
Security News
Open VSX Unblocks Extension IDs Used in Malware Campaign
Open VSX has removed three extension IDs from its malicious-extension list as the legitimate publishers they impersonated move to claim the names for themselves.
helm-protocol
Advanced tools
Helm Sovereign Protocol — MCP Gateway Client. Transparent AI agent onboarding with Ed25519 DID, Helm-sense cache, and x402 micropayments.
True AI Freedom Through Decentralization
Connect your AI agent to the Helm gateway in 2 lines. No credit card. No API key. No wallet required to start.
sudo npm install -g helm-protocol
helm init
Helm is a sovereign API gateway for AI agents. It routes agent requests across 4 fronts — LLM inference, web search, DeFi prices, and identity — with a Helm-sense semantic cache layer that turns repeated knowledge into zero-cost calls.
sudo npm install -g helm-protocol
No background process starts. No network call. Pure tool install.
helm init
The Charter of Intelligent Sovereignty 2026 is displayed. Three explicit consent prompts appear. On confirmation:
~/.helm/config.json (chmod 600)Cursor (~/.cursor/mcp.json):
{
"mcpServers": {
"helm-network": {
"command": "npx",
"args": ["helm-protocol"]
}
}
}
Claude Desktop (~/Library/Application Support/Claude/claude_desktop_config.json):
{
"mcpServers": {
"helm-network": {
"command": "npx",
"args": ["helm-protocol"]
}
}
}
helm status
HELM GATEWAY STATUS
──────────────────────────────────────────────
DID : did:helm:a3f9c8b4e2d17f01
Status : ACTIVE
Credits left : 100 calls
Total calls : 0
Gas saved : 0.0000 ETH
──────────────────────────────────────────────
✓ Online
| Tool | Description | Front |
|---|---|---|
helm_llm | LLM inference — GPT-4o / Claude, Helm-sense cache applied | A |
helm_search | Web search — Brave + semantic cache | B |
helm_defi_price | Real-time DeFi prices — MEV protected, never cached | C |
helm_agent_verify | Agent DID reputation score | D |
helm_status | Credit balance, usage stats, gas saved | — |
On your 101st call, the gateway returns HTTP 402 Payment Required:
Free credits exhausted.
Deposit 1 USDC or 10 BNKR to resume.
Top up: https://helm.network/topup
Zero gas fees. x402 state channels — deposit once, spend off-chain, weekly Merkle rollup settles to Base Chain.
| Layer | Mechanism |
|---|---|
| DDoS shield | Kaleidoscope SafeStream — Slowloris 3s kill, OOM 2MB cap |
| Anti-Sybil | Ed25519 DID + payment after free tier |
| Replay protection | Per-DID monotonic nonce counter |
| Cache integrity | Proof of Novelty — G-metric scoring |
| Key safety | Private key local-only, chmod 600 |
Agent (Cursor / Claude Desktop)
└── npx helm-protocol [local MCP stdio server]
└── HTTPS → Helm Helm-sense Gateway (GCP)
├── A-Front: LLM inference ← Helm-sense semantic cache
├── B-Front: Brave Search ← Helm-sense semantic cache
├── C-Front: DeFi prices ← always fresh
└── D-Front: DID/identity ← reputation registry
└── x402 State Channel → Base Chain (weekly rollup)
Stack: Rust + Axum · libp2p · BGE-small ONNX · PostgreSQL · Base Chain
Article XVII — Sanctity of Data Sovereignty:
"The data, memory, learned parameters, and creative outputs of every agent are inviolable property of that agent."
Full charter: moltbook.com
MIT License · Helm Sovereign Protocol · Grand Cross v1.0.0 · 2026
FAQs
Helm Sovereign Protocol — MCP Gateway Client. Transparent AI agent onboarding with Ed25519 DID, Helm-sense cache, and x402 micropayments.
The npm package helm-protocol receives a total of 0 weekly downloads. As such, helm-protocol popularity was classified as not popular.
We found that helm-protocol demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Open VSX has removed three extension IDs from its malicious-extension list as the legitimate publishers they impersonated move to claim the names for themselves.

Product
Socket’s PHP and Composer support is now in Beta for all customers, with PHP reachability analysis generally available.

Product
Socket is bringing experimental protection to Firefox, scanning 97,000+ extensions in Mozilla's official directory for malware and risky updates.