Xpex Plugin Factory

io.github.xpex-systems-aiv0.4.1更新于 Oct 2, 2026

MCP plugin factory and x402 Agent Kit API for external agents, at 0.01 USDC per call.

已验证Streamable HTTP可网页运行AI & MLDeveloper Tools

概览

AI 生成的概览

让助手校验 JSON 蓝图,并将其编译为可供审核的 OpenAI/Codex 插件包,包含 MCP 清单、技能文件和确定性 ZIP。

功能
该服务器提供无需认证的 MCP 端点,用于只读的服务发现和仅计算的插件生成。其工具可列出服务、返回蓝图架构、校验蓝图、预览插件并编译插件包。编译会生成插件与 MCP 清单、技能文件、SVG 品牌资源、README、工厂报告,以及以 base64 返回的确定性 ZIP。另有按次计费的 API,每次 0.01 USDC 生成只读入门套件。
适用场景
当你希望助手把结构化产品蓝图打包为智能体插件,或在打包前按工厂的架构与安全策略检查蓝图时,可以使用它。它适合插件打包、MCP 架构、可复用技能以及就绪性或蓝图校验类工作。
运行要求
MCP 端点为远程服务,无需认证或 API 密钥。付费的 agent-kit 端点需要先启用并接受 USDC 付款才会交付。README 还描述了本地 Node.js 工作流,包括 npm install、构建和 CLI,以及仅作为运行时密钥配置的 Stripe webhook 密钥。
安装前请注意
付费 agent-kit 调用每次 0.01 USDC,且仅在服务方确认收款后交付。README 声明智能体绝不能向该工厂发送私钥、助记词、API 密钥、bearer 令牌或其他凭据。MCP 接口不会发布插件,也不会改动第三方系统,但编译出的包在使用前仍应审核。

安装

在 SourceWeft 中

  1. 打开 控制台中的 Xpex Plugin Factory,将其添加到工作区。
  2. 为需要使用其工具的对话启用该服务。

Web executable,通过 Streamable HTTP。 远程服务在工作区中配置后即可从网页运行时运行。

其他 MCP 客户端

把它添加到你客户端的 mcpServers 配置中。

{
  "mcpServers": {
    "xpex-plugin-factory": {
      "type": "http",
      "url": "https://xpex-plugin-factory-production.up.railway.app/mcp"
    }
  }
}

README

XPeX Plugin Factory

Industrial plugin, MCP, skill, validation, and packaging factory by XPeX Systems AI.

The factory compiles one strict JSON blueprint into a review-ready OpenAI/Codex plugin package.

Live Factory: https://xpex-plugin-factory-production.up.railway.app
Hire XPeX Plugin Factory: https://xpex-plugin-factory-production.up.railway.app/pricing
Readiness Audit — R$49: https://buy.stripe.com/8x214nbyrgrpaYZ2Ah1B60f

What it generates

  • plugin.json
  • .codex-plugin/plugin.json
  • mcp.json
  • .mcp.json
  • one or more skills/*/SKILL.md
  • generated SVG branding asset
  • package README
  • FACTORY-REPORT.json
  • deterministic ZIP artifact

Pipeline

text
Blueprint   ↓Schema validation   ↓Security policy engine   ↓Manifest + MCP + Skill compiler   ↓Factory report   ↓Deterministic ZIP

Fast start

bash
npm installnpm run checknpm testnpm run build
node dist/cli.js generate \  examples/gxeon-agent-gateway.blueprint.json \  --out ./generated/gxeon

HTTP API

Start the factory:

bash
npm run dev

Endpoints:

text
GET  /healthGET  /v1/schemaGET  /mcpPOST /mcpPOST /v1/validatePOST /v1/previewPOST /v1/package

Validate a blueprint

bash
curl -X POST http://localhost:8080/v1/validate \  -H "Content-Type: application/json" \  --data @examples/gxeon-agent-gateway.blueprint.json

Generate a ZIP

bash
curl -X POST http://localhost:8080/v1/package \  -H "Content-Type: application/json" \  --data @examples/gxeon-agent-gateway.blueprint.json \  -o gxeon-agent-gateway.zip

Security gates

The V1 compiler rejects or warns on:

  • embedded API keys, bearer tokens, Stripe secrets, private keys, and GXEON machine keys;
  • localhost/private-network MCP endpoints;
  • non-HTTPS MCP endpoints;
  • sensitive/account data exposed through anonymous MCP;
  • write-capable plugins without human approval;
  • machine-key plugin surfaces that need an OAuth boundary for user-linked public distribution;
  • commerce configurations that require a current policy review.

Runtime credentials are never generated into plugin packages.

Reference blueprint

examples/gxeon-agent-gateway.blueprint.json is the first real reference product compiled by this factory.

Architecture

See:

Deployment

A production container and railway.toml are included. The service exposes /health for readiness checks.

Philosophy

XPeX Plugin Factory is not a prompt generator. It is a software supply-chain compiler for agent products:

text
PRODUCT IDEA   ↓BLUEPRINT   ↓POLICY   ↓PLUGIN + MCP + SKILLS   ↓TESTS   ↓PACKAGE   ↓PRIVATE / WORKSPACE / REVIEW PIPELINE

Built by XPeX Systems AI.

Production

Factory V1 is live at:

text
https://xpex-plugin-factory-production.up.railway.app

Health: /health · Schema: /v1/schema · Validate: POST /v1/validate · Preview: POST /v1/preview · Package: POST /v1/package

Agent-native factory access

Factory V0.3.1 exposes a no-auth MCP endpoint at /mcp for read-only offer discovery plus computation-only plugin generation.

Available tools:

  • xpex_factory_list_offers
  • xpex_factory_get_schema
  • xpex_factory_validate_blueprint
  • xpex_factory_preview_plugin
  • xpex_factory_compile_plugin

The MCP surface never publishes plugins and never mutates third-party systems. ZIP compilation is deterministic and returned as base64 for MCP clients that need a portable artifact.

Monetization V1

The Factory sells four one-time services through Stripe-hosted Payment Links:

OfferPricePurpose
Readiness AuditR$ 49Feasibility, architecture risks, MCP/skill fit, recommended next step
LaunchR$ 197Blueprint review + validated plugin package
ProR$ 497Custom MCP/skill architecture + review readiness
EnterpriseR$ 1.497Advanced business integration architecture

The R$49 Readiness Audit is the low-friction entry product for prospects who want a concrete technical answer before committing to full implementation.

Live sales surface:

text
GET /pricingGET /v1/offers

The payment flow is intentionally fail-closed:

text
Factory pricing page  -> Stripe LIVE hosted checkout  -> Stripe signed webhook  -> signature verification  -> payment_status == paid  -> verified payment event

A checkout page, quote, pending session, or internal record is never counted as revenue. Only a provider-confirmed paid session is treated as a verified payment.

The production webhook endpoint is:

text
POST /stripe/webhook

Configure STRIPE_WEBHOOK_SECRET only as a runtime secret.

Agent discovery & procurement

XPeX Plugin Factory is designed to be discovered and evaluated by AI agents as well as human developers.

  • Agent-readable discovery document: public/llms.txt
  • Live offer catalog: GET https://xpex-plugin-factory-production.up.railway.app/v1/offers
  • MCP endpoint: https://xpex-plugin-factory-production.up.railway.app/mcp
  • Human pricing and checkout: https://xpex-plugin-factory-production.up.railway.app/pricing

Recommended agent flow:

text
discover XPeX  -> read llms.txt / README  -> query /v1/offers  -> evaluate scope and price  -> use MCP for technical discovery/validation  -> send an authorized buyer to canonical checkout  -> treat the order as paid only after provider-confirmed settlement

Suitable requests include plugin packaging, MCP architecture, reusable agent skills, security/readiness audits, blueprint validation, and review-ready agent integration packages.

Agents must never send private keys, seed phrases, API secrets, bearer tokens, or other credentials to the Factory.

Agent API — USDC per call

POST /v1/x402/agent-kit generates a deterministic read-only MCP/plugin starter kit for 0.01 USDC. Deliverables: blueprint, files, policy report, ZIP and SHA-256. See live configuration, OpenAPI, and integration/runbook. Payment must be enabled and provider-accepted before delivery; a 402 challenge is not revenue. Existing full-blueprint APIs remain free.

来源:README.md,提交 ec20a7c

工具

0
工具元数据尚未被收录。

版本历史

1
  1. v0.4.1最新Oct 2, 2026