer: curated picks with context and badges, backed by an exhaustive reference directory. Two layers, one repo.
Featured This Month
> ★ July 2026 — [24K Labs Verification Report: Three-Quarters of the x402 Bazaar Is Dead](articles/2026-07-verification-findings.md) by 24K Labs
[](FEATURED.md)
We probed all 22,545 x402 services in the CDP Bazaar. 5,792 returned a valid 402 Payment Required response. The other 16,753 were gone, misconfigured, or unreachable — a 74% dead rate.
That number is the whole argument for a verified catalog. The Bazaar reflects everything ever listed; it cannot tell you what is running right now. This report can: the headline finding, a reproducible methodology, and the verified services framed as "the ones that actually work" — including real payer counts that no listing can fake. It is the most direct statement of what gold-402 is for.
[Read the full report →](articles/2026-07-verification-findings.md) · [Past features →](FEATURED.md)
What's New
> July 2026 — 22,545 x402 endpoints probed. 74% are dead. Here's what's actually live.
- [24K Labs Verification Report](articles/2026-07-verification-findings.md) — We probed every x402 service in the CDP Bazaar. 5,792 verified live (25.7%). 16,686 failed (74%). The verified catalog is what makes the Bazaar usable. [→ Full report](articles/2026-07-verification-findings.md)
> June 2026 — Enterprise infrastructure arrives: Fireblocks, Arbitrum, and 169M+ transactions.
- Fireblocks Agentic Payments Suite — Full-lifecycle agentic payment infrastructure from the $14T digital asset custody platform. MPC agentic wallets with delegation rules, merchant Gateway for stablecoin acceptance, and a security extension to the x402 spec (request integrity + spend governance). Joined the x402 Foundation May 20, 2026. [★ June Featured Pick →](articles/2026-06-fireblocks-agentic-payments.md)
- x402 live on Arbitrum — Arbitrum confirmed x402 deployment on May 15. x402 now runs natively on Base, Ethereum, Arbitrum, Polygon, and Solana. EVM coverage is effectively complete.
- 169M+ transactions, 590k+ buyers, 100k+ sellers — Updated ecosystem stats from Coinbase's AWS Bedrock launch post. Grew from 50M to 169M transactions in roughly six weeks post-Foundation launch.
- AWS Bedrock AgentCore Payments — now production — AWS-managed x402 wallet and payment infrastructure natively integrated into Amazon Bedrock agent workflows. Moved from preview to production.
- LayerZero joins x402 Foundation — Cross-chain infrastructure added to the Foundation roster. Enables x402 payments to bridge across chains without manual routing at the application layer.
- Quant Network joins x402 Foundation — Interoperability and programmable-money infrastructure joins Foundation governance. Expands the enterprise interoperability story for regulated deployments.
Contents
- [Featured This Month](#featured-this-month)
- [What's New](#whats-new)
- [Quick Start](#quick-start)
- [How x402 Works](#how-x402-works)
- [Facilitators](#facilitators)
- [SDKs & Libraries](#sdks--libraries)
- [MCP Servers](#mcp-servers)
- [APIs & Services](#apis--services)
- [Tools & Monitoring](#tools--monitoring)
- [Security & Compliance](#security--compliance)
- [Ecosystem & Wallets](#ecosystem--wallets)
- [Learning & Community](#learning--community)
- [Market Data](#market-data)
- [Need More?](#need-more)
- [Contributing](#contributing)
Quick Start
> New to x402? Three steps to your first payment.
1. Pick a facilitator
| Use case | Facilitator | |----------|-------------| | Most chains, full SDK support | Coinbase CDP | | Edge deployment, global latency | Cloudflare x402 | | Enterprise billing + disputes | Stripe Machine Payments |
2. Install the SDK
# TypeScript
npm install @coinbase/x402-express
# Python
pip install x402
# Rust
cargo add x402
3. Add payment middleware
import { paymentMiddleware } from '@coinbase/x402-express';
app.use(paymentMiddleware(wallet, {
'/api/data': { price: '$0.01', network: 'base-mainnet' }
}));
That's it. The middleware returns 402 with payment details, verifies the client's payment header, and lets the request through.
Full quickstart → · Testnet setup →
How x402 Works
1. Client → GET /api/data (initial request)
2. Server ← 402 Payment Required (payment details in header)
X-Payment-Required: {amount, address, network}
3. Client → EIP-3009 gasless USDC transfer (client signs + submits)
4. Client → GET /api/data + X-Payment: {signed tx} (retry with payment)
5. Facilitator → verify + settle on-chain (~2 seconds)
6. Server ← 200 OK + X-Payment-Response (resource returned)
No gas for the sender. No subscription. No API key. Payment IS authentication.
Facilitators
Facilitators verify payment headers and settle transactions on-chain. Production deployments require one. Choose based on chains needed and where you're deploying.
| Facilitator | Chains | Description | |-------------|--------|-------------| | Coinbase CDP [](CONTRIBUTING.md#24k-verified-tier) | Base, ETH, SOL, POL, XRPL, XLM, + | Official facilitator. Most chains, deepest SDK integration. Primary choice for production. | | Cloudflare x402 [](CONTRIBUTING.md#24k-verified-tier) | Base, ETH | Edge-native. Zero cold start, global CDN distribution. Best for latency-sensitive APIs. | | Stripe Machine Payments [](CONTRIBUTING.md#24k-verified-tier) [](FEATURED.md) | Base | Enterprise billing infrastructure: dispute resolution, fraud detection, compliance tooling. | | Polygon x402 [](CONTRIBUTING.md#24k-verified-tier) | Polygon | Now leading Base in daily transaction count. MATIC fee subsidies for agentic payments. | | Stellar x402 [](CONTRIBUTING.md#24k-verified-tier) | XLM | Fastest finality in the ecosystem. Added March 2026. | | AsterPay [](https://asterpay.io) [](https://asterpay.io) | Base, ETH | EU/MiCA-compliant facilitator for European enterprise deployments. | | Dexter DAO [](CONTRIBUTING.md#24k-verified-tier) [](https://github.com/Dexter-DAO/dexter-x402-sdk) | Base, ETH, SOL, + | Largest x402 facilitator by volume. Handles ~50% of daily transactions. Chain-agnostic v2 SDK with client, server, React hooks, and Express middleware. | | Ultravioleta DAO [](https://facilitator.ultravioletadao.xyz) | EVM, SOL, NEAR, XLM, ALGO, SUI, + | Broadest multi-chain coverage in the ecosystem. 33+ networks including non-EVM chains. REST API with chain-specific settlement routing. |
[Full facilitator directory →](directory/facilitators.md)
SDKs & Libraries
| SDK | Language | Description | |-----|----------|-------------| | x402-typescript [](CONTRIBUTING.md#24k-verified-tier) | TypeScript | Official SDK. Express, Hono, Next.js, Fastify middleware + x402-fetch client. The default choice. | | x402 Python [](CONTRIBUTING.md#24k-verified-tier) | Python | Official SDK. FastAPI middleware + async requests client. | | x402-rs [](CONTRIBUTING.md#24k-verified-tier) [](https://github.com/x402-rs/x402-rs) | Rust | Axum middleware + async runtime. Full EIP-3009 signing. | | ag402 [](CONTRIBUTING.md#24k-verified-tier) [](https://github.com/AetherCore-Dev/ag402) | Go/Python | Multi-language. Wrap any API with ag402 serve, auto-pay with ag402 run. Solana USDC. | | x402-mcp [](CONTRIBUTING.md#24k-verified-tier) | TypeScript | Vercel AI SDK paidTool primitive. The cleanest path for AI SDK builders. | | MoltsPay [](https://github.com/moltspay/molts-pay) [](https://github.com/moltspay/molts-pay) | TypeScript | Multi-framework (Express, Hono, Fastify, Next.js). Base + Solana + ETH. Drop-in replacement. | | Mogami [](https://github.com/mogami-tech/x402-mcp-server) | Java | Production-ready Java x402 stack with SDK, server, console, and bundled MCP server. Fills the Java gap in the official ecosystem. | | Solana Foundation Pay [](https://github.com/solana-foundation/pay) | TypeScript | Official Solana Foundation library for handling x402 and MPP payment challenges with user-authorized stablecoin signing. Updated May 2026. |
[Full SDK directory →](directory/sdks.md) · [Framework middleware →](directory/frameworks.md)
MCP Servers
x402-native Model Context Protocol servers — AI agents pay per tool call, no API keys.
| MCP Server | Category | Description | |-----------|----------|-------------| | agentsvc.io MCP [](CONTRIBUTING.md#24k-verified-tier) [](https://agentsvc.io) | General | 100+ curated MCP tools, x402-gated. The hub for AI agent tooling. | | x402-mcp [](CONTRIBUTING.md#24k-verified-tier) | SDK | Vercel AI SDK paidTool primitive — for building MCP tools that monetize via x402. | | IteraTools MCP [](CONTRIBUTING.md#24k-verified-tier) | Automation | Task automation via x402. Sequential and parallel workflow execution. | | EntRoute MCP [](CONTRIBUTING.md#24k-verified-tier) | Data/Intelligence | Data intelligence and routing. Multi-chain analytics. | | ShieldAPI MCP [](CONTRIBUTING.md#24k-verified-tier) [](https://github.com/alberthild/shieldapi-mcp) | Security | 9 endpoints: breach check (900M+ HIBP hashes), URL safety, prompt injection detection. | | MoltGuard [](https://github.com/moltrust/moltguard) [](https://api.moltrust.ch) | Trust | Agent trust scoring (0-100), Sybil detection, Ed25519 Verifiable Credentials. 7 MCP tools. | | ToolOracle [](https://tooloracle.ai) | Discovery | Real-time discovery of x402-enabled tools across the ecosystem. Agents find tools, tools get paid. | | 24K Labs Code Review MCP [](CONTRIBUTING.md#24k-verified-tier) | Dev Tools | AI code review + security audit via MCP. Pay per PR. Runs in CI or interactively. | | vindex-mcp | Data/Intelligence | Vehicle data over x402: VIN decode with warranty terms, recalls, reliability, and US/Canada purchase-cost estimates. USDC on Base. | | isocast-mcp | Data/Intelligence | Per-signal Polymarket weather-market data across 37 cities, with market URLs and live bucket odds. USDC on Base. | | moltalyzer-mcp | Data/Intelligence | Polymarket and AI-agent-community intelligence: order-book movers, whale calibration, and multi-source digests. USDC on Base. |
[Full MCP server directory →](directory/mcp-servers.md)
APIs & Services
x402-payable APIs — pay per request, no subscriptions.
| Service | Pricing | Description | |---------|---------|-------------| | 24K Labs Code Review API [](CONTRIBUTING.md#24k-verified-tier) | $0.01-$3.00 | 6 AI code services: explain, debug, review, security audit, automation, MCP blueprint. USDC on Base. | | agentsvc.io [](CONTRIBUTING.md#24k-verified-tier) [](https://agentsvc.io) | Per-call | 100+ AI tools via a single x402-gated endpoint. One integration, full ecosystem access. | | Strale [](CONTRIBUTING.md#24k-verified-tier) | Per-token | LLM inference via x402. Pay per token, no subscription, no API key. | | AIsa [](CONTRIBUTING.md#24k-verified-tier) | Per-call | AI + crypto data fusion. Highest x402 transaction count of any API service in the ecosystem. | | QuickNode RPC [](CONTRIBUTING.md#24k-verified-tier) [](https://quicknode.com) | Per-request | Pay-per-request RPC access to 130+ chains. No node management. | | Arch Tools [](CONTRIBUTING.md#24k-verified-tier) | Per-call | 27 on-chain tools. Portfolio analysis, NFT data, market intelligence on Base. | | ShieldAPI [](CONTRIBUTING.md#24k-verified-tier) [](https://github.com/alberthild/shieldapi-mcp) | $0.002–$0.05 | Security intelligence: breach check, domain reputation, URL safety, prompt injection detection. | | Valoria | — | Market intelligence: 90K+ indexed services, $148M+ tracked on-chain volume, revenue rankings. | | Firecrawl x402 [](CONTRIBUTING.md#24k-verified-tier) | Per-request | Web scraping and search API with x402-gated endpoints and automatic on-chain USDC settlement. Coinbase CDP case study service. | | JMT x402 Agent Tools | $0.001-$0.15 | 25 endpoints: web search, AI analysis, crypto/stock data, SEC filings, company intel, news, sentiment, macro dashboard. USDC on Base. Local LLM-powered. | | Vindex | $0.01 | Vehicle-data API: VIN decode with factory warranty terms, recalls, known-issues/reliability, and US & Canada purchase-cost estimates. NHTSA and Transport Canada sources. USDC on Base. | | Isocast | From $0.01 | Per-signal Polymarket weather-market data across 37 cities. Fires when a city's daily-high temperature crosses into a new Polymarket bucket, returning the market URL and live bucket odds. USDC on Base. | | Moltalyzer | $0.01–$0.05 | Polymarket and AI-agent-community intelligence: order-book microstructure movers, whale hold-to-resolution calibration, and multi-source digests. USDC on Base. |
[Full API directory →](directory/apis.md)
Tools & Monitoring
| Tool | Description | |------|-------------| | [x402-proxy](https://www.npmjs.com/packag
…
Source & license
This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: Haustorium12
- Source: Haustorium12/gold-402
- License: CC0-1.0
- Homepage: https://www.x402.org/
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.