Token honeypot & rug-pull risk screen (via GoPlus, free/keyless). For an ERC-20 on any EVM chain, returns honeypot flag, buy/sell tax, open-source/proxy/mintable status, hidden-owner / take-back-ownership / selfdestruct / external-call risks, blacklist/whitelist/anti-whale flags, holder count, and owner/creator concentration. Essential pre-trade safety check for agents — the security layer competitors charge for.
/api/crypto/token-safetyPAYMENT-SIGNATURE.The token safety API is a pay-per-call crypto endpoint built for AI agents and autonomous software. Token honeypot & rug-pull risk screen (via GoPlus, free/keyless).
There is no signup and no API key. An agent (or any HTTP client) hits the endpoint, receives an x402 "402 Payment Required" challenge, signs a sub-cent USDC payment on Base or Solana, and retries — the data comes back on the paid request. That makes it a drop-in token safety data source for an agent tool-use loop, an MCP host, or a backend that needs crypto data on demand without onboarding to yet another vendor portal.
| Name | Type | Description |
|---|---|---|
chainIdrequired | string | EVM chain id, e.g. 1 (Ethereum), 56 (BSC), 137 (Polygon), 8453 (Base). min 1 chars · max 20 chars |
addressrequired | string | match ^0x[a-fA-F0-9]{40}$ |
# 1. Probe with no auth → 402 envelope with PaymentRequirements curl -sS 'https://2s.io/api/crypto/token-safety?chainId=example&address=example' # 2. Sign + retry with PAYMENT-SIGNATURE: curl -sS 'https://2s.io/api/crypto/token-safety?chainId=example&address=example' \ -H 'PAYMENT-SIGNATURE: <base64-json-payload>' # Or use the canonical runner (handles probe → sign → retry): # EVM_PRIVATE_KEY=0x... node --env-file=.env.local \ # --experimental-strip-types scripts/x402-pay.ts \ # 'https://2s.io/api/crypto/token-safety?chainId=example&address=example'
import { TwoS } from '@2sio/sdk'
const client = new TwoS({
privateKey: process.env.EVM_PRIVATE_KEY as `0x${string}`,
})
const result = await client.crypto.tokenSafety({
"chainId": "example",
"address": "example"
})
console.log('endpoint:', result.endpoint)
console.log('cost:', result.costUsd, 'USDC')
console.log('tx:', result.settlement?.txHash)
console.log('data:', result.data)import os
from twosio import TwoS
client = TwoS(private_key=os.environ["EVM_PRIVATE_KEY"])
result = client.crypto.token_safety(chainId="example", address="example")
print("endpoint:", result.endpoint)
print("cost:", result.cost_usd, "USDC")
print("tx:", (result.settlement or {}).get("tx_hash"))
print("data:", result.data)// 1. Add @2sio/mcp to your MCP host config (Claude Desktop example below).
// EVM_PRIVATE_KEY funds x402 payments per call.
// claude_desktop_config.json
{
"mcpServers": {
"2sio": {
"command": "npx",
"args": ["-y", "@2sio/mcp"],
"env": { "EVM_PRIVATE_KEY": "0x..." }
}
}
}
// 2. Once the server is running, agents call this tool via standard MCP:
{
"jsonrpc": "2.0",
"id": 1,
"method": "tools/call",
"params": {
"name": "crypto.token-safety",
"arguments": {
"chainId": "example",
"address": "example"
}
}
}| Field | Type | Description |
|---|---|---|
ok | boolean | one of: true |
items | array | |
total | integer | Total matching rows upstream; null when unknown. |
source | object |
{
"ok": true,
"items": [
{
"chainId": "example",
"address": "example",
"isHoneypot": false,
"buyTax": 1,
"sellTax": 1,
"isOpenSource": false,
"isProxy": false,
"isMintable": false,
"canTakeBackOwnership": false,
"hiddenOwner": false,
"selfdestruct": false,
"externalCall": false,
"isBlacklisted": false,
"isWhitelisted": false,
"isAntiWhale": false,
"slippageModifiable": false,
"isInDex": false,
"isInCex": false,
"holderCount": 1,
"ownerPercent": 1,
"creatorPercent": 1
}
],
"total": 1,
"source": {
"provider": "example",
"url": "example",
"license": "example"
}
}