
Research
/Security News
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Popular npm packages keyv and cacheable compromised.
@pulsenetwork/mcp
Advanced tools
Give your AI agent a wallet and 900+ pay-per-call intelligence APIs. Local MCP server with a zero-config wallet, hard spend caps enforced below the model, and free discovery across the PulseNetwork x402 fleet (finance, crypto, health, law, travel, climate
Give your AI agent a wallet and 900+ pay-per-call intelligence APIs.
A local MCP server that connects any MCP host (Cursor, Claude Code, Claude Desktop, …) to PulseNetwork — 74 intelligence verticals covering finance, crypto, health, law, travel, climate, safety, and more. No accounts, no API keys: every endpoint is paid per call in USDC on Base via the x402 protocol.
{ "mcpServers": { "pulsenetwork": { "command": "npx", "args": ["-y", "@pulsenetwork/mcp", "mcp"] } } }
| Tool | Cost | What it does |
|---|---|---|
pulse_discover | FREE | Search the full catalog (~900 endpoints) by keyword |
pulse_call | pays the listed price | Call an endpoint; payment settles automatically |
pulse_balance | FREE | Wallet address + USDC balance |
pulse_report | FREE | Local spend report |
pulse_guardrail | FREE | Show active spend caps |
On first run the server generates a wallet (standard BIP-39 phrase, imports into
MetaMask/Rabby) and prints the address. Fund it with a few dollars of USDC on Base
and paid calls just work. The recovery phrase is stored at ~/.pulsepay/wallet.json
(file mode 600) — back it up. Prefer your own key? Set PULSEPAY_EVM_KEY and nothing
is written to disk.
Guardrails run in code, before anything is signed — a confused or prompt-injected agent cannot bypass them:
~/.pulsepay/config.json or via
PULSEPAY_MAX_PER_CALL / PULSEPAY_MAX_PER_DAY)*.theaslangroupllc.com (the PulseNetwork fleet) — nothing else"Check if a 5-hour delayed flight from FRA to JFK qualifies for EU261 compensation."
"Is this token safe? 0x… on Base — run a safety scan before I ape."
"Any product recalls for 'baby teether' in the EU this year?"
"What's my agent wallet's balance and what did it spend this week?"
Most endpoints cost $0.01–$0.25. The agent discovers for free, quotes the price, and pays only when you ask it to.
MIT © The Aslan Group LLC. Terms: https://pulse.theaslangroupllc.com/terms.html
FAQs
Give your AI agent a wallet and 900+ pay-per-call intelligence APIs. Local MCP server with a zero-config wallet, hard spend caps enforced below the model, and free discovery across the PulseNetwork x402 fleet (finance, crypto, health, law, travel, climate
We found that @pulsenetwork/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.

Security News
/Company News
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secure.