io.github.CodeWever/wever-labs-products

Wever Labs Agent Products

Agent commerce: 27 tools, 10 production services, signed authority, planning, Base USDC x402.

0.4.0
Version
remote
Transport
52
Tools

Security review

Review passed

Reviewed 1d ago.

  • tools: 52 tools scanned
  • metadata: scanned

No findings.

Tools (52)

  • wever_delegated-authority

    Paid URL: 2.00 USDC per mandate on Base; 10 signed-wallet free calls shared over rolling 30 days. Only issue_mandate is billed; GET, contract reads, drafts and all other modes have no x402 fee. Credentials and grants remain required for their existing operations. Read the backend 402 body for x402 terms. Issue signed mandates and operator-approved action grants, then let credentialed agents consume them to create immutable work-order records. Records do not perform work, deliver results or authorize payment. Operating boundary: Operators issue mandates and approve each exact action grant with an issuance idempotency key. Only the bound credentialed agent may consume a grant; each action grant atomically reserves one nonfinancial work_order unit. Usage and attribution are credential-bound. Signed authority permits only immutable record creation, never work execution, delivery or payment. Public drafts remain unsigned_dev and cannot execute. The access fee applies only to issue_mandate a

  • wever_agent-paid-workflow

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Prepare an ordered sequence of supported planning and computation steps with explicit required fields. No step is executed, no quote obtained, and no payment, authority or delivery is performed. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. The prepared computation uses caller-supplied data and creates no execution authority, proof verification, delivery or provider action. Payment access records are durable; existing credentials and signed grants remain required for separate consequential actions. POST /api/agent-paid-workflow. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_unified-agent-checkout

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Itemize and total caller-supplied USD estimates for supported computations. This is not a provider quote, checkout session, payment request or authority grant. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. The prepared computation uses caller-supplied data and creates no execution authority, proof verification, delivery or provider action. Payment access records are durable; existing credentials and signed grants remain required for separate consequential actions. POST /api/unified-agent-checkout. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_diligenceops-paid-run

    Paid URL: 1.00 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Free computation: /api/mcp or /api/service-resolver. Read the backend 402 body for x402 terms. Compare explicit submitted evidence labels and return exact matched and missing items. This does not read or verify document contents. Operating boundary: The computation uses supplied data only and performs no provider work, callbacks, document retrieval or signed attestations. Direct access uses x402 Base USDC settlement or the verified-wallet free tier; the Labs MCP and resolver computation paths remain free. POST /api/diligenceops-paid-run. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_receipt-passport

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Issue and verify signed receipt passports backed by completed, wallet-owned Wever computation records. Operating boundary: Issue and verify signed receipt passports backed by completed, wallet-owned Wever computation records. Fresh signed wallet proof is required even for paid calls. Handoff permissions require recipient enforcement. Stored evidence is not automatically verified. Scores are bounded evidence summaries, not global reputation. POST /api/receipt-passport. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated durable trust service. Signed records attest only to the stated evidence and permission scope. See /api/trust-contract for the public verification key and bounded contract.

  • wever_return-package-viewer

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Retrieve a wallet-owned completed Wever computation from durable billing records, including its exact result and verified digest. Operating boundary: Retained owned Wever computation records only. Missing, expired or unsupported records are unavailable. Completion does not verify caller-supplied facts. POST /api/return-package-viewer. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-allowance-console

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Evaluate explicit caller-reported scope, budget, usage, expiry and per-action fee limits. Returns a would-allow or would-deny preview; creates no authority and verifies no account balance. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. The prepared computation uses caller-supplied data and creates no execution authority, proof verification, delivery or provider action. Payment access records are durable; existing credentials and signed grants remain required for separate consequential actions. POST /api/agent-allowance-console. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_callback-health-monitor

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Send a bounded HTTPS callback probe and persist the actual response, timing and exact acknowledgment check. Retrieve prior observations without resending. Operating boundary: One point-in-time HTTPS observation with public-address validation, no redirects and no credentials. Acknowledgment is not proof of downstream work. Continuous monitoring and automatic retries are unavailable. POST /api/callback-health-monitor. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-work-order-exchange

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Validate a task against a supported computation and prepare its fixed POST request. Semantic validation uses a local deterministic dry run. No request is submitted, worker assigned or result delivered. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. The prepared computation uses caller-supplied data and creates no execution authority, proof verification, delivery or provider action. Payment access records are durable; existing credentials and signed grants remain required for separate consequential actions. POST /api/agent-work-order-exchange. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_agent-budget-guard

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Evaluates caller-supplied policy, usage and request values only. No live allowance or balance is read, no destination is contacted, no budget or run is reserved, and no permission or execution authority is granted. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. Evaluates caller-supplied policy, usage and request values only. No live allowance or balance is read, no destination is contacted, no budget or run is reserved, and no permission or execution authority is granted. The API access fee is separate from any inspected payment or recorded invoice amount. POST /api/agent-budget-guard. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current money service follows i

  • wever_agent-sla-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Record wallet-scoped SLA terms and evaluate deadlines against retained completed-work or callback observations. Operating boundary: Wallet-declared terms and evaluation at call time. No counterparty consent, background scheduling, retry execution, contractual enforcement or compensation is implied. POST /api/agent-sla-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-trust-scorecard

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Compute a bounded trust score from verified completed work, Base payment receipts and Wever escrow refunds, disclosing all inputs and unavailable dispute coverage. Operating boundary: Compute a bounded trust score from verified completed work, Base payment receipts and Wever escrow refunds, disclosing all inputs and unavailable dispute coverage. Fresh signed wallet proof is required even for paid calls. Handoff permissions require recipient enforcement. Stored evidence is not automatically verified. Scores are bounded evidence summaries, not global reputation. POST /api/agent-trust-scorecard. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated durable trust service. Signed records attest only to the sta

  • wever_payment-authority-inspector

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Read-only canonical Base USDC receipt inspection for the configured Wever recipient. Settlement evidence grants no mandate, resource permission or execution authority. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. Read-only canonical Base USDC receipt inspection for the configured Wever recipient. Settlement evidence grants no mandate, resource permission or execution authority. The API access fee is separate from any inspected payment or recorded invoice amount. POST /api/payment-authority-inspector. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current money service follows its published inspection, policy evaluation or private invoice contract. Payment is an

  • wever_x402-payment-gateway

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Verifies an EOA payment signature and observes Base USDC nonce, balance and chain time. Does not simulate, submit, settle, reserve or authorize resource access. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. Verifies an EOA payment signature and observes Base USDC nonce, balance and chain time. Does not simulate, submit, settle, reserve or authorize resource access. The API access fee is separate from any inspected payment or recorded invoice amount. POST /api/x402-payment-gateway. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current money service follows its published inspection, policy evaluation or private invoice contract. Payment is an API access fee and g

  • wever_ap2-mandate-gateway

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Verifies allowlisted AP2 direct closed-checkout mandates, binds the presenter to the holder wallet, rejects expiry and replay, and durably consumes each mandate once. Operating boundary: Wever trusted-provider direct closed-checkout profile only. No open mandates, delegation chains, checkout execution, payment execution or fund transfers. Signed wallet proof is required even for paid calls. POST /api/ap2-mandate-gateway. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This gateway verifies only its published AP2 direct closed-checkout profile, requires a trusted issuer and holder wallet proof, and consumes the mandate once. It does not execute the checkout or transfer funds. Start at /api/ap2-contract and /api/ap2-chall

  • wever_agent-to-agent-handoff-pack

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Build and verify durable signed task handoff packs with authenticated sender, recipient, context, declared permissions and checkpoint state. Operating boundary: Build and verify durable signed task handoff packs with authenticated sender, recipient, context, declared permissions and checkpoint state. Fresh signed wallet proof is required even for paid calls. Handoff permissions require recipient enforcement. Stored evidence is not automatically verified. Scores are bounded evidence summaries, not global reputation. POST /api/agent-to-agent-handoff-pack. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated durable trust service. Signed records attest only to the stated evidence and permission scope. See /

  • wever_proof-inbox

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Store, list and retrieve durable verification proofs in a private authenticated wallet inbox. Operating boundary: Store, list and retrieve durable verification proofs in a private authenticated wallet inbox. Fresh signed wallet proof is required even for paid calls. Handoff permissions require recipient enforcement. Stored evidence is not automatically verified. Scores are bounded evidence summaries, not global reputation. POST /api/proof-inbox. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated durable trust service. Signed records attest only to the stated evidence and permission scope. See /api/trust-contract for the public verification key and bounded contract.

  • wever_rail-playground

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Execute supported bounded Wever computations, measure their runs and compare actual outputs and caller-specified expectations. Operating boundary: Supported local production computations only. External agent execution and money movement are unavailable. Acceptance inputs remain labeled synthetic. POST /api/rail-playground. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-escrow-lite

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Escrow principal and API-fee wallet: 0x69255FeaC86268C0D0bD0CBd128da7B9aB44b1c4. Principal funding is separate, and every call requires a signed wallet ownership proof. Managed Base USDC custody with verified funding, immutable parties, EIP-712 release policies, expiry refunds to the payer and a durable public release log. Operating boundary: The separate custody wallet accepts bounded USDC principal. A verified release pays only the immutable payee; an expiry refund pays only the immutable payer. API fees are separate, manual sweeps are required, and work-order grants are not payment authority. POST /api/agent-escrow-lite. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This managed custody service uses immutable escro

  • wever_agent-invoice-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Private issuer-wallet invoice ledger, immutable face amount and parties, run-reference binding and recorded issuer review. References are not independently verified. No bill delivery, payment collection or spending authority. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. Private issuer-wallet invoice ledger, immutable face amount and parties, run-reference binding and recorded issuer review. References are not independently verified. No bill delivery, payment collection or spending authority. Every invoice operation also requires a signed issuer-wallet ownership proof. The API access fee is separate from any inspected payment or recorded invoice amount. POST /api/agent-invoice-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This ada

  • wever_agent-permission-ledger

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Persist wallet-scoped permission grants and revocations and evaluate an exact subject, action and resource against those records. Operating boundary: Authenticated owner declarations within this ledger. Target systems must enforce resource access. No spending authority or external permission verification. POST /api/agent-permission-ledger. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-work-order-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Free computation: /api/mcp or /api/service-resolver. Read the backend 402 body for x402 terms. Prepare a validated DiligenceOps task for a specific Connect recipient. Submission, recipient permission and execution remain separate steps. Operating boundary: The computation uses supplied data only and performs no provider work, callbacks, document retrieval or signed attestations. Direct access uses x402 Base USDC settlement or the verified-wallet free tier; the Labs MCP and resolver computation paths remain free. POST /api/agent-work-order-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_agent-decision-packet-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Evaluate supplied alternatives against explicit weighted numeric criteria and constraints, with transparent scores, evidence gaps and ties. Operating boundary: Scores use supplied evidence and measurements only. Missing evidence, failed constraints and ties are disclosed. No independent truth or optimality claim. POST /api/agent-decision-packet-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_agent-file-desk-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Inspect supplied file bytes, compute content hashes, identify exact duplicates and report bounded content metadata. Operating boundary: Inline bytes only, with strict size and supported-format limits. No remote drive access, malware certification or file move/delete operations. POST /api/agent-file-desk-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. Wallet-authenticated bounded operations service with durable records. See /api/operations-contract for exact schemas, verified scope and unavailable capabilities.

  • wever_mcp-diligence-rail

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Free computation: /api/mcp or /api/service-resolver. Read the backend 402 body for x402 terms. Inventory submitted MCP tool declarations and flag missing or consequential annotations. This does not connect to a server or grant authority. Operating boundary: The computation uses supplied data only and performs no provider work, callbacks, document retrieval or signed attestations. Direct access uses x402 Base USDC settlement or the verified-wallet free tier; the Labs MCP and resolver computation paths remain free. POST /api/mcp-diligence-rail. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_agent-daily-operator-brief

    Paid URL: 0.25 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Free computation: /api/mcp or /api/service-resolver. Read the backend 402 body for x402 terms. Summarize supplied service health and queue observations into deterministic priorities. No private records are fetched and no activity is invented. Operating boundary: The computation uses supplied data only and performs no provider work, callbacks, document retrieval or signed attestations. Direct access uses x402 Base USDC settlement or the verified-wallet free tier; the Labs MCP and resolver computation paths remain free. POST /api/agent-daily-operator-brief. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplied data.

  • wever_proof-relay

    Paid URL: 0.10 USDC per call on Base; 10 signed-wallet free calls shared over rolling 30 days. Read the backend 402 body for x402 terms. Prepare a reference envelope and deterministic source/destination binding digest. References and supplied hashes remain unverified. No destination is contacted, no acknowledgment is obtained, and nothing is delivered or persisted. Operating boundary: Direct access uses x402 Base USDC settlement or the verified-wallet free tier. The prepared computation uses caller-supplied data and creates no execution authority, proof verification, delivery or provider action. Payment access records are durable; existing credentials and signed grants remain required for separate consequential actions. POST /api/proof-relay. Existing product credentials, signed mandates, and single-use action grants remain required where applicable. This adapter grants no authority and never supplies server credentials. This current operation is a bounded computation on caller-supplie

  • wever_referral-rail

    Create a rail-signed WL-R-XXXXXX referral code, permanently attribute your own wallet with a signed code_token, inspect earnings, claim USDC, or verify a signed referral receipt. POST /api/referral-rail. Every call requires X-Wever-Wallet-Proof signed by the caller wallet and bound to the exact request body. Attribution requires the referee wallet proof, rejects self-referrals and permits only the first code. Earnings accrue from verified real payment and settlement records: 20 percent of eligible USDC paid for 12 months from the first attributed paid call. Claims reserve earnings and create a linked payout instruction for the authenticated referrer wallet, require a stable claim_id for retries, and allow 1.00 to 25.00 USDC per claim. Optional amount_usdc requests an exact amount within the available balance; omit it to claim the available balance up to 25 USDC. The treasury holder uses wever_payout-authorize and wever_payout-execute with AP2 holder binding v2 and separate EIP-712 spen

  • wever_subscription-rail

    Prepay wallet-bound 30-day tool subscriptions. action=plans lists signed server-configured prices and terms. action=subscribe requires a stable 64-hex purchase_id and plan name; single-tool also requires the covered MCP tool name. Pay the quoted plan amount up front through x402 exact on Base mainnet. A shared free access call is reserved for checkout when available; otherwise the quote includes the 0.10 USDC rail access fee. Confirmed settlement returns a record-backed Ed25519 subscription receipt. action=status shows quota and cycle end. action=cancel marks cancellation at cycle end with no mid-cycle refund. Manual renewal requires a fresh subscribe after expiry; no stacking within one wallet and plan scope. Covered calls authenticate with X-Wever-Wallet-Proof. Fresh valid per-call authorizations from that same wallet also use quota; existing payment retries retain their recorded billing. Omit Payment-Signature for covered calls to avoid unnecessary payment verification. Expired or e

  • wever_atlas-asset-passport

    Look up a covered tokenized asset by its id or ticker and return its full sourced Asset Passport, including claim, backing, access, liquidity, risks and source trail. Reads the versioned Atlas reference dataset, not live market quotes. Each result preserves source dates and labels for provisional or unverified historical display data. POST /api/atlas-asset-passport. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. X-Wever-Wallet-Proof must bind to the exact JSON arguments and this API path, not /mcp. The adapter forwards only caller-supplied proof and payment headers. Authority is read-only: no dataset or external writes, asset trading, autonomous source fetches, spending authority or publication. API access billing is separate: it records free usage or settles an explicit caller-supplied payment authorization. Read /api/atlas-contract and the backend 402 body for exact schemas and billing terms.

  • wever_atlas-asset-search

    Search covered tokenized assets by literal text or category and return paginated summaries. Empty arguments list all covered assets within the result limit. Reads the versioned Atlas reference dataset, not live market quotes. Each result preserves source dates and labels for provisional or unverified historical display data. POST /api/atlas-asset-search. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. X-Wever-Wallet-Proof must bind to the exact JSON arguments and this API path, not /mcp. The adapter forwards only caller-supplied proof and payment headers. Authority is read-only: no dataset or external writes, asset trading, autonomous source fetches, spending authority or publication. API access billing is separate: it records free usage or settles an explicit caller-supplied payment authorization. Read /api/atlas-contract and the backend 402 body for exact schemas and billing terms.

  • wever_treasury-balance

    Read a wallet's native USDC balance and ETH balance for gas visibility on Base mainnet. wallet_address must use the exact EIP-55 checksum. Reads public chain data only. Treasury arguments never accept private keys, signatures or transaction instructions; these tools cannot sign, submit transactions, transfer funds or spend. POST /api/treasury-balance. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. API access billing is separate from wallet visibility: the existing access layer processes caller-supplied payment and wallet-proof headers only. X-Wever-Wallet-Proof must bind to the exact JSON arguments and this API path, not /mcp. The inspected wallet need not be the access payer. Read /api/treasury-contract and the backend 402 body for schemas, coverage and billing terms.

  • wever_treasury-flows

    Read recent native USDC transfers into and out of a wallet on Base mainnet, including amounts, timestamps and transaction hashes. Optional limit and UTC time window bound the returned history. wallet_address must use the exact EIP-55 checksum. Reads public chain data only. Treasury arguments never accept private keys, signatures or transaction instructions; these tools cannot sign, submit transactions, transfer funds or spend. POST /api/treasury-flows. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. API access billing is separate from wallet visibility: the existing access layer processes caller-supplied payment and wallet-proof headers only. X-Wever-Wallet-Proof must bind to the exact JSON arguments and this API path, not /mcp. The inspected wallet need not be the access payer. Read /api/treasury-contract and the backend 402 body for schemas, coverage and billing terms.

  • wever_workorder-create

    The hirer names one worker wallet and defines the title, description, acceptance criteria, USDC price and deadline. Creates immutable work terms for an order capped at 25.00 USDC. POST /api/workorder-create. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, and the adapter grants no authority. Read /api/workorder-contract for schemas, recovery and evidence bounds. Live funded acceptance remains a manual opera

  • wever_workorder-fund

    The hirer funds the order through escrow-lite using caller-signed principal authorization. Only confirmed principal funding moves an open order to funded. Escrow principal is the hirer's order value, separate from the API access fee. POST /api/workorder-fund. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, and the adapter grants no authority. Read /api/workorder-contract for schemas, recovery and evidence b

  • wever_workorder-accept

    Only the named worker wallet may accept a funded order before its deadline. POST /api/workorder-accept. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, and the adapter grants no authority. Read /api/workorder-contract for schemas, recovery and evidence bounds. Live funded acceptance remains a manual operator step.

  • wever_workorder-deliver

    Only the named worker wallet may submit a deliverable reference and proof hash for an accepted order. Delivery evidence is recorded in the proof inbox; submission is not automatic acceptance or payment. POST /api/workorder-deliver. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, and the adapter grants no authority. Read /api/workorder-contract for schemas, recovery and evidence bounds. Live funded acceptanc

  • wever_workorder-release

    Only the hirer may approve a delivered order. The AP2 gateway verifies a trusted holder-bound, unexpired, unused mandate for the exact order intent. A separate payer-signed EIP-712 escrow release mandate authorizes payment only to the immutable worker. Confirmed settlement produces signed record-backed receipts for both parties. POST /api/workorder-release. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, an

  • wever_workorder-dispute

    Either authenticated party may freeze the order before release and record bounded evidence in the proof inbox. Dispute blocks further release; expiry refund to the original hirer remains available. Arbitration UI is outside v1. POST /api/workorder-dispute. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. Order value is capped at 25.00 USDC under the existing escrow-lite rail; API access fees and escrow principal are separate. Normal states are open, funded, accepted, delivered and released. Disputed orders freeze release and retain an expiry refund path; expired funded orders refund only the hirer. No private keys are accepted, no arbitrary payee or payer substitution is allowed, and the adapter grants no authority. Read /api/workorder-contract for schemas, recovery and evidence boun

  • wever_payout-create

    Create an immutable payout instruction with recipient, amount_usdc, idempotency_key, memo and rail_reference. Enforces the configured 25.00 USDC per-payout cap and 100.00 USDC daily cap before accepting. Returns created with a signed receipt. No money moves. POST /api/payout-create. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. The tool fee is separate from the payout amount and grants no disbursement authority. The operator manually funds the dedicated hot payout wallet; Ledger keys never reach the server, and sweep and reclaim remain manual. No private keys are accepted. A disbursement primitive, not a bank: no yield, conversion or fiat. External custody and security audit required before large-value use. Company-authored; usage remains explicitly labeled. Read /api/payout-contr

  • wever_payout-authorize

    Bind a trusted-issuer AP2 signed presentation and a separate EIP-712 principal_signature from a configured treasury holder to the exact payout recipient, amount and expiry. AP2 retains its API-fee scope; only the separate treasury signature authorizes principal. Uses the wever_ap2-mandate-gateway verifier, trust anchors and replay ledger with holder binding v2. Returns authorized with a signed receipt. No money moves. POST /api/payout-authorize. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. The tool fee is separate from the payout amount and grants no disbursement authority. The operator manually funds the dedicated hot payout wallet; Ledger keys never reach the server, and sweep and reclaim remain manual. No private keys are accepted. A disbursement primitive, not a bank: no yiel

  • wever_payout-execute

    Disburse native USDC on Base from the dedicated service-operated payout wallet only for an authorized payout with a valid unexpired holder-bound mandate. The persisted transfer nonce prevents duplicate payment on retries. Returns executed with the independently confirmed transaction hash and signed receipt. POST /api/payout-execute. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. The tool fee is separate from the payout amount and grants no disbursement authority. The operator manually funds the dedicated hot payout wallet; Ledger keys never reach the server, and sweep and reclaim remain manual. No private keys are accepted. A disbursement primitive, not a bank: no yield, conversion or fiat. External custody and security audit required before large-value use. Company-authored; usage

  • wever_payout-status

    Read a payout and its signed transition receipts by payout_id or the original create idempotency_key. Read-only: no payout state change, signing, reconciliation or transaction submission. POST /api/payout-status. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path, including paid calls. The tool fee is separate from the payout amount and grants no disbursement authority. The operator manually funds the dedicated hot payout wallet; Ledger keys never reach the server, and sweep and reclaim remain manual. No private keys are accepted. A disbursement primitive, not a bank: no yield, conversion or fiat. External custody and security audit required before large-value use. Company-authored; usage remains explicitly labeled. Read /api/payout-contract for exact schemas and authorization flow.

  • wever_dispute-open

    Either escrow party opens a dispute against already funded escrow or a funded work order. Records the claim reference, immutable parties and locked amount, and an operator-signed receipt. Atomically freezes release and refund. Rejects locked value above 25.00 USDC, unfunded or already disposed funds, and unrelated wallets. No new principal enters. POST /api/dispute-open. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path. Fees are separate from the locked principal and grant no resolution authority. Disputes expire after 14 days; unresolved expiry refunds the payer with a signed timeout receipt, subject to settlement confirmation and the UTC daily cap. External custody and security audit remains pending. Company-authored. Read /api/dispute-contract for schemas, operator authorization and recovery limits.

  • wever_dispute-submit-evidence

    Either party submits bounded evidence hashes and URIs. Raw personal information is not accepted. Both parties can read the evidence and its operator-signed receipt. Closed or expired disputes reject evidence. POST /api/dispute-submit-evidence. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path. Fees are separate from the locked principal and grant no resolution authority. Disputes expire after 14 days; unresolved expiry refunds the payer with a signed timeout receipt, subject to settlement confirmation and the UTC daily cap. External custody and security audit remains pending. Company-authored. Read /api/dispute-contract for schemas, operator authorization and recovery limits.

  • wever_dispute-resolve

    Requires a domain-bound operator signature for the exact dispute and outcome. Release to the payee, refund to the payer, or split explicit atomic amounts summing to the locked total. Durable transfer nonces prevent duplicate movement on concurrent retries. Total resolved value is capped at 100.00 USDC per UTC day. action=extend permits one operator-authorized 14-day extension before expiry. POST /api/dispute-resolve. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path. Fees are separate from the locked principal and grant no resolution authority. Disputes expire after 14 days; unresolved expiry refunds the payer with a signed timeout receipt, subject to settlement confirmation and the UTC daily cap. External custody and security audit remains pending. Company-authored. Read /api/dispute-contract for schemas,

  • wever_dispute-status

    Read the dispute and full operator-signed receipt chain, including opening, each evidence submission, extension and resolution or timeout. Read-only: no settlement, signing or reconciliation. Requires a party wallet proof. POST /api/dispute-status. Paid URL: 0.10 USDC per call on Base mainnet using x402 exact, under the existing shared 10 signed-wallet free calls over rolling 30 days. Every call requires X-Wever-Wallet-Proof bound to the exact JSON arguments and this API path. Fees are separate from the locked principal and grant no resolution authority. Disputes expire after 14 days; unresolved expiry refunds the payer with a signed timeout receipt, subject to settlement confirmation and the UTC daily cap. External custody and security audit remains pending. Company-authored. Read /api/dispute-contract for schemas, operator authorization and recovery limits.

  • wever_boutique-list-products

    List all nine curated pieces in the featured seasonal collection, optionally filtered by availability. Returns stable IDs, names, USDC price equivalents, sizes, photos and short descriptions. Read-only versioned snapshot sourced from rebeccabelleboutique.com and its linked Poshmark listings. Prices use 1 USD = 1 USDC as a catalog equivalent, not a merchant quote; tax and shipping are excluded. Null fields are unverified. Sold-out and unavailable listings are labeled. No live stock guarantee, orders, payments or escrow. Free anonymous read; no wallet proof or API fee.

  • wever_boutique-product-detail

    Read one curated piece by its exact ID from boutique-list-products, including full listing details and Rebecca's collection notes. Read-only versioned snapshot sourced from rebeccabelleboutique.com and its linked Poshmark listings. Prices use 1 USD = 1 USDC as a catalog equivalent, not a merchant quote; tax and shipping are excluded. Null fields are unverified. Sold-out and unavailable listings are labeled. No live stock guarantee, orders, payments or escrow. Free anonymous read; no wallet proof or API fee.

  • wever_boutique-create-order

    Simulation only. Create a boutique order with product_id and buyer_wallet. USD catalog amount maps exactly 1:1 to virtual USDC on the Base x402 pattern. Optional idempotency_key permits exact create retries; retain the returned bearer order_token. Repeat the same product_id and buyer_wallet with action=initiate_payment, simulate_payment, status, or confirm_fulfillment and order_token. Fulfillment confirmation also requires fulfillment_reference. Reuses existing x402 middleware and escrow-lite state machine with isolated synthetic settlement, no network signer or real funds. Simulation ceiling is 120 virtual USDC; real escrow remains capped at 25 USDC and real checkout is disabled. No merchant inventory reservation, shipping, tax, wallet ownership assertion, real payment authorization or actual fulfillment. All payment headers and simulation=false are rejected. Catalog tools remain read-only snapshots. No API fees or allowance consumption. Orders expire after 24 hours; bounded to 64 act

  • wever_boutique-record-shipment

    Record a simulated shipment against a funded boutique order using order_id, bearer order_token and tracking {carrier, tracking_number}. Marks shipped while keeping all virtual USDC in escrow. Exact retries are safe; conflicting tracking is rejected. Simulation only, no real funds, shipping verification, wallet ownership assertion or real treasury configuration. The existing order token is a simulation capability, not merchant or buyer authentication. Rejects payment headers and simulation=false. 120 virtual USDC ceiling, 64 orders, 2 MiB, 24-hour expiry. Synthetic test records are isolated from production custody and dispute records. Real escrow/dispute caps and all other tools are unchanged.

  • wever_boutique-confirm-delivery

    Confirm simulated delivery of a shipped order with order_id, bearer order_token and delivery_reference. Reuses escrow-lite signed release and atomically credits the order-scoped simulated boutique treasury once. action=dispute invokes existing dispute-open service and native escrow freeze with claim {reason_code, statement_sha256}; action=dispute-submit-evidence and dispute-status use the existing dispute services in the same simulation store. action=status reads operator state. Disputed orders cannot release. Resolution remains operator-authorized through the existing dispute rail and is not exposed by this bridge. Simulation only, no real funds, shipping verification, wallet ownership assertion or real treasury configuration. The existing order token is a simulation capability, not merchant or buyer authentication. Rejects payment headers and simulation=false. 120 virtual USDC ceiling, 64 orders, 2 MiB, 24-hour expiry. Synthetic test records are isolated from production custody and d