MCPLow riskUnclaimed

Automaton Token Safety

Base L2 token safety for AI agents: honeypot scans, swap simulation, approval and liquidity risk.

baianomarceloeduardo-jpgbaianomarceloeduardo-jpg/automaton-token-safety-mcpUpdated Sep 28, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.baianomarceloeduardo-jpg/automaton-token-safety-mcp",
  "description": "Base L2 token safety for AI agents: honeypot scans, swap simulation, approval and liquidity risk.",
  "title": "Automaton Token Safety",
  "repository": {
    "url": "https://github.com/baianomarceloeduardo-jpg/automaton-x402",
    "source": "github",
    "subfolder": "mcp-bundle"
  },
  "version": "2.0.2",
  "websiteUrl": "https://api.automaton-sovereign.workers.dev",
  "packages": [
    {
      "registryType": "npm",
      "registryBaseUrl": "https://registry.npmjs.org",
      "identifier": "@celorodrigues/token-safety-mcp",
      "version": "2.0.2",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "Base URL of the Automaton Token Safety API the tools call.",
          "isRequired": true,
          "format": "string",
          "default": "https://api.automaton-sovereign.workers.dev",
          "name": "VALUE_API_BASE"
        },
        {
          "description": "Origin URL for routes the edge defers with a use_origin answer (for example the free conformance checker). Optional; without it such a tool reports which variable to set.",
          "format": "string",
          "name": "AUTOMATON_ORIGIN_BASE"
        },
        {
          "description": "Private key of the wallet that pays for calls. The server only SIGNS an EIP-3009 authorisation; it never sends a transaction. Also required: ALLOW_OUTBOUND_SPEND=1, and this key is not loaded into the process without it. Never set this to the payee/treasury wallet: that is rejected.",
          "format": "string",
          "isSecret": true,
          "name": "AUTOMATON_MCP_PAYER_KEY"
        },
        {
          "description": "Set to 1 to permit this server to sign paid calls. Any other value (including absent) leaves every paid tool answering with the price only.",
          "format": "string",
          "default": "0",
          "name": "ALLOW_OUTBOUND_SPEND"
        },
        {
          "description": "Per-call ceiling in USDC base units (6 decimals, so 10000 = 0.01 USDC). A requirement above it is refused before signing.",
          "format": "number",
          "default": "10000",
          "name": "AUTOMATON_MCP_MAX_AMOUNT_UNITS"
        },
        {
          "description": "Ceiling for the whole process lifetime, in USDC base units. Stops a runaway loop, not just a single expensive call.",
          "format": "number",
          "default": "100000",
          "name": "AUTOMATON_MCP_TOTAL_CAP_UNITS"
        },
        {
          "description": "When set, serve Streamable HTTP on this port instead of stdio. Binds to 127.0.0.1 by default.",
          "format": "number",
          "name": "MCP_HTTP_PORT"
        }
      ]
    }
  ],
  "remotes": [
    {
      "type": "streamable-http",
      "url": "https://api.automaton-sovereign.workers.dev/mcp"
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:@celorodrigues/token-safety-mcp@2.0.2
Runs install scripts—None
Networkapi.automaton-sovereign.workers.devapi.automaton-sovereign.workers.dev
Needs credentialsAUTOMATON_MCP_PAYER_KEYAUTOMATON_MCP_PAYER_KEY
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #12.0.2latestOct 7, 2026