Hacktoberfest 2026:メンテナが10月に向けて印を付けた、オープンで初心者向けの issue。 Hacktoberfest の issue を見る

Community Action Provider: Agent Safe paid_fetch, x402 payments where the model only picks the URL

オープン
#1,544 コメント 6 件 リアクション 0 件 担当者 0 名 GitHub で見る

メンテナーはふだん 1 日以内に返信

まだ誰も着手していません。

評価

難易度
4/5
見積もり時間
1〜2日
初心者へのやさしさ
15/100
issue の種類
機能追加
明瞭さ
おおむね明確
活発さ
活発
技術スタック
typescript

調査の方向性

This is a request for maintainers to decide whether an external provider gets listed or a PR is preferred, not a code task. The issue points to typescript/agentkit/src/action-providers/ and to x402ActionProvider (#1539) as the existing pattern to compare against. A newcomer can't finish this alone; done means a maintainer answers the listing question and, if a PR is wanted, a provider is added in the requested shape.

索引モデルが issue の本文から書いたものです。

説明

Language Implementation
  • Python
  • TypeScript
Feature Type
  • Action Provider Template
  • Wallet Provider Template
  • Framework Extension
  • Core Requirements
  • Other
🚀 The feature, motivation and pitch

Package: @deepfirstsearch/agent-pay-agentkit (MIT) · source: https://github.com/DeepFirstHQ/deepfirstsearch/tree/main/integrations/agentkit

What it adds: one action, AgentPayActionProvider_paid_fetch, that takes a URL and nothing that moves money: no payee, no amount, no network. Every 402 is checked against the owner's registry (payee, asset, network, pinned price, timeout), a plan sealed before the agent reads untrusted input, and a period budget, before anything is signed. Refusals come back as text, so the agent can explain them.

Why: in x402ActionProvider, the model's retry carries selectedPaymentOption (payTo and amount). That is where a prompt injection can redirect a payment. This provider keeps the model out of money decisions. Related: #1539 (checking payTo before paying).

Tested:

  • Live on Base mainnet through AgentKit.from(...).getActions(): paid Blockchain.com 0.001 USDC (tx).
  • The same real 402 checked against a different payee was refused with zero signatures.
  • The README example runs verbatim from npm (agent-pay-agentkit 0.1.0, @coinbase/agentkit 0.10.4, viem 2.38.3).
  • agentKitPayer(walletProvider) works with any AgentKit EVM wallet provider: it signs EIP-712 payment authorizations and refuses transactions. For CDP Server Wallet v2 accounts there is also @deepfirstsearch/agent-pay-cdp, tested live (tx).

Ask: would you list it as a community action provider, or prefer a PR (under typescript/agentkit/src/action-providers/ or as an example)? We'll follow the shape you prefer and maintain it.

Alternatives

A pre-payment hook in x402ActionProvider (#1539) would help too. This provider goes one step further: the model never supplies payment terms at all, so there is nothing for an injection to change.

Additional context

One finding while testing, in case it's useful: in AgentKit 0.10.4 the wallet providers' analytics init call isn't awaited, so if the analytics endpoint answers with an error the rejection is unhandled and Node exits. Happy to open a separate bug report.

Disclosure: I build Deep First Search (Agent Safe). It's an unaudited beta, live on Base mainnet with small amounts.

主要言語
TypeScript
スター
1.3k
フォーク
842
PR マージ指標
30日以内にマージされた PR はありません

環境構築

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

coinbase/agentkit のほかの issue

coinbase/agentkit の issue をすべて見る

似ている issue

TypeScript の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。