
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@xenarch/agent-mcp
Advanced tools
Non-custodial x402 MCP server for AI agents. Lets Claude, Cursor, LangChain and CrewAI pay for HTTP 402–gated APIs with USDC micropayments on Base L2. Unlike Cloudflare Pay-Per-Crawl, works on any host and settles agent-to-publisher direct.
Xenarch is a non-custodial x402 MCP server that gives any AI agent a wallet and lets it resolve HTTP 402 ("Payment Required") responses automatically. When a site, API, or tool returns HTTP 402 with an x402 challenge, the agent signs a USDC micropayment on Base L2 (up to $1 per call) and retries — no API keys, no subscriptions, no credit card on file.
| Cloudflare Pay-Per-Crawl | TollBit | Xenarch | |
|---|---|---|---|
| Works on any host | ❌ (Cloudflare only) | ❌ (enterprise) | ✅ |
| Non-custodial | ❌ | ❌ | ✅ (agent-to-publisher direct, no Xenarch contract) |
| Fee | Platform rate | Platform rate | 0% — no Xenarch contract that can charge a fee |
| Open standard | proprietary | proprietary | x402 + pay.json (open) |
Claude Code, Claude.ai (via MCP), Cursor, Cline, LangChain, CrewAI, and any MCP-compatible client.
HTTP 402 has been reserved in the HTTP spec since 1997 for exactly this — machine-to-machine payment. x402 is the open protocol that finally uses it: a signed USDC micropayment any server can verify and any agent can produce.
pay.json is the open standard for machine-readable pricing, served at /.well-known/pay.json. Think robots.txt for payments.
How does Claude pay for APIs with Xenarch? Install the Xenarch MCP server, give it a wallet, and Claude resolves any HTTP 402 response automatically with a USDC micropayment on Base L2.
Is Xenarch custodial? No. Payments settle direct from the agent's wallet to the publisher's wallet via a third-party x402 facilitator. Funds never touch Xenarch infrastructure — there is no Xenarch contract in the money flow.
What's the fee? 0%. There is no Xenarch contract that can charge a fee — the architecture is structurally zero-fee, not a policy promise.
What's the max payment? $1 per call.
Learn more: https://xenarch.com
npm install @xenarch/agent-mcp
Add to Claude Code:
claude mcp add xenarch -- npx -y @xenarch/agent-mcp
| Variable | Default | Description |
|---|---|---|
XENARCH_PRIVATE_KEY | — | Wallet private key (overrides config file) |
XENARCH_RPC_URL | https://mainnet.base.org | Base RPC endpoint |
XENARCH_API_BASE | https://xenarch.dev | Xenarch platform API |
XENARCH_NETWORK | base | Network (base or base-sepolia) |
XENARCH_MAX_PAYMENT_USD | — | Max USD per call to auto-approve without prompting (defaults to 0.1 USDC inside x402-fetch) |
FAQs
Non-custodial x402 MCP server for AI agents. Lets Claude, Cursor, LangChain and CrewAI pay for HTTP 402–gated APIs with USDC micropayments on Base L2. Unlike Cloudflare Pay-Per-Crawl, works on any host and settles agent-to-publisher direct.
The npm package @xenarch/agent-mcp receives a total of 90 weekly downloads. As such, @xenarch/agent-mcp popularity was classified as not popular.
We found that @xenarch/agent-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.