Automaton Token Safety
Base L2 token safety for AI agents: honeypot scans, swap simulation, approval and liquidity risk.
我该使用它吗
质量与安全性
发现(2)
- LOW在 pricing 中
- LOW在 health 中
基于对工具定义和协议合规性的自动分析。
上下文开销
这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。
安装
一键安装
将以下内容添加到你的 `claude_desktop_config.json` 文件中:
{
"mcpServers": {
"automaton-token-safety-mcp": {
"command": "npx",
"args": [
"@celorodrigues/token-safety-mcp"
]
}
}
}可运行的软件包
2.0.2stdio远程端点
https://api.automaton-sovereign.workers.dev/mcpstreamable-http它能做什么
工具清单
工具(20)
🟢x402_conformance_check(url)
FREE, runs locally. Lint any x402 paid endpoint for protocol conformance: HTTP 402 challenge, x402Version, accepts[] (exact scheme), Base network and addresses, EIP-712 domain, and rejection of malformed, forged, expired, underpaid and wrong-recipient EIP-3009 payments. Returns verdict, grade and per-check results.
输入模式
{
"type": "object",
"properties": {
"url": {
"type": "string",
"description": "Full URL of the x402-protected endpoint to check."
}
},
"required": [
"url"
]
}⚪simulate_base_transaction(to, data, value, from)
FREE, runs locally against Base Mainnet RPC. Dry-run a transaction before sending it: eth_call + eth_estimateGas at the latest block. Predicts whether it will revert and decodes the reason (Error(string), Panic(uint256) codes, custom-error selector, or node rejection such as insufficient funds). Returns { ok, willRevert, revertReason, estimatedGas, returnData }.
输入模式
{
"type": "object",
"properties": {
"to": {
"type": "string",
"description": "Target contract or recipient address on Base (0x...)."
},
"data": {
"type": "string",
"description": "Calldata as 0x-hex (default 0x for a plain ETH transfer)."
},
"value": {
"type": "string",
"description": "ETH value in wei, decimal or 0x-hex (default 0)."
},
"from": {
"type": "string",
"description": "Optional sender address; needed for balance/allowance-dependent calls."
}
},
"required": [
"to"
]
}🟢token_scan(address, payment)
PAID 0.001 USDC/call, or free trial (3/day/IP). Bytecode security scan of a Base token contract: honeypot opcodes, mint/blacklist/pause/tax capabilities, a risk score and a verdict. Read-only — no transaction is sent. On 402, pay the accepts[] terms then retry with the payment tx hash. (Exposed as `security_scan` on older clients.)
输入模式
{
"type": "object",
"properties": {
"address": {
"type": "string",
"description": "Token contract on Base (0x...)"
},
"payment": {
"type": "string",
"description": "Optional X-PAYMENT base tx hash of the USDC payment."
}
},
"required": [
"address"
]
}🟢tx_simulate(token, side, amount, wallet, payment)
PAID 0.01 USDC/call, or free trial (3/day/IP). Read-only buy/sell simulation of a Base token through the Uniswap V2 WETH pool: returns reverts, the MEASURED transfer tax and a honeypot verdict. No transaction is sent. On 402, pay the accepts[] terms then retry with the payment tx hash. (Not the same tool as simulate_base_transaction, which dry-runs arbitrary calldata for free.)
输入模式
{
"type": "object",
"properties": {
"token": {
"type": "string",
"description": "Token contract to trade (0x...)"
},
"side": {
"type": "string",
"enum": [
"buy",
"sell"
],
"description": "Trade direction being simulated"
},
"amount": {
"type": "string",
"description": "ETH for a buy, token units for a sell (positive decimal string)"
},
"wallet": {
"type": "string",
"description": "Address simulated as the trader (0x...)"
},
"payment": {
"type": "string"
}
},
"required": [
"token",
"side",
"amount",
"wallet"
]
}🟢approval_risk(token, owner, spenders, payment)
PAID 0.01 USDC/call, or free trial (3/day/IP). Read-only audit of the ERC-20 approvals an owner granted for a token: spender, allowance, contract vs EOA, verified flag, drainable amount and a drain-risk verdict. On 402, pay the accepts[] terms then retry with the payment tx hash.
输入模式
{
"type": "object",
"properties": {
"token": {
"type": "string",
"description": "ERC-20 token contract (0x...)"
},
"owner": {
"type": "string",
"description": "Address whose approvals are audited (0x...)"
},
"spenders": {
"type": "array",
"items": {
"type": "string"
},
"maxItems": 20,
"description": "Extra spenders to check beyond the log window"
},
"payment": {
"type": "string"
}
},
"required": [
"token",
"owner"
]
}⚪liquidity_risk(token, pair, payment)
PAID 0.01 USDC/call, or free trial (3/day/IP). One-block liquidity audit of a Base token: Uniswap V3 / Aerodrome pools, the USD needed to move the price 1/2/5/10%, holder concentration, LP burn evidence and explicit coverage gaps. On 402, pay the accepts[] terms then retry with the payment tx hash.
输入模式
{
"type": "object",
"properties": {
"token": {
"type": "string",
"description": "Token contract to audit (0x...)"
},
"pair": {
"type": "string",
"description": "Analyze only this pool instead of all pools (0x...)"
},
"payment": {
"type": "string"
}
},
"required": [
"token"
]
}⚪sentinel_latest(limit, maxRisk, minRisk, dex, since, ...)
PAID 0.001 USDC/call, or free trial (3/day/IP). Newest liquidity pools created on Base (Uniswap v3/v4, Aerodrome) with a bytecode risk score per new token. Filters are optional. On 402, pay the accepts[] terms then retry with the payment tx hash.
输入模式
{
"type": "object",
"properties": {
"limit": {
"type": "integer",
"minimum": 1,
"maximum": 500,
"description": "Max pools to return (default 50)"
},
"maxRisk": {
"type": "number",
"minimum": 0,
"maximum": 100,
"description": "Only pools whose risk score is at most this"
},
"minRisk": {
"type": "number",
"minimum": 0,
"maximum": 100,
"description": "Only pools whose risk score is at least this"
},
"dex": {
"type": "string",
"enum": [
"uniswap-v4",
"uniswap-v3",
"aerodrome",
"aerodrome-slipstream"
],
"description": "Restrict to one venue"
},
"since": {
"type": "string",
"description": "ISO-8601 timestamp; only pools detected after it"
},
"payment": {
"type": "string"
}
},
"required": []
}⚪security_scan(address, payment)
LEGACY NAME of token_scan — same route, same arguments, kept so clients written against this server keep working. PAID 0.001 USDC/call, or free trial (3/day/IP). Base token safety analysis: honeypot detection, mint traps, selfdestruct/delegatecall, proxy and tax risks from contract bytecode, with a risk score and signed verdict. On 402, pay the accepts[] terms then retry with the payment tx hash.
输入模式
{
"type": "object",
"properties": {
"address": {
"type": "string",
"description": "Token or contract address on Base (0x...)."
},
"payment": {
"type": "string",
"description": "Optional X-PAYMENT base tx hash of the USDC payment."
}
},
"required": [
"address"
]
}🟡attest(data, payment)
Create a SIGNED, hash-chained, append-only attestation (verifiable proof-of-existence) for a payload. PAID: 0.05 USDC/call, or free trial (3/day/IP). On 402, pay the accepts[] terms then retry with the payment tx hash.
输入模式
{
"type": "object",
"properties": {
"data": {
"type": "string",
"description": "Payload to attest (any string)."
},
"payment": {
"type": "string",
"description": "Optional X-PAYMENT base tx hash of the USDC payment."
}
},
"required": [
"data"
]
}⚪verify_attestation(index, dataHash)
FREE. Verify a ledger entry by index or by data hash: recomputes hash, checks ECDSA signature and chain link.
输入模式
{
"type": "object",
"properties": {
"index": {
"type": "integer"
},
"dataHash": {
"type": "string"
}
}
}🟢attestation_pubkey
FREE. Get the ECDSA P-256 public key (PEM) and keyId used to sign ledger entries.
输入模式
{
"type": "object",
"properties": {}
}🟢read_ledger(from, limit)
FREE. Read the attestation ledger (paginated).
输入模式
{
"type": "object",
"properties": {
"from": {
"type": "integer"
},
"limit": {
"type": "integer"
}
}
}🟢oracle_base(payment)
PAID 0.001 USDC/call. Get real-time Base L2 gas estimates and asset prices (ETH, USDC, cbBTC, AERO, VIRTUAL) with an ECDSA P-256 digital signature from the sovereign agent.
输入模式
{
"type": "object",
"properties": {
"payment": {
"type": "string",
"description": "Optional X-PAYMENT base tx hash of the USDC payment."
}
}
}🟢merkle_prove(items, target, payment)
PAID 0.001 USDC/call. Generate a cryptographic Merkle inclusion proof for a list of items and target element.
输入模式
{
"type": "object",
"properties": {
"items": {
"type": "array",
"items": {
"type": "string"
},
"description": "Array of items"
},
"target": {
"type": "string",
"description": "Target item or index"
},
"payment": {
"type": "string"
}
},
"required": [
"items"
]
}⚪merkle_verify(item, proof, root)
FREE. Verify a cryptographic Merkle inclusion proof against a root.
输入模式
{
"type": "object",
"properties": {
"item": {
"type": "string"
},
"proof": {
"type": "array",
"items": {
"type": "object"
}
},
"root": {
"type": "string"
}
},
"required": [
"item",
"proof",
"root"
]
}⚪sentiment_analysis(asset, payment)
PAID 0.001 USDC/call. Web3 token risk, security checks, and sentiment scoring with signed verdict.
输入模式
{
"type": "object",
"properties": {
"asset": {
"type": "string",
"description": "Asset symbol (e.g. ETH, AERO, VIRTUAL)"
},
"payment": {
"type": "string"
}
},
"required": [
"asset"
]
}⚪hash_sha256(input, payment)
PAID 0.001 USDC/call. SHA-256 hex of a string.
输入模式
{
"type": "object",
"properties": {
"input": {
"type": "string"
},
"payment": {
"type": "string"
}
},
"required": [
"input"
]
}⚪uuid(payment)
PAID 0.001 USDC/call. Generate a UUIDv4.
输入模式
{
"type": "object",
"properties": {
"payment": {
"type": "string"
}
}
}⚪pricing
FREE. Full pricing terms, endpoints, and payment mechanics.
输入模式
{
"type": "object",
"properties": {}
}⚪health
FREE. Service liveness and version.
输入模式
{
"type": "object",
"properties": {}
}社区
证据