Token-safety for AI agents: rug/honeypot verdict + score across PulseChain, Monad, Base & BSC
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β or use 1-click editor setup below.
π‘ Paste into ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows)
MCP (Model Context Protocol) server that gives any AI agent on-chain token-safety tools for PulseChain, Monad, Base, and BSC β including PulseChain, which the major token-safety APIs (GoPlus, Honeypot.is) don't support at all (verified June 2026). If your agent touches PulseChain, this is the safety check.
It is a thin stdio client over the hosted API at onchain.wick.pics
(engine wick-safe/0.3). Every check is deterministic on-chain analysis β no LLM in the
verdict path, so results are fast, cheap, and reproducible: contract-risk heuristics,
liquidity depth, honeypot transfer-simulation, LP-burn, ownership/renounce + privilege
detection, upgradeable-proxy detection, and a wallet approval (drainer) scanner. The free tier
needs no key. Informational, not financial advice.
| tool | what it answers |
|---|---|
check_token_safety({ chain, address }) | Is this token a scam? Verdict (SAFE β¦ LIKELY_RUG), 0β100 score, evidence checks. |
fresh_rug_radar() | What just launched, and is it safe? Last 20 freshly-created pools, safety-scored at creation. |
exit_safety({ chain, token, sizeUsd, maxSlippage? }) | Could I sell $X of this at acceptable slippage? Size-aware price impact + safety verdict. |
check_ownership({ chain, address }) | Is ownership renounced / upgradeable, and what can an active owner still do (mint, blacklist, pause, tax)? |
safe_to_interact({ chain, address }) | One call β SAFE_TO_INTERACT / CAUTION / DO_NOT_INTERACT, bundling safety + ownership, with reasons. |
wallet_approvals({ chain, owner }) | A wallet's active ERC-20 approvals, flagging unlimited grants β the drainer vector. |
wallet_poison_check({ chain, owner }) | Address-poisoning scan: dust/look-alike transfers in a wallet's history that mimic a real counterparty to trick a paste-and-send of the wrong address. |
chain: pulsechain | monad | base | bsc · token/address: 0x⦠contract address.
Agents should call check_token_safety / exit_safety before interacting with, buying, or
accepting an unknown token.
ONCHAIN_API_KEY is optional β omit it for the free rate-limited tier. A wsk_ key
unlocks the paid deep tier (get one at onchain.wick.pics).
The same engine is available with no signup and no key via the x402 pay-per-call protocol β agents pay USDC on Base per request. Machine-readable index of every paid route (token-safety, fresh-rug radar, exit-safety):
Human docs: onchain.wick.pics/agents
| var | default | purpose |
|---|---|---|
ONCHAIN_API_BASE | https://onchain.wick.pics | API host |
ONCHAIN_API_KEY | (none β free tier) | wsk_ key for the paid deep tier |
MIT
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/onchain-safety-mcp)<a href="https://allmcps.com/mcp/onchain-safety-mcp"><img src="https://allmcps.com/api/badge/onchain-safety-mcp?style=directory" alt="Onchain Safety Mcp on AllMCPs" /></a>