Solana Token Intelligence

io.github.k0diakv2.0.0Updated Oct 11, 2026

Solana token due-diligence: 3-source fused risk verdict incl. LP-lock depth. $0.01 via x402.

VerifiedStreamable HTTPWeb executableSecurity & MonitoringFinance

Overview

AI-generated overview

Gives an assistant a paid, keyless Solana token due-diligence read: fused safety and market data plus a risk verdict.

What it does
A remote MCP server exposing token_intel (paid) and token_intel_demo (free). One call returns a fused safety and market read on a Solana token: mint and freeze authority, top-holder percentage, developer holdings, a wash-trade or organic score, liquidity, verification, and a synthesized risk verdict of low-risk, caution, or high-risk with plain-language flags. The README says the verdict fuses three sources and includes LP-lock depth.
When to use it
Use it when an assistant needs a quick safety and market check on a Solana token before acting on it, and when you want machine-to-machine payment instead of an API key and signup. The free demo endpoint returns a cached BONK sample for testing.
Requirements
A remote streamable HTTP endpoint; nothing to install locally. No account, API key, or signup is declared. Paid calls require an autonomous x402 payment of $0.01 USDC per call on Base or Solana, so the calling agent needs a funded wallet able to make that payment. Network access to the endpoint is required.
Before you install
Paid calls spend real money: $0.01 USDC per call via x402, so set spending limits on the calling wallet. The README states the server holds no private keys or API keys and that its pay-to wallet is receive-only, but you are still sending payment from your own wallet. Output is informational only, not financial advice, and the README notes no warranty.

Installation

In SourceWeft

  1. Open Solana Token Intelligence in the dashboard and add it to a workspace.
  2. Enable the server for the chats that should use its tools.

Web executable via Streamable HTTP. Remote servers run from the web runtime once configured in a workspace.

Other MCP clients

Add this to your client's mcpServers config.

{
  "mcpServers": {
    "token-intel": {
      "type": "http",
      "url": "https://token-intel.xrpbreadcrumbs.workers.dev/mcp"
    }
  }
}

README

token-intel-x402 — agent-native Solana token intelligence

One keyless call returns a fused safety + market read on any Solana token — mint/freeze authority, top-holder %, dev holdings, wash-trade (organic) score, liquidity, verification — plus a synthesized risk verdict (low-risk / caution / high-risk) with plain-language flags.

Gated by x402: an autonomous agent pays a $0.01 USDC micro-fee per call (Base or Solana) — no API key, no account, no signup. That is the differentiator: every rival (RugCheck, Birdeye, SolSniffer, GoPlus) needs a key and a signup; this is built for machine-to-machine payment.

Live: https://token-intel.xrpbreadcrumbs.workers.dev

GET  /api/token-intel?mint=<SPL_MINT>  # PAID (x402) → JSON intelligenceGET  /api/token-intel/demo             # free BONK sample (rate-limited, cached)POST /mcp                              # MCP server: token_intel (paid) + token_intel_demo (free)GET  /stats                            # public funnel: challenges, demos, paid calls, revenueGET  /                                 # free: what it is + how to payGET  /healthz                          # free

Deploy (Cloudflare Workers)

Runs on the Workers free plan. v1 lived on Deno Deploy and was suspended when free traffic exceeded the free tier while paid calls stayed at zero; v2 rate-limits and caches the free demo so that can't recur, and records every step of the payment funnel in a D1 ledger.

npm installnpx wrangler d1 execute token-intel-ledger --remote --file schema.sql   # oncenpx wrangler deploy

Wallets, price, and facilitator are [vars] in wrangler.toml (public addresses — no secrets).

Security by design

  • No private keys, no API keys on the server — data (Jupiter) and payments (PayAI facilitator) are both keyless, so there is nothing here to steal.
  • Read-only toward the outside world; its only writes are an anonymous event ledger (no IPs, no PII) — near-zero attack surface.
  • Pay-to wallet is receive-only; its key never touches this host.
  • Every paid call requires payment first, so abuse costs the attacker money.
  • Input strictly validated (base58 mint) — no SSRF/injection.

Informational only, not financial advice, no warranty.

Source: README.md at commit 005a8e0

Tools

0
Tool metadata has not been indexed yet.

Version history

1
  1. v2.0.0LatestOct 11, 2026