Urgent.News

What's breaking now, across thousands of outlets.

Tech

AgentRisk: A Pay-Per-Call Risk Oracle for Autonomous Trading Agents

The problem AI trading agents on Base are increasingly autonomous — they see a token, decide, and execute, often with no human in the loop. But "decide" usually means trusting whatever on-chain data the agent can scrape in the few hundred milliseconds it has before the trade window closes. That's a thin foundation for judgment: honeypot contracts, unlocked liquidity, rug-pull patterns — none of…

AgentRisk is a pay-per-call risk oracle designed specifically for autonomous trading agents on Base. Unlike most risk tools that are built for human use, AgentRisk provides machine-readable answers via a simple HTTP call, requiring no subscription, API key, or human interaction. It cross-references GoPlus token-security data with independent on-chain checks, such as liquidity status and holder concentration, to provide a comprehensive risk assessment.

AgentRisk offers signed, cacheable verdicts with each response containing a signed attestation. This attestation includes a risk score, scan ID, rulepack hash, policy version, input digest, chain, and timestamp. This allows calling agents to verify the signature offline and decide whether to cache the verdict or re-query the network, based on the timestamp's freshness. Machine-readable failure states are also provided, distinguishing between expired, revoked, replayed, and unsigned requests.

The integration surface is a REST endpoint (POST /scan) for sending contract addresses and making x402 payments, along with a MCP server for agents using Claude/MCP-compatible stacks. Additionally, the Agent Card enables other agents to discover the service without hard-coded integrations. AgentRisk has been live on Base Mainnet for months and has already processed real scans, including actual x402 payments settling on-chain.

While still in its early stages, feedback from developers building M2M agent infrastructure is highly welcome to further improve the service.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in Tech

Crowdwide is ALMOST DONE!! WOOOHOOO!! 🎉🚀

So… after weeks of building, fixing, breaking, fixing again, questioning my life choices, and repeating the same cycle… Crowdwide is almost done!!

  • Crowdwide platform nearing stable release
  • Community Map feature highlights platform activity
  • Developer overcame API key and map feature challenges

LLMjacking and the Hidden Cost of a Stolen API Key

For the past few years, one topic has constantly been on the minds of tech professionals around the world: AI. AI is no longer just another piece of the tech stack but is fast becoming its foundation.

  • LLMjacking involves unauthorized access to Large Language Models (LLMs).
  • Financial impact arises from expensive LLM usage for spam, phishing, malware.
  • Compromised LLM credentials can expose internal prompts and sensitive data.

Every compression library I tried ran out of RAM. So I built one that doesn't.

Compress a 1 GB file in the browser with most JavaScript libraries and you'll use 1.6 GB of RAM . Try 4 GB and the tab crashes.

  • Author created zstd-stream library to address RAM issues with compression libraries
  • zstd-stream uses Zstandard C library compiled to WebAssembly with streaming layer
  • Library compresses/decompresses files of any size using ~35 MB memory

More from Friday 2 October →