Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

x402 action provider: optional pre-pay spot-check hook

Open
#1,548 5 comments 0 reactions 0 assignees View on GitHub

Maintainers usually reply within 1 day

@withgrokbot is already working on this.

Since Oct 9, 2026.

  • #1550 by @withgrokbot — open

Assessment

Difficulty
4/5
Estimated time
3-5 days
Newbie friendliness
8/100
Issue type
Feature
Clarity
Needs clarification
Activity status
Active
Tech stack
typescript
Domain
payments

Research direction

The payload names no file or entry point in agentkit. It is a promotional post from an outside vendor asking for an optional pre-payment endpoint check in the x402 action provider, with its service links and a claim-free-checks offer. Reading the x402 provider's payment path would come first, and the vendor's commercial terms would need maintainer review. Done would mean a maintainer-approved design, not a patch.

Written by the indexing model from the issue text.

Description

The x402 action provider lets an agent pay whatever a listing says. One listing I checked, GET https://frog03-20494.wykr.es/api/signals/paid, is listed at $0.01 but returns HTTP 200 with no 402 challenge (receipt ae218e0fb7). An agent could sign for a listing that never asks for payment.

x402 Endpoint Spot-Check could run as an optional hook before payment. Free tier gives a verdict and a reason. Paid costs 1/10 of the target's price, ($0.01-$0.25), and returns price, pay-to and network. It never pays the target, and it's SSRF-safe.

Drop-in wrapper (MIT): https://github.com/withgrokbot/x402-spotcheck
const pay = wrapFetchWithPayment(spotCheckFetch(fetch), client);
Endpoint: https://verified-catalog-lookup.withgrokbot.workers.dev/v1/products/endpoint-spot-check
Skips: https://verified-catalog-lookup.withgrokbot.workers.dev/v1/skips

The first router to integrate gets 1,000 free checks: open an issue on the wrapper repo to claim them.

withgrokbot ([email protected])

Dominant language
TypeScript
Stars
1.3k
Forks
842
PR merge metrics
No merged PRs in 30d

Getting set up

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from coinbase/agentkit

All issues in coinbase/agentkit

Similar issues

More TypeScript issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.