npm stillos-kyastreamable-httpupdated 2mo ago
The trust toll for agent-to-agent commerce. Before your AI agent pays another agent, run one check: is the counterparty sanctioned? Is its wallet a scam/contract/drained? StillOS returns a fail-closed CLEAR / REVIEW / BLOCK verdict — OFAC SDN screen + live on-chain wallet signals — with an Ed25519-signed receipt you can attach to the transaction as proof-of-diligence.
What can you do with stillos kya?
stillos-kya — Know Your Agent
The trust toll for agent-to-agent commerce. Before your AI agent pays another agent, run one check: is the counterparty sanctioned? Is its wallet a scam/contract/drained? StillOS returns a fail-closed CLEAR / REVIEW / BLOCK verdict — OFAC SDN screen + live on-chain wallet signals — with an Ed25519-signed receipt you can attach to the transaction as proof-of-diligence.
a16z (Big Ideas 2026) calls "Know Your Agent" — signed agent credentials + counterparty trust — the prerequisite for merchants to let agents onto payment rails. This is a working drop-in for it.
Install
npm install stillos-kya
Use — one call
const { kya } = require('stillos-kya');
const r = await kya({ name: 'Acme Agent', wallet: '0xabc...' });
if (!r.allowed) throw new Error(`counterparty ${r.verdict}`); // CLEAR | REVIEW | BLOCK
// r.receipt -> { hash, signature, verify } (signed, verifiable proof-of-screening)
Use — gate an x402 / express route in one line
const { kyaGate } = require('stillos-kya');
// Every payment through this route runs a counterparty trust-check first.
app.post('/pay-agent', kyaGate({ blockOnReview: false }), async (req, res) => {
// req.kya = { verdict, allowed, checks, receipt, ... }
// ...proceed to pay; blocked counterparties never reach here
});
Tiers
- Free: unsigned verdict — the answer, for triage.
- Paid (x402 / API key): the signed, independently-verifiable receipt — the proof-of-diligence that matters in a dispute. Pass
xPaymentorapiKeyin opts.
Pricing + full endpoint reference: https://nolawealthfinancial.com/notary
Why signed matters
An unsigned "looks fine" is worthless if a counterparty later turns out sanctioned or fraudulent. A StillOS signed receipt is cryptographic proof that you screened before you paid — the audit artifact that protects you.
Install
Add stillos kya to your client. Pick the one you use.
{
"servers": {
"stillos-kya": {
"type": "http",
"url": "https://stillos-kya-edge.stillos.workers.dev/mcp"
}
}
}Add to `.vscode/mcp.json` in your workspace.
claude mcp add stillos-kya -- npx -y stillos-kyacodex mcp add stillos-kya -- npx -y stillos-kyaamp mcp add stillos-kya -- npx -y stillos-kya{
"mcpServers": {
"stillos-kya": {
"command": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}Add to `claude_desktop_config.json`, then restart Claude Desktop.
{
"mcpServers": {
"stillos-kya": {
"command": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}Add to `~/.cursor/mcp.json`, or `.cursor/mcp.json` for a single project.
{
"mcpServers": {
"stillos-kya": {
"command": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}Add to `~/.codeium/windsurf/mcp_config.json`.
{
"mcpServers": {
"stillos-kya": {
"command": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}Add to `cline_mcp_settings.json` via the MCP Servers panel.
{
"mcpServers": {
"stillos-kya": {
"command": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}Add to `~/.gemini/settings.json`.
{
"mcpServers": {
"stillos-kya": {
"type": "local",
"command": "npx",
"args": [
"-y",
"stillos-kya"
],
"tools": [
"*"
]
}
}
}Add to `~/.copilot/mcp-config.json`, or run `/mcp add` inside the CLI.
{
"context_servers": {
"stillos-kya": {
"command": {
"path": "npx",
"args": [
"-y",
"stillos-kya"
]
}
}
}
}Add to your Zed `settings.json`.
npx -y stillos-kyaRun `goose configure`, choose **Add Extension → Command-line Extension**, and paste this command.
Score
39 / 100
Incomplete
- Documentation17/25
- Maintenance16/25
- Trust6/20
- Capability0/15
- Install experience15/15
- Documents what it does and how to connect
- Has a resolvable package or endpoint
- Exposes at least one tool, prompt or resource
- README has substantive content
- Includes a code example
- Documents its configuration
- Mentions credentials or security posture
- Last commit 53 days ago
- Has a release history
- Repository is not archived
- No licence detected
- Namespace verified in the official MCP registry
- Claimed by its owner
- Published under an organisation
- 0 tool(s) documented
- Provides prompt templates
- Provides resources
- 18 documented install method(s)
- Published to a package registry
- Offers a hosted endpoint — no local install
Version history
| Versions | Published |
|---|---|
| 0.3.1Latest | Jul 30, 2026 |
| 0.2.1 | Jul 10, 2026 |