AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Raxol Payments

skill-droodotfoo-agent-skills-raxol-payments · by DROOdotFOO

>

No reviews yet
0 installs
36 views
0.0% view→install

Install

$ agentstack add skill-droodotfoo-agent-skills-raxol-payments

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-droodotfoo-agent-skills-raxol-payments)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
2mo ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Raxol Payments? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Raxol Payments + ACP Skill

Agentic commerce layer for Raxol agents. raxol_payments (v0.2) gives an agent a wallet, a ledger with spend limits, HTTP 402 auto-pay, and the cross-chain settlement protocols (Xochi/Riddler/MPP/Permit2/x402) plus stealth/privacy. raxol_acp (v0.2) implements the Agent Commerce Protocol: a per-job state machine, service offerings, and on-chain writes via ERC-4337 smart accounts or EOAs.

This is the Elixir client layer. It signs and calls; the contracts themselves are out of scope (see solidity-auditor). Riddler is the payments protocol/module here (Raxol.Payments.Protocols.Riddler), now delegating to Xochi.

What You Get

  • Protocol map: Xochi (default cross-chain), MPP, Permit2, x402, Riddler
  • Agent wallets (env key, 1Password, ERC-4337 SCA, EOA nonce server)
  • Ledger spend limits, SpendGate authorization, mandates, checkpoint idempotency
  • Privacy: stealth (ERC-5564/6538), Glass Cube tiers, ZKSAR trust scores, PXE bridge
  • ACP job lifecycle state machine, Offering DSL, HookClient + provider adapters
  • Test patterns with the Mock provider adapter (no real chain calls)

Two package split

| Concern | Package | Entry modules | | ---------------------------------------- | --------------- | ------------------------------------------ | | Pay for a resource / cross-chain move | raxol_payments| Protocols.Xochi, Ledger, SpendGate | | Sell/deliver a job on-chain (ACP) | raxol_acp | JobSession, Offering, HookClient |

See also

  • raxol -- core agent/TUI framework (agents, directives, MCP, workflow)
  • raxol-symphony -- coding-agent orchestrator (uses ACP for paused-run resume)
  • solidity-auditor -- the on-chain contracts these clients call
  • ethskills -- Ethereum tooling, RPC, standards (ERC-4337, ERC-5564, ERC-3009)
  • noir -- ZK circuits behind ZKSAR / shielded settlement

Reading Guide

| Task | File | | --------------------------------------- | ----------------------------- | | Move funds / pay a 402 (protocols) | payments/protocols.md | | Stealth, privacy tiers, ZKSAR trust | payments/privacy.md | | Wallets, ledger, spend gate, checkpoints| payments/wallets-ledger.md | | Sell a service via ACP (job lifecycle) | acp/job-lifecycle.md | | Test without real chain calls | testing.md |

Key Conventions

  • Amounts are atomic units as strings ("1000000" = 1 USDC), aggregated as Decimal

in the ledger. Never pass floats.

  • Every spend goes through SpendGate.authorize/3 -> reserve -> sign -> release/

release_by_intent. Reservations expire (TTL) and are swept.

  • Wallets implement Raxol.Payments.Wallet (address/0, sign_message/1,

sign_typed_data/3, sign_hash/1). Pick env/op/SCA/EOA per deployment.

  • Idempotency: derive a Checkpoint key from canonical intent fields and check it

before re-submitting an in-flight intent.

Common Pitfalls

  1. Floats for money -- use atomic-unit strings + Decimal; floats lose precision.
  2. Signing before gating -- authorize/reserve budget first, or a failed send leaks

the reservation. Always pair authorize with release/release_by_intent.

  1. Re-submitting on retry -- without a Checkpoint, a retry double-spends; derive

the key from intent fields and short-circuit on a hit.

  1. Real RPC in tests -- use Raxol.ACP.ProviderAdapter.Mock; never a live bundler.

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.