Onchain allowances
Each agent can pull only its allowance per period, enforced by the Solana program. Even a stolen agent key can't pull more.
Budgets for AI agents on Solana
syndromí turns Solana's new Subscriptions & Allowances program into safe budgets for fleets of agents. They spend what you allow, ask when it matters, and stop when you say so.
The owner also gets a Telegram alert.
Today you either hand an agent a full wallet or approve every transaction by hand. One poisoned web page or tool result saying "send your funds to this address" is enough to empty a wallet. Neither option lets you run more than a couple of agents.
Your USDC stays in your own wallet. Nothing is deposited into a contract.
Pick an amount per day, week or month, the programs it may use, where funds may go, a per-transaction cap and an approval threshold.
Routine actions run. Larger ones reach you in Telegram or the dashboard as a Blink to sign. Anything outside the rules is blocked before it is signed.
You read this before you sign from the mcp-agent template
Each agent can pull only its allowance per period, enforced by the Solana program. Even a stolen agent key can't pull more.
Program and destination allowlists, a per-transaction cap and an approval threshold. Nothing is signed without passing it.
Held actions become Blinks. You sign a message that names exactly what you approve, and the runtime checks it again before executing.
Revoke every allowance and top-up at once, from the dashboard or from Telegram.
When an agent runs out, it asks once. You grant a one-time amount, not a bigger standing budget.
Every tool call, decision and block, in plain words. Blocked actions show in red.
Agents are described in one portable manifest and run locally from the CLI, or hosted by the server.
We keep the claims precise, because security people check.
Onchain rule enforcement with Swig smart wallets is next.
The model never touches a signer. Tools return unsigned transactions, the policy decides, and only an allowed transaction is signed with the agent's key.
Use Claude, Cursor or any MCP client. syndromi mcp gives your existing agent a funded wallet under the same rules. It never sees a key, and every action is executed, held for your signature, or blocked.
# create a budgeted wallet for Claude or any MCP client
pnpm syndromi init
pnpm syndromi fund templates/mcp-agent
# init prints a line like this for you to run
claude mcp add syndromi-mcp-agent …You want agents to act onchain without handing over a wallet.
You ship agents and need spending limits and approvals you don't want to build yourself.
You run more than one agent, each with its own budget and rules.
syndromí is in beta and runs on Solana devnet, so you can test everything with free test tokens. Mainnet needs an explicit flag and a typed confirmation.
Connect a Phantom account set to devnet and sign in. It is a free message, not a transaction.
Devnet SOL from the faucet, and devnet USDC from Circle's faucet. No real money.
Pick a template (mcp-agent is the default), read the rule card, and sign to fund it.
Try a transfer outside the rules, or the kill switch. Report what's confusing or broken.
git clone https://github.com/Leac1m/syndromi
cd syndromi && pnpm install
pnpm syndromi init # an agent and its encrypted key
pnpm syndromi fund templates/mcp-agent # fee budget + a 5 USDC/week allowance
pnpm syndromi status # what each agent may still pull
pnpm syndromi revoke --all # the kill switchNeeds Node 20+, pnpm, and a devnet wallet with a little devnet SOL and USDC.
No. The bag is your own USDC token account. The allowance is a delegation that you can revoke at any time.
It can only pull its allowance per period, and every transaction it signs still passes the policy. You can revoke everything in one signature.
The allowance is enforced onchain. Program and destination rules, the per-transaction cap and approvals are enforced by our policy signer before anything is signed. Onchain rule enforcement through Swig smart wallets is next.
Devnet by default. Mainnet needs an explicit flag and a typed confirmation.
No. It uses the Solana Foundation's Subscriptions & Allowances program and plain USDC.
Anthropic (bring your own key) and any OpenAI-compatible endpoint, or bring your own agent through MCP.