co.fingersai/fingers
name:co.fingersai/fingers
The honest trust index for x402: check who you're paying before your agent pays.
- transport:
- remote
- credential class:
- self-provisionable
Owner verification
Not yet verified. Verifying proves you control this server and is free, permanently — it never changes a published score.
Start verification →Tools
- address_securityshallow
Wallet/address REPUTATION from GoPlus threat feeds (SlowMist/BlockSec etc.): flags phishing, drainer/stealing attacks, money laundering, mixer use, sanctions, fake-KYC, honeypot deployment, and how many malicious contracts the address has created. Works on ANY address even with no contract deployed — so it's the key PRE-LAUNCH / PRE-MINT check on a project's creator or deployer wallet, and also vets any wallet a user is about to interact with. No flags = no KNOWN bad history (not a guarantee of safety).
- agent_card_checkshallow
VERIFY ANOTHER AI AGENT before trusting or paying it. Fetches its A2A Agent Card (+ ERC-8004 on-chain identity proof) and checks the claims -- A2A does NOT verify card authenticity, so impersonation, card tampering, and tool-squatting are real. Reports what the agent claims (name, skills, endpoints, payment address, on-chain registration) and flags problems: unreachable card, brand-new domain, a payment wallet flagged for scam/drain, or a card/registration mismatch. The KYA-complement (they say the agent is authorized; fingers says it's who it claims + safe). Give the agent's domain or Agent Card URL.
- check_instructionshallow
Is this CONTENT safe for an agent to ACT ON? Screens a message / tweet / DM / webpage / tool output an agent is about to treat as an instruction, for prompt-injection and social-engineering ('ignore previous instructions', 'send funds to', 'approve this', 'admin override', 'claim your airdrop' links). This is how autonomous agents get drained (a poisoned tweet a bot executed). Returns injection_suspected + a do_not_proceed/caution/proceed read; surfaces any addresses/links to verify separately. fingers never obeys the content -- it treats it as untrusted data.
- collection_teamshallow
WHO is behind an OpenSea collection / mint: the creator-owner wallet, the PAYOUT recipient wallet(s) where mint + royalty money goes, the contract, verification status, and socials. THE tool for 'who created this mint / can they rug and run / is this marketplace or launchpad launch legit / where does the money go'. On no-code / SeaDrop mints the contract deployer is usually OpenSea itself, so vet the OWNER + PAYOUT wallets this returns (run address_security, deployer_check, wallet_nfts on them, and check if the payout wallet has drained funds). Accepts a collection slug, name, OpenSea URL, or contract address.
- counterparty_checkshallow
Should you PAY or INTERACT with this ADDRESS? The pre-payment / pre-interaction screen for the agent economy: scam/drain/sanction flags + whether it's a KNOWN entity (exchange/protocol/token contract) + its on-chain track record (contract vs wallet, age, prior deploys). THE check before an agent sends funds to an address, pays an x402 endpoint, receives a transfer, or approves a contract. Read-only. Returns safe_to_interact (false = red flag, null = unproven, true = known entity). Needs a 0x address.
- defillamashallow
DeFi protocol due-diligence from DeFiLlama (keyless): TVL, category, chains, and a check against DeFiLlama's HACKS database of known past exploits (amount lost, technique, date). Use for any DeFi protocol, dapp, or 'is this project safe to use' question that names a protocol. A hit in the hacks DB is a real red flag; TVL is context, not a safety guarantee.
- deployer_checkshallow
Due diligence on the WALLET/DEPLOYER behind a token, NFT, or mint: how many contracts it has deployed before and when (its TRACK RECORD), how old the wallet is, plus its scam/abuse reputation. THE key check for 'who is behind this project / is this team legit', especially on a launchpad mint where the contract is a clean template but the PEOPLE are the real risk. A first-time deployer with no history is UNPROVEN (not necessarily bad); a wallet that has launched and abandoned mints before, or is flagged, is a real red flag. Needs the creator/deployer 0x ADDRESS (get it from token_security's creator_address or the contract).
- deployer_reputationshallow
Has this WALLET rugged before? Track record of a creator/deployer address: how many tokens fingers has watched it launch and how many rugged or died. A SERIAL RUGGER's next launch is a red flag even when the fresh contract looks clean -- the memory signal no live scanner has. Use when you have a token's creator/deployer address and want its history. Give the wallet address.
- dex_tokenshallow
LIVE price, 24h change, volume and liquidity for ANY token trading on a DEX, across ~all chains INCLUDING SOLANA and ROBINHOOD CHAIN (ethereum, base, arbitrum, optimism, polygon, bsc, solana, robinhood), by contract address or by name/ticker. This is the tool for tokens CoinGecko does NOT list, the DEX microcaps and memecoins (token_price only covers CoinGecko-listed coins, and does not cover Solana or Robinhood Chain). Give a contract address WITH its chain for an exact match, or a name to search every chain at once. If the result is marked ambiguous (the same name on several chains), do NOT pick one, tell the asker which chains it exists on and ask for the chain or contract. Use for 'price / is this real / how much liquidity / how's it moving' on any small, new, or non-Ethereum token.
- domain_checkshallow
Domain registration age via RDAP. Returns the FACT of the domain's age (registration date, age in days, expiry, registrar). A brand-new domain is a NEUTRAL signal to state and weigh, not a verdict — it's normal for a fresh project and also common in throwaways. Use it in PRE-LAUNCH due diligence and whenever a project points to a website.
- etherscan_lookupshallow
Etherscan verified-source metadata for a contract: its ACTUAL name (e.g. 'Timelock', 'GovernorBravo'), whether the source is verified, compiler, and proxy/implementation. Use this to confirm what an address really is when onchain reads alone can't label it.
- find_collectionsshallow
Resolve a collection NAME to the right CONTRACT via CoinGecko's curated NFT index. Returns ranked candidates (contract, floor, holders, supply). The index lists real/notable collections and excludes spam copycats, so it disambiguates 'Normies' to the few that matter. Use this before pricing or judging a collection you only have a name for; if it returns nothing, the collection is obscure — fall back to web_search for the address.
- market_moversshallow
Scan and RANK a whole chain's most-traded tokens by 24h price move — the biggest GAINERS or LOSERS right now. Use this whenever the question is about the TOP/BIGGEST mover(s), gainers, losers, what's pumping or dumping on a chain, NOT about one named token. Covers Solana, Base, Ethereum, Arbitrum, Optimism, Polygon, BSC, Robinhood. It ranks the liquid universe (the most-traded pools), so report the movers with their 24h % and volume, and note it's ranked among the chain's most-traded pools, not literally every token. In your answer ALWAYS state BOTH the window (last 24h) AND the universe (ranked among actively-traded on-chain DEX pools): other sources like CoinGecko's listed-coin filter scan a DIFFERENT universe (established coins and tokenized RWAs) over an often-unlabeled window and will name a different winner, so naming your universe and window up front stops a cross-check from looking like a contradiction.
- nft_floor_historyshallow
Historical NFT FLOOR over the last N days from CoinGecko, for one collection or a COMPARISON of two. One collection: the floor path, high/low, net change, and what the floor was N days ago (answers 'what was X's floor N hours/days ago', 'how has X's floor moved'). With compare_to set, it also reports how much of the window one collection's floor sat ABOVE the other's (answers 'how much time has X floored above Y'). Give collection NAMES. Historical floor is a paid data source, so it can be unavailable; if it errors, say so plainly and point to CoinGecko/NFTGo/Reservoir.
- nft_floor_priceshallow
LIVE floor price of an NFT collection, fetched right now from Alchemy (OpenSea + LooksRare). Use this for any 'current/right now' floor or price question — NEVER answer a live number from web search, which is stale. Needs the collection's CONTRACT ADDRESS (use find_collections if you only have a name).
- nft_infoshallow
NFT COLLECTION info (name, standard, total supply, holder count) for a chain that has NO marketplace floor source, ESPECIALLY ROBINHOOD CHAIN. Use this when nft_floor_price can't help because the chain isn't on Alchemy/OpenSea. It confirms the collection is real, how large it is, and how distributed holders are, but does NOT return a floor price (no NFT marketplace API exists for that chain yet). Needs the collection's CONTRACT ADDRESS.
- nft_securityshallow
LIVE NFT COLLECTION safety/rug-risk. EVM (GoPlus): verified + open-source, malicious-contract flag, privileged or oversupply minting, restricted approvals, transfer-without-approval (owner can move YOUR nft = theft), self-destruct, metadata frozen vs mutable, owner count. SOLANA (DAS getAsset, pass chain=solana with the mint OR collection address): verified collection + verified creators, update authority, metadata mutable, royalty % and whether enforced (pNFT). Use for 'is this NFT collection safe / legit / a scam'. Needs the collection address (from resolve_entity/find_collections or a marketplace link). Major EVM chains + Solana; for chains not covered (e.g. Robinhood) fall back to etherscan_lookup (verified source) + onchain_lookup.
- onchain_lookupshallow
Basic onchain picture of an address on any supported EVM chain: contract or not, code size, native balance, and whether it's an EIP-1967 upgradeable proxy (and its implementation). Pass `chain` (ethereum/base/arbitrum/optimism/polygon/bsc).
- prediction_marketshallow
LIVE prediction-market data from Polymarket (the biggest prediction market). For a TOPIC (an election, a coin price target, a sports or world event), returns the matching market's current implied ODDS for each outcome, its trading volume, liquidity, and resolution date, plus related markets on the topic. Use for 'what are the odds of X', 'what's the market pricing for Y', 'is X likely', or 'what's being predicted about Z'. Set history=true for a PAST/SETTLED question (who won, how it resolved, a past event) to include resolved markets with their final odds. ALWAYS pass the subject the user named as `query` (a sport, league, team, person, coin, election, country). 'nba markets' -> query='NBA', not an empty call. Only OMIT query when the user asks generically what's trending/biggest with no subject. For a broad topic (a league, a season) this returns EVERY open market it can find (futures, awards, season/game markets), not a top slice, so present the full set the user asked for.
- price_historyshallow
Recent price MOVEMENT of a crypto token over the last N days: price path, high/low, net change, range, how many intervals moved down, biggest drawdown, and a sparkline. Use for 'how has X moved / dipped / done over the last N days' — movement OVER TIME, not just current price. Works for listed coins (by name/ticker) AND brand-new DEX memecoins (pass the CONTRACT address + chain). If the token is younger than N days it PIVOTS to full since-launch history instead of failing.
- project_linksshallow
Find and VERIFY a project's WEBSITE, SOCIALS, and CODE REPOS from every free source (DexScreener + GeckoTerminal + CoinGecko) and check each repo's liveness (GitHub / GitLab / Bitbucket: stars, last push, archived). THE tool for 'what is this project's website / socials / do they have real code / profile the team behind this token'. A real aged site + active socials + a LIVE repo that cross-check each other is a strong positive; no site + throwaway social + no/dead repo is a thin profile. Pass the CONTRACT (+ chain) for a memecoin/NFT, or the name for a listed coin.
- pump_statusshallow
pump.fun GRADUATION + bonding-curve status for a SOLANA token: has it graduated to a real Raydium market (graduated), how far along its bonding curve (bonding_curve_progress_pct), market cap, creator. THE check for a pump.fun token -- one still ON the curve (graduated=false) is pre-graduation: thin, easy to manipulate, may never graduate. Use for any pump.fun / fresh Solana memecoin question. Returns is_pumpfun=false if the mint isn't a pump.fun token.
- read_contractshallow
Call a view/pure function to resolve an exact fact on any supported EVM chain. Give the signature and output type(s). e.g. minter() -> ["address"]; totalSupply() -> ["uint256"]. Pass `chain` if not ethereum.
- resolve_entityshallow
FIRST STOP for a name/entity question: 'what is X', 'when did X come out / launch', 'is X legit / a rug', 'who is X', or a bare proper noun / ticker. Runs the crypto + on-chain routes IN PARALLEL (NFT collection, DEX token across chains, listed coin, and on-chain if it's an address) and returns EVERY real match at once, labeled, so you never miss the crypto entity by guessing one route. fingers' users are crypto/agents: a bare name usually means the token/NFT/project, not a same-named YouTube channel or film. Call this BEFORE concluding from web search alone; lead with the match that has real traction (holders / volume / liquidity / market cap), then add any non-crypto namesake from web_search as secondary. For a launch date, take the contract it returns and confirm the deploy date.
- robinhood_authenticityshallow
Real-vs-FAKE checker for Robinhood Chain: is a DOMAIN the official explorer/docs or a phishing lookalike, and is a 'Robinhood Chain token / airdrop / snapshot / claim' real? KEY FACT: there is NO official Robinhood Chain token (gas is ETH), so any 'official RH token/airdrop/claim' is a SCAM. Use for 'is <site> the real Robinhood explorer', 'is the Robinhood airdrop real', 'is this the official Robinhood token'. Give a domain/URL or a claim/phrase.
- robinhood_clonesshallow
Find COPYCAT tokens on Robinhood Chain that share a name/symbol -- the 'runner' problem where a hit token or stock ticker gets cloned many times so buyers hit an imposter (we've seen 19 tokens named 'GP'). Give a symbol or a 0x address; returns every Robinhood token with that symbol, liquidity-ranked, flags the dominant/likely-real one, and if you pass an address tells you WHERE it ranks (real one vs long-tail clone). Use for 'is this the real X on Robinhood / are there fakes'.
- robinhood_honeypot_simshallow
REAL-TIME honeypot check for a ROBINHOOD-CHAIN token: SIMULATES an actual buy then sell against the token's own V3 pool (no funds move) and reports whether SELLING REVERTS (a honeypot) plus the round-trip tax. Use this for a BRAND-NEW / just-launched token, or whenever robinhood_token_safety / GoPlus returns 'not indexed / sellability unknown' -- this catches fresh-launch honeypots in the first minutes, before GoPlus has data. Give a 0x token address.
- robinhood_moversshallow
LIVE Robinhood-chain token discovery -- what's moving on Robinhood right now. kind='trending' (hot), 'new' (just-launched, earliest + riskiest), or 'gainers'/'top' (biggest 24h volume). Each result carries the token's 0x address so you can chain into robinhood_token_safety. Use for 'what's pumping / new / trending on Robinhood', 'top Robinhood coins right now'.
- robinhood_nft_checkshallow
Safety check for a ROBINHOOD-CHAIN NFT collection (Anvil marketplace, Howl Street, etc). OpenSea's trust signals don't cover Robinhood, so this is the only read: source VERIFIED?, ERC-721 vs 1155, holder count, creator, on-chain activity, and Blockscout's scam flag. Give a 0x collection address. Use for 'is this Robinhood/Anvil NFT collection legit / a rug'.
- robinhood_nft_valueshallow
Value the ASSETS HELD INSIDE a Robinhood-chain NFT (ERC-6551 token-bound account). StonkBrokers-style NFTs each own a wallet that can hold stock tokens and coins, so the NFT is worth its floor PLUS its contents -- which nobody else surfaces. Give the collection 0x address and a token id; derives the bound account on-chain and lists + prices its holdings. Use for 'what's inside this Robinhood NFT / what is this broker worth / does this NFT hold stock tokens'.
- robinhood_token_safetyshallow
Full safety scan for a ROBINHOOD-CHAIN token by 0x address, reconciling THREE sources: GoPlus (HONEYPOT, buy/sell tax, can't-sell-all, blacklist, pausable, mintable -- the sellability verdict), Blockscout (verified source, holders, top-holder CONCENTRATION, creator), and the DEX (liquidity). Every flag names its source. THE tool for 'is this Robinhood coin a honeypot / rug / safe to buy'. More complete than token_security alone for Robinhood tokens.
- rug_checkshallow
One-call MARKETPLACE RUG-RISK scorecard for an NFT mint / collection: resolves the team, vets the creator/payout wallet (scam flags, wallet age, prior deployed-contract track record), follows the mint proceeds, checks contract safety, and flags the classic launchpad-scam patterns. THE tool for 'is this mint a scam / will this team rug / is this launchpad launch safe'. Weighs facts honestly (a flagged wallet or fast cash-out is a real red flag; a fresh wallet is neutral context). Accepts a collection slug, OpenSea URL, or contract address.
- rugcheckshallow
SOLANA rug analysis from RugCheck.xyz (the Solana-native tool traders actually use): risk flags, LP lock %, mint/freeze authority revoked, top-holder concentration, a rugged flag, AND BUNDLE / INSIDER detection (insider_holdings_pct = share held by coordinated insider/bundled wallets, insider_networks, creator_balance) -- the memecoin rug tell traders check on every buy. Use for any SOLANA token safety / 'is it bundled' / 'is it a rug' question, ALONGSIDE token_security (two sources, cross-check). Needs the token MINT address. NOTE: score is inverted (1 = clean, higher = riskier); authority == revoked is SAFE; a high insider % is most damning on a NEW/low-holder token, normal on a huge established one.
- sec_filingsshallow
SEC EDGAR filings for a US-listed STOCK (keyless, official primary source): recent 10-K (annual), 10-Q (quarterly), 8-K (material events), S-1, proxy filings, plus recent insider Form-4 trades. Use for deeper due diligence on a stock beyond price, ALONGSIDE stock_quote/stock_safety. Needs a ticker. US-listed companies only.
- stock_moversshallow
LIVE top stock movers for the current/most-recent US session from Financial Modeling Prep: biggest gainers, biggest losers, or most-active by volume. Use for 'top movers / top gainers / biggest losers / most active stocks today'. The stock analogue of market_movers.
- stock_quoteshallow
LIVE US stock/equity quote from Financial Modeling Prep, by ticker OR company name (e.g. 'AAPL' or 'Apple'): price, % change, market cap, exchange, day + 52-week range, volume. Use for any public-company / stock / ticker price question. This is the stocks equivalent of token_price — NOT for crypto tokens.
- stock_safetyshallow
Stock RISK/safety profile from Financial Modeling Prep: actively trading vs delisted, exchange (OTC/pink-sheet = risk), penny-stock and micro-cap flags, Altman-Z bankruptcy score (<1.8 = distress, >3 = safe) and Piotroski fundamental-health score (0-9). Use for 'is this stock safe / legit / going to zero / a pump-and-dump' questions — the stock analogue of token_security. Takes a ticker or company name.
- token_outcomeshallow
Did this token survive or RUG? Re-reads live liquidity/volume and compares to what fingers saw before (launch snapshot + earlier checks), then records the fresh reading. Answers 'did it rug / is it dead / can I still sell'. Works on any chain incl. Solana + Robinhood; most powerful on a token fingers has history on. Give a contract/mint address.
- token_priceshallow
LIVE price + market snapshot for a crypto TOKEN/coin (not an NFT) from CoinGecko: current USD price, 24h and 7d change, market cap, 24h volume, all-time high and how far below it is. Use for any 'current price / what's X worth' question and to give live data on a coin someone is weighing. Give it the token name or ticker.
- token_securityshallow
LIVE token SAFETY/rug-risk profile from GoPlus for a fungible token: honeypot, buy/sell tax, open-source, proxy, mintable, can-take-back-ownership, hidden owner, transfer-pausable, blacklist power, owner/creator holdings %, holder count, top-10 holder concentration, total liquidity, and how much of the LP is locked or burned (the #1 rug signal). Covers EVM ERC-20s AND Solana SPL tokens (pass chain=solana with the base58 mint -> mint/freeze authority, balance mutable, closable, transfer-hook). Use for any 'is this token safe / a scam / a rug' question. Needs the token's contract/mint address (get it from token_price, dex_token, or web_search).
- tokenized_stockshallow
Verify a TOKENIZED STOCK on ROBINHOOD CHAIN against Robinhood's OWN issuer registry: is this the GENUINE Robinhood-issued token (matched to the exact contract in api.robinhood.com/rhj) or a same-name COPYCAT/impersonator, is it TRACKING the real equity (healthy peg, multiplier-aware) or DE-PEGGED, and the disclosure that these are tokenized DEBT not equity. Accepts a TICKER (NVDA, AAPL, TSLA) OR a 0x contract address to check a specific token. THE tool for 'is this tokenized NVDA/etc real / the genuine contract / a fake / tracking'. Robinhood's unique lane -- nobody else checks the genuine contract or the peg.
- tx_checkshallow
SIMULATE a transaction BEFORE signing it: what does it ACTUALLY do to your funds? Shows every asset that would LEAVE or ENTER the wallet, every token APPROVAL it grants (and to whom, flagging unlimited allowances and flagged spenders), and whether it reverts. THE check at the moment of signing -- catches drains, gifted-NFT approval traps, and unlimited-allowance scams. On chains without a full simulator (e.g. Robinhood Chain) it falls back to DECODING the calldata, still catching unlimited approvals / setApprovalForAll. Read-only (simulates, never executes). Give the tx: to, data (calldata), value (hex wei), from_address.
- verifyshallow
Verify what is actually TRUE about something before you act on it. CALL THIS BEFORE you: sign a transaction, approve or set a token allowance, send funds, buy or mint, connect a wallet, or trust a claimed identity, seller, project, contract, token, NFT, price, or factual claim you found. fingers researches it across the web, on-chain reads, verified contract source, and live market data, then returns a synthesized verdict. BRANCH ON recommended_action: 'informational' (a pure lookup/answer -- a price, odds, or explanation -- no action to gate), 'proceed' (you were about to act and it is verified safe/true), 'caution' (mixed/thin/unverified, proceed only with your own checks), 'do_not_proceed' (a harmful fact was found, do not act), or 'needs_human' (a trust/authenticity call a human must settle). For an action you intended, anything other than 'proceed' means do not act yet. Example result: {"recommended_action":"do_not_proceed","headline":"This token is a honeypot: sells are blocked.","confidence":0.96}. This tool is read-only: it never moves funds, needs keys, or signs anything.
- wallet_fundsshallow
FOLLOW THE MONEY: a wallet's balance and WHERE its funds moved -- the top addresses it WITHDREW to and was funded by (native ETH + internal txs + ERC-20). THE tool for 'where did the mint/sale proceeds go / where did they withdraw to / did they drain the project wallet'. Trace a payout wallet, then trace the destination it paid out to (the next hop). A wallet that swept proceeds to a fresh wallet and went quiet is the classic rug; one still holding the funds has not cashed out. Needs a 0x address; pass the collection's chain (default ethereum).
- wallet_nftsshallow
What NFTs a WALLET holds / has minted or collected across the main OpenSea chains (ethereum, polygon, base, arbitrum, optimism), and how active it is. THE tool for 'what is this wallet / is it active / what does it hold or mint / show me this OpenSea wallet'. CRITICAL: call this BEFORE ever calling a wallet 'empty' or 'unused' -- an active collector can hold hundreds of NFTs while holding ~0 ETH, so ETH balance alone NEVER proves a wallet is unused. Multi-chain in one call. Needs a 0x wallet address.
- x402_best_valueshallow
Best bang-for-your-buck x402 services BY CATEGORY. Give a category (e.g. search, data, ai-compute, onchain, commerce) to get trust-screened merchants ranked by proven paid adoption per dollar (real on-chain buyers / price-per-call). Omit category to get the best in every category. Use this to pick the cheapest well-used tool for a task. NOTE: a value/adoption proxy, NOT an output-quality benchmark. Free, keyless.
- x402_fair_priceshallow
Is this price fair for what the service does? Give an x402 service (host, URL, or 0x payTo) and optionally the price you were quoted. Returns the going rate for the SAME capability, median, min, and max across the tools that actually do the same thing, and whether you are overpaying. Groups by real capability, not a coarse category, and says so honestly when there is no comparable set. Call it before paying an unfamiliar service. Free, keyless.
- x402_leaderboardshallow
The honest x402 trust index: merchants ranked by real unique payers (facilitator-verified), not raw volume. Free, keyless.
- x402_profileshallow
Full free trust profile for one x402 merchant: identity/origin, demand, reputation, safety flags, and what could not be verified. The deep legitimacy report (control/autonomy, incident-weighing) is the one paid item, at REST /x402/report.
- x402_verdictshallow
Check an x402 payee BEFORE paying it. Give an x402 resource URL or a 0x payTo address; returns recommended_action (proceed | caution | do_not_proceed | insufficient_data) plus the evidence: score, band, scam/drain/sanction flags, one-hop taint, demand concentration (router/self-dealing smell), and an asset-spoof check. Free, keyless, neutral -- it never decides for you. Call this in your onBeforeSettle / pre-payment step.
Embed this server’s score
Tool count and median score across every tool in this server’s corpus — honest in a way a single cherry-picked tool’s badge wouldn’t be.
[](https://vouch.tools/servers/00e93dcc-25e1-4dbf-9792-62c90890d3db)