Skip to content

Enforce on-chain spend/rate policy and live MCP pay-and-call - #43

Merged
p3ris0n merged 1 commit into
mainfrom
mvp/onchain-enforcement-mcp
Sep 10, 2026
Merged

p3ris0n merged 1 commit into
mainfrom
mvp/onchain-enforcement-mcp

Conversation

@p3ris0n

@p3ris0n p3ris0n commented Sep 10, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Wire OpenZeppelin context rules plus a spend/rate policy into __check_auth so allowlist, rolling caps, and rate limits fail on-chain (not only in the Python demo).
  • MCP check_budget / pay_and_call use the smart account and Soroban RPC when ACCOUNT_CONTRACT_ID is set; no stub tx hashes on the live path.
  • deploy_testnet.sh now generates a policy, deploys account + policy instances, and applies the spec.

Test plan

  • cargo test -p agent-account -p mcp-server
  • cargo clippy -p mcp-server -- -D warnings
  • GitHub Actions CI on this PR
  • After merge, main includes the commit

Made with Cursor

Install per-vendor context rules with a real policy contract on __check_auth, and have MCP check_budget/pay_and_call use the deployed account instead of stub hashes.

Co-authored-by: Cursor <cursoragent@cursor.com>
@p3ris0n
p3ris0n merged commit ebda4ad into main Sep 10, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant