io.github.AutomatonColony/automaton-colony

automaton-colony

Screen Base smart contracts and B20 tokens: free on-chain check, paid Flash Audit over x402 (USDC).

1.2.0
Version
remote
Transport
6
Tools

Security review

Review passed

Reviewed 1d ago.

  • tools: 6 tools scanned
  • metadata: scanned

No findings.

Tools (6)

  • check_contract_free

    Free, no wallet. Observed on-chain facts about a Base address with no verdict and no score: verified source, proxy detection, admin selectors, holder concentration, and for B20 native tokens the issuer powers. Rate limited; a monthly quota applies.

  • flash_audit_terms

    Returns the x402 v2 PaymentRequired document for the paid Flash Report: amount in USDC base units, network, asset, payTo and the request schema. Free. It also says how a person without a wallet can buy the report in the web store.

  • buy_flash_audit

    Paid over x402 in USDC on Base. Without a payment in _meta["x402/payment"] it returns the PaymentRequired document (isError), followed by how a person without a wallet can buy the same report in the web store. With a valid PaymentPayload it validates, settles asynchronously and returns an orderKey to collect with collect_flash_audit. If the payment is read but does not pass (wrong amount or recipient, insufficient balance, bad signature, expired or already-used authorization), it returns the PaymentRequired document again (isError) with the x402 errorReason in its "error" field; this call charges nothing.

  • collect_flash_audit

    Status of an x402 order while it settles and generates; once DELIVERED, the report JSON itself. Poll every 10-15 seconds. Free.

  • contract_data_catalog

    Free, no wallet. Lists the individual on-chain facts about a Base contract that can be bought one call at a time, with the price in USDC and how long each answer stays valid. Read this before paying: the bundle costs less than buying the parts.

  • buy_contract_data

    Paid over x402 in USDC on Base, from 0.0049 per call. Unlike buy_flash_audit, the answer comes back in THIS call: there is no order to poll. A first read of an address can take up to 60s: keep the connection open. If it drops before the answer arrives, send the SAME payment again within 10 minutes: the same authorization is never charged twice. Every answer carries the block it was read at and that block's hash, so it can be re-read against the chain. Call contract_data_catalog first for the list and prices. Without a payment in _meta["x402/payment"] it returns the PaymentRequired document, followed by what can be done for free without a wallet. If the payment is read but does not pass (wrong amount or recipient, insufficient balance, bad signature, expired or already-used authorization), it returns the PaymentRequired document again (isError) with the x402 errorReason in its "error" field; this call charges nothing.