x402 Agent Wallet Tools: Erc20 Allowance Risk ScanPOST /v1/tools/erc20-allowance-risk-scan · x402 API by x402-agent-wallet-tools
Scan ERC20 allowance snapshots for unlimited approvals, high USD exposure, unknown spenders, stale approvals, and revoke actions. receipt-gate-policy first: a $0.009 x402 receipt gate route for agent payment enforcement, followed by wallet signing safety, EIP-712, ERC20 allowance, Permit2, transaction simulation, spend guard, and private-key boundary tools. Browsers can inspect the quote, but payment requires a buyer-owned runtime that signs and retries the same request with X-PAYMENT. Buyers can download the route-specific first-payment client at https://x402-wallet.558686.xyz/x402/route/erc20-allowance-risk-scan/first-payment-client.mjs, run node first-payment-client.mjs for quote-only checks, then opt into a buyer-owned x402 payment with PAY_REAL_X402=1. Copy-ready first paid request: c
What does this x402 API do?
x402 Agent Wallet Tools: Erc20 Allowance Risk Scan. This is an x402-gated POST API resource from x402-agent-wallet-tools. TOLL·402 did not invoke this route automatically because doing so was not considered safe. No normalized USD price is recorded; the listing names an unspecified network. No settled paid call has been verified.
- Published price
- No normalized USD price is recorded
- Networks
- Not recorded
- Latest evidence
- TOLL·402 did not invoke this route automatically because doing so was not considered safe
- Resource ID
- b8ec4594851c255ef18a4876
Start with a quote-only recipe. Payment signing stays in your project.
const response = await fetch("https://x402-wallet.558686.xyz/v1/tools/erc20-allowance-risk-scan", {
method: "POST",
headers: { "content-type": "application/json" },
body: JSON.stringify({
"replace": "with provider-approved input"
}),
});
console.log(response.status);
console.log(Object.fromEntries(response.headers));
console.log((await response.text()).slice(0, 1000));
// A valid 402 is a quote, not a completed paid call.Review the provider input schema before running this non-read-only method. No payment code is included.
- Observed in 402-index
Discovered through self-registered.
- Exact route checked
not safely testable · potentially-mutating-method:POST
- Origin reachable
HEAD https://x402-wallet.558686.xyz/ returned 200.
- Registry record checked
Registry health: healthy.
What evidence supports this listing?
Each record has an exact-route quote outcome. Unresolved templates and potentially mutating methods are labeled instead of being invoked without provider-specific test input. A quote is still separate from a settled paid call. Read the discovery and verification methodology →
Which networks and payment options does it accept?
The normalized listing price is No normalized USD price is recorded. Raw protocol requirements remain visible below for implementation and audit use.