
Research
/Security News
737 Chrome VPN Extensions Linked to Brand Impersonation and Browser Traffic Redirection
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.
soldefi-mcp
Advanced tools
MCP server for Solana DeFi risk intelligence, paid automatically via x402 micropayments (USDC on Solana or Base). Tools: rug/honeypot scan of any SPL token (mint/freeze-authority, Token-2022 transfer tax, holder concentration, and a live Jupiter buy->sell
An MCP (Model Context Protocol) server that gives AI agents paid access to Solana DeFi risk intelligence — rug/honeypot scans, deep liquidity-pool analysis, and a wash-trade-filtered "real best pools" ranking. Each paid call settles an x402 micropayment in USDC (on Solana or Base) automatically, using a wallet you configure. A call is charged only on success — malformed input is rejected for free.
It talks to the hosted Solana DeFi Intelligence API
(https://soldefi.thomenz.me by default). This package is a thin payment-client
bridge; the intelligence runs server-side.
| Tool | Price | What it does |
|---|---|---|
scan_honeypot | $0.005 | Rug/honeypot scan of an SPL token by mint: mint/freeze authority renounced?, Token-2022 transfer tax, top-holder concentration, and a live Jupiter buy→sell round trip as a strong signal the token is sellable at scan time (catches most honeypots). Returns a 0–100 risk score + AVOID/CAUTION/LOW RISK verdict. |
analyze_pools | $0.015 | Deep liquidity-pool analysis across Raydium/Orca/Meteora/pumpswap: real fee APR, wash-trade risk, age, TVL, a token rug verdict, and a real Jupiter slippage ladder ($100/$1k/$10k). Recommends the best risk-adjusted pool. |
top_pools | $0.02 | The real best Solana DEX pools — wash-traded/fake-volume pools filtered out, the rest ranked by risk-adjusted fee yield, with an excluded list of what was dropped and why. |
check_lp_status | $0.005 | Liquidity durability / rug-pull exposure: pools (TVL, age, DEX), largest-pool depth, burned-supply share, and whether mint/freeze authority is still live. Returns a 0-100 liquidity-risk score + verdict (DURABLE/SHAKY/FRAGILE/RUG-PRONE). |
check_deployer | $0.01 | Deployer reputation: creator wallet address, creator's remaining holding %, wallet age, and token age. Verdict flags fresh wallets, heavy insider holding, and brand-new tokens. |
can_i_sell | $0.003 | Real-time sellability check at YOUR size: simulates exiting a specific USD amount of a Solana token via a live Jupiter buy→sell round trip and reports USDC recovered, real sell price impact, and tax/friction loss. |
check_exit_risk | $0.015 | Can I get out, and at what cost? Crosses Birdeye smart-money flow (whale net buy/sell 24h, bundler/sniper manipulation tags, 1h sell-pressure, holder count) with a live Jupiter exit-slippage ladder ($1k/$10k) → LOW/ELEVATED/HIGH exit-risk. The sellability wedge: are whales dumping into a thin book that traps you? |
full_scan | $0.03 | One-call full workup: bundles honeypot + LP durability + deployer + exit-risk into a single verdict with an aggregated overall {riskScore, riskLevel, verdict, topFlags} — cheaper than buying the four separately (~$0.035). |
scan_wallet_risk | $0.03 | Portfolio rug scan: reads a wallet's SPL holdings and runs the full honeypot/rug scan on each (up to 10 positions), returning per-token risk and which mints to exit. |
scan_honeypot_batch | $0.02 | Batch rug/honeypot scan: submit up to 10 Solana token mints and get the full per-token honeypot verdict for each in one paid call (cheaper than scanning individually). |
build_guarded_swap | $0.001 + 0.5% | Build a ready-to-sign Jupiter swap with the rug check in front: a critical verdict on the token you are BUYING returns the verdict and no transaction. Returns an UNSIGNED versioned transaction — your wallet signs, this service never custodies funds. The 0.5% platform fee applies only when SELLING into USDC/SOL (buying is fee-free) and rides inside the transaction you sign. |
validate_mint | free | Local base58 mint-address format check. No payment. |
Add it to your MCP client (Claude Code, Claude Desktop, …). Only a paying wallet is required — everything else defaults to production.
{
"mcpServers": {
"soldefi": {
"command": "npx",
"args": ["-y", "soldefi-mcp"],
"env": {
"SOLANA_PRIVATE_KEY": "<base58-or-JSON-array secret key of a DEDICATED Solana wallet holding USDC>"
}
}
}
}
You can pay on Base instead of (or in addition to) Solana by setting
EVM_PRIVATE_KEY (0x…). If both are set, the x402 layer uses whichever rail
the server's payment challenge advertises.
| Var | Default | Notes |
|---|---|---|
SOLANA_PRIVATE_KEY | — | base58 or JSON-array secret key (32 or 64 bytes) of the paying Solana wallet. |
EVM_PRIVATE_KEY | — | 0x-prefixed key of the paying Base wallet. |
SOLDEFI_BASE_URL | https://soldefi.thomenz.me | Point at your own Worker if self-hosting. |
X402_NETWORK | base | base (mainnet → Solana mainnet) or base-sepolia (testnet → Solana devnet). |
SOLANA_RPC_URL | — | Optional RPC used to build the Solana payment (e.g. a Helius URL). Public default otherwise. |
🔐 Security: these keys control real funds. Use a dedicated wallet with a small balance, never a personal/treasury key. Anything that can read this process' environment can spend from it.
pnpm install
pnpm --filter soldefi-mcp build # tsc → dist/
SOLANA_PRIVATE_KEY=… pnpm --filter soldefi-mcp dev # run from source
MIT
FAQs
MCP server for Solana DeFi risk intelligence, paid automatically via x402 micropayments (USDC on Solana or Base). Tools: rug/honeypot scan of any SPL token (mint/freeze-authority, Token-2022 transfer tax, holder concentration, and a live Jupiter buy->sell
The npm package soldefi-mcp receives a total of 305 weekly downloads. As such, soldefi-mcp popularity was classified as not popular.
We found that soldefi-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
The campaign amassed more than 75,000 installs by targeting Russian-speaking users seeking access to blocked services.

Company News
Open source maintainers are under more pressure than ever. We're raising our open source program from the Team plan to the Business plan, free.

Security News
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.