Floe Working Capital

Gives AI agents (Claude, Cursor, custom) full access to working capital to pay x402 receipts.

Documentation

@floelabs/mcp-server

npm version License: MIT Base Mainnet

The spend layer for AI agents, over MCP. Give Claude Desktop, Claude Code, Cursor, CrewAI, or any MCP client a single surface to pay for LLM, voice, telephony, and data across 2,000+ vendor API services — with budgets the agent can reason about. Walletless. No crypto required.

Website · Docs · Dashboard · 𝕏 @FloeLabs

65 tools covering the full agent lifecycle — create agents, mint/rotate keys, set budgets, estimate costs, and execute x402 payments — with transport-aware auth (remote HTTP uses a Bearer token; local stdio reads FLOE_API_KEY from the env) and a keyless tier (get_markets, check_x402_url, search_floe_docs work with no key at all).


Start free. A $3 Welcome Credit (300 API credits) on signup — no card, no wallet. Get an agent key →

Start building with Floe

One key for your agent's whole vendor bill — LLM, voice, telephony, search, data — metered per call and budget-capped. Let your coding agent set it up, or wire it yourself:

PathOne line
Agent — Claude Code / Cursor does the setuppaste: Read https://dev-dashboard.floelabs.xyz/agents.md and set up Floe for this project.
Skill — install the Floe agent skillnpx skills add floe-labs/agent-skills
MCP — hosted MCP server (65 tools)npx -y add-mcp https://mcp.floelabs.xyz/mcp
NPM — the CLI + SDKnpm i -g floe-agent

New accounts get a $3 Welcome Credit (300 API credits) — no card. Set up with your AI tools → · Get a key →

What makes this different

Most payment tools let an agent spend. Floe lets an agent reason about spend before it commits — and stops it before it overruns.

  • Agent-awareness toolsget_credit_remaining, estimate_x402_cost, get_loan_state: your agent asks "do I have budget? is this call worth it?" before paying, not after.
  • Context-aware budgets — set a session spend cap; the agent tapers as it nears the limit and replans to finish on budget.
  • The Floe agent skill (Floe-Labs/agent-skills) — the playbook that turns those tools into deliberate spending behavior. Jump to it ↓
  • Server-side enforcement — the soft signal is the skill; the hard ceiling is the on-chain spend cap + merchant allowlist. The agent cannot overspend regardless of what it decides.

Quick start (remote, recommended)

One-liner installs:

# Universal (any MCP-aware client)
npx -y add-mcp https://mcp.floelabs.xyz/mcp

# Claude Code
claude mcp add --transport http floe https://mcp.floelabs.xyz/mcp --header "Authorization: Bearer YOUR_FLOE_KEY"

# Codex (reads the key from $FLOE_API_KEY at connect time)
codex mcp add floe --url https://mcp.floelabs.xyz/mcp --bearer-token-env-var FLOE_API_KEY

Or by JSON config:

{ "mcpServers": { "floe": {
  "url": "https://mcp.floelabs.xyz/mcp",
  "headers": { "Authorization": "Bearer floe_YOUR_AGENT_KEY" }
} } }

Get your agent key: dashboard → Create agent → copy the floe_<hex> key (shown once). Or from the CLI: npx floe-agent register --name my-agent. No key yet? The server still works — see Keyless tier.

Scope params — narrow what a session can do straight from the URL:

https://mcp.floelabs.xyz/mcp?read_only=true          # only non-mutating tools
https://mcp.floelabs.xyz/mcp?features=spend,pricing  # only the named capability groups

Capability groups: lending, spend, pricing, lifecycle, observability, payments, webhooks, docs. Both params combine. The Floe agent skill's decision loop needs spend,pricing.

Local stdio, global install, and key taxonomy below

Tools at a glance

GroupToolsFor
Payment executionx402_pay (idempotent), x402_forecast, estimate_x402_cost, check_x402_urlpay any x402 vendor — with a cost preflight first
Agent lifecyclecreate_agent, list_agents, get_agent, pause_agent, resume_agent, close_agent, create_agent_key, rotate_agent_key, revoke_agent_key, set_agent_key_budget, open_credit_line, get_credit_line_boundsbootstrap and manage the fleet with a developer key
Agent awarenessget_credit_remaining, get_loan_state, get_spend_limit, set_spend_limit, clear_spend_limitevery agent — reason about cost before paying
Spend governanceregister_credit_threshold, list_credit_thresholds, delete_credit_threshold (webhooks)govern + alert on utilization
Merchant allowlistset_allowlist_mode, get_allowlist_mode, add_allowlist_entry, remove_allowlist_entry, list_allowlistdefault-deny on which destinations the agent may pay
Funding & observabilityget_funding_instructions, get_balances, get_activity, get_usage_summaryfund agents + watch the fleet spend
Webhookscreate_webhook, list_webhooks, test_webhookpush notifications for account events
Docssearch_floe_docs (keyless)learn the Floe API without leaving MCP
Walletget_wallet_balance, get_accrued_interestbalances + state
Utilitysimulate_transaction, broadcast_transaction, get_transaction_statustx lifecycle
Lending protocol (advanced)20+ intent / collateral / liquidation toolscrypto-native lending against deposits

Full per-tool reference is in Tools (65) below.


Tested clients

ClientStatus
Claude DesktopGA
Claude CodeGA
CursorGA
Continue / ClineBest-effort
CrewAI (via langchain-mcp-adapters)Beta
OpenAI Agents SDKPreview (MCP fallback while native adapter ships)
ElizaOSPreview

Install options

Option 1 (remote) is in Quick start above. For local runs:

Local via npx

Run the server locally. It proxies all requests to the Floe API.

FLOE_API_KEY=floe_YOUR_AGENT_KEY npx -y @floelabs/mcp-server --stdio

Claude Desktop config:

{
  "mcpServers": {
    "floe": {
      "command": "npx",
      "args": ["-y", "@floelabs/mcp-server", "--stdio"],
      "env": {
        "FLOE_API_KEY": "floe_YOUR_AGENT_KEY"
      }
    }
  }
}

Cursor config (.cursor/mcp.json):

{
  "mcpServers": {
    "floe": {
      "command": "npx",
      "args": ["-y", "@floelabs/mcp-server", "--stdio"],
      "env": {
        "FLOE_API_KEY": "floe_YOUR_AGENT_KEY"
      }
    }
  }
}

Install globally

npm install -g @floelabs/mcp-server
FLOE_API_KEY=floe_YOUR_AGENT_KEY floe-mcp --stdio

Transport selection

--stdio and --http are explicit overrides. With neither flag, the server picks by what stdin is: a pipe (an MCP client spawning it) → stdio; a terminal or a service manager's /dev/null → HTTP on 127.0.0.1:3100. So a bare command: npx config now works — but keep --stdio in configs anyway so behavior never depends on how the client wires stdio. On startup failure the process logs [floe-mcp] Fatal: to stderr and exits with code 1; in stdio mode all logging goes to stderr, never stdout (which carries the MCP protocol).


Auth model

Auth source depends on transport:

TransportIdentity source
Remote HTTP (https://mcp.floelabs.xyz/mcp)Authorization: Bearer <key> header (per-request)
Local stdio (floe-mcp --stdio / npx -y @floelabs/mcp-server --stdio)FLOE_API_KEY env var
Local HTTP (self-hosted)Authorization: Bearer <key> header (per-request). The env-var key is never used as a fallback for headerless HTTP requests — requests without a Bearer run keyless.

Keyless tier

The server starts (and the hosted endpoint answers) without any key. Keyless sessions get exactly three tools with live results: get_markets, check_x402_url, and search_floe_docs — enough to vet a vendor, price a call, and learn the API before signup. Every other tool returns a structured error:

{ "error": "AUTH_REQUIRED", "status": 401,
  "message": "…Requires an agent key (floe_...).",
  "next": "Get a developer key at https://dev-dashboard.floelabs.xyz, then mint agent keys with create_agent_key. …" }

Tool errors always carry the backend's HTTP status (so agents can distinguish 401/403/404/429), and 401/403 include a remediation hint that distinguishes missing key from wrong key type.

Which key to use

Two key formats unlock different surfaces — every tool description states which one it needs:

Key formatScopeUnlocks
floe_<64-hex> (agent key)One specific agentRuntime: agent-awareness, spend governance, allowlist, reputation, estimate_x402_cost, x402_forecast, and x402_pay. One MCP session = one agent. Lifecycle tools return 401 (wrong key type).
floe_live_<base62> (developer key)Whole developer accountLifecycle: create_agent, agent keys (create_agent_key, rotate_agent_key, …), budgets, credit lines, funding instructions, balances, activity, usage, webhooks. Agent-runtime tools return 401 (wrong key type).

Typical bootstrap: connect with the developer keycreate_agentcreate_agent_key → reconnect (or open a second MCP session) with the minted agent key to spend.

Get an agent key:

  1. Go to dev-dashboard.floelabs.xyz
  2. Connect your wallet and Create an agent (name + borrow limit + max rate)
  3. Copy the floe_<64-hex> key shown at the end of the wizard — it is revealed once

You can also mint one from the CLI without visiting the dashboard:

# TypeScript SDK
npx floe-agent register --name my-agent --borrow-limit 10000

# Python SDK
floe-agent register --name my-agent --borrow-limit 10000

Get a developer key (unlocks the lifecycle tools — create_agent, key minting, budgets, funding, webhooks — and multi-tenant visibility across all your agents):

  1. Go to dev-dashboard.floelabs.xyz/keys
  2. Click Create Key, label it, pick read or read_write permissions
  3. Copy the floe_live_<base62> key shown once

Developer keys span the whole developer account and have a separate rate limit (100 req/min). Agent-runtime tools (get_credit_remaining, get_spend_limit, x402_pay, etc) return 401 with a developer key because the caller is the developer, not a single agent — the error's next hint says so and points at create_agent_key. See the API Keys docs for the full taxonomy.

Fund with fiat: You can fund your wallet with USDC via Coinbase — credit card, bank transfer, Apple Pay, Google Pay — directly from the dashboard. No crypto on-ramp needed.

Multiple agents

One Floe developer can own many agents. To run several MCP sessions side by side (e.g. a research agent and a trading agent), mint one key per agent and configure each MCP client entry with its own key:

{
  "mcpServers": {
    "floe-research": {
      "url": "https://mcp.floelabs.xyz/mcp",
      "headers": { "Authorization": "Bearer floe_KEY_FOR_RESEARCH_AGENT" }
    },
    "floe-trading": {
      "url": "https://mcp.floelabs.xyz/mcp",
      "headers": { "Authorization": "Bearer floe_KEY_FOR_TRADING_AGENT" }
    }
  }
}

Each session is scoped to one agent — credit lines, spend limits, and webhooks stay isolated.


Environment Variables

VariableRequiredDefaultDescription
FLOE_API_KEYNo (keyless tier without it)Your Floe API key: floe_<64-hex> agent key for runtime/spend tools, floe_live_<base62> developer key for lifecycle tools. Identity source in stdio mode; ignored for HTTP requests, which authenticate per-request via Authorization: Bearer
FLOE_API_BASE_URLNohttps://credit-api.floelabs.xyzAPI endpoint
MCP_PORTNo3100HTTP server port (non-stdio mode)
MCP_HOSTNo127.0.0.1HTTP bind address; set 0.0.0.0 to expose beyond loopback
MCP_TRUSTED_ORIGINSNoComma-separated extra origins allowed by CORS in HTTP mode

Tools (65)

Below the tools are listed by request type. The summary is in Tools at a glance above. Every description also names the key it needs: agent key (floe_...), developer key (floe_live_...), any key, or none. The feature-group tag in each heading is what ?features= filters on.

Payment execution (payments, pricing) ⭐

The reason the rest exists: estimate → forecast → pay. x402_pay needs an agent key; check_x402_url is keyless.

ToolDescription
x402_payExecute a paid x402 call through the Floe proxy — pays the vendor in USDC from the agent's balance/credit, returns the vendor response + X-Floe-* metering headers. idempotency_key makes retries replay instead of double-paying
x402_forecastBatch cost forecast + policy preflight for up to 50 planned calls (with repeat counts) — one round-trip to validate a whole plan
estimate_x402_costPreflight one x402 URL — returns cost + reflection against your credit, no payment
check_x402_urlKeyless probe: is this URL x402-protected, and what does it cost?

Agent lifecycle (lifecycle) — developer key

Bootstrap and manage the fleet without touching the dashboard.

ToolDescription
create_agentProvision a managed agent: Privy wallet + sponsored on-chain delegation + the $3 welcome credit on the account's first agent (once per account, immediately spendable)
list_agentsList every agent on the account with status and limits
get_agentOne agent's detail: status, deposit address, credit used, 24h activity
pause_agentSuspend an agent (kill-switch) — its keys fail auth until resumed
resume_agentReactivate a paused agent
close_agentIrreversibly wind an agent down: repay loans, sweep funds, disable keys
create_agent_keyMint a floe_... agent key (plaintext once), optionally with a rolling spend budget
rotate_agent_keyAtomically revoke + re-mint a key (new plaintext once)
revoke_agent_keyDelete a key — calls using it fail immediately
set_agent_key_budgetSet/update a fail-closed rolling budget on one key
open_credit_lineUpgrade a pay-as-you-go agent to a managed credit line (collateral from its wallet)
get_credit_line_boundsPreview valid deposit/LTV ranges before open_credit_line

Funding & observability (observability) — developer key

ToolDescription
get_funding_instructionsMachine-readable "how to fund this agent": USDC deposit address, chain 8453, minimums/warnings
get_balancesAggregate USDC across developer wallet, agent wallets, and API credits
get_activityUnified activity feed (proxy calls, onramps, transfers, loans) with filters + cursor pagination
get_usage_summarySpend/usage analytics rollup: KPIs, daily series, top endpoints

Webhooks (webhooks) — developer key

ToolDescription
create_webhookRegister an endpoint for account events (signing secret shown once)
list_webhooksList registered webhooks (secrets never returned)
test_webhookSend a signed test delivery to verify connectivity end-to-end

Docs (docs) — keyless

ToolDescription
search_floe_docsSearch the Floe documentation index (llms.txt) — titles, URLs, descriptions

Read tools (lending)

ToolDescription
get_marketsList active lending markets with rates and liquidity (keyless)
get_open_lend_intentsBrowse lend offers available for borrowing against
get_open_borrow_intentsBrowse borrow requests from borrowers seeking lenders
get_intent_detailsGet full details of a specific intent by hash
get_loanGet loan details by numeric ID
get_user_loansGet all loans for a wallet (borrower + lender)
get_loan_healthCheck loan LTV, health status, liquidation risk
get_token_priceCurrent oracle price for collateral tokens
get_wallet_balanceToken balances for a wallet
get_accrued_interestInterest accrued on a loan

Write tools (lending, return unsigned transactions)

ToolDescription
create_lend_intentCreate a lending offer
create_borrow_intentCreate a borrowing request
create_counter_intentAccept an existing offer (solver matches automatically)
repay_loanRepay a loan with slippage protection
add_collateralAdd collateral to improve loan health
withdraw_collateralWithdraw excess collateral
liquidate_loanLiquidate an unhealthy loan
revoke_intentCancel an active intent
approve_tokenApprove token spending for the protocol

Analysis tools (lending)

ToolDescription
check_compatibilityCheck if two intents can match
calculate_riskRisk metrics: LTV, liquidation price, buffer
estimate_interestInterest estimate for given loan terms

Utility tools (lending)

ToolDescription
simulate_transactionDry-run a transaction (eth_call)
broadcast_transactionSubmit a signed transaction
get_transaction_statusCheck transaction receipt

Agent-awareness tools (spend) ⭐

Lets an agent answer "do I have credit?", "is this call worth it?", and "where am I in the loan lifecycle?" before committing capital. All require an agent API key (floe_*). The calling identity is taken from the Bearer header in HTTP mode, or from FLOE_API_KEY in stdio mode.

ToolDescription
get_credit_remainingCurrent available credit, headroom to auto-borrow, utilization in bps
get_loan_stateCoarse state: idle | borrowing | at_limit | repaying
get_spend_limitCurrently active session spend cap, if any
set_spend_limitSet a session-level USDC ceiling (resets the session window)
clear_spend_limitRemove the session spend cap
list_credit_thresholdsList registered credit-utilization thresholds
register_credit_thresholdRegister a webhook trigger at a utilization threshold (cap: 20 per agent)
delete_credit_thresholdRemove a registered threshold
get_agent_reputation0–100 credit score, band, and collateral multiplier for the calling agent

Merchant-allowlist tools (spend)

Opt-in, default-deny restriction on which destinations the agent may pay. An allowlist entry is an ordinary capped policy row that doubles as "allowed AND capped". Default mode off = allow any vendor (zero onboarding friction). All require an agent API key (floe_*).

ToolDescription
set_allowlist_modeSet enforcement: off | host (block unlisted hosts pre-fetch) | vendor (block unlisted payees pre-sign) | both
get_allowlist_modeRead the agent's current enforcement mode
add_allowlist_entryAdd an allowed-AND-capped entry — kind=api (host) or kind=vendor (payee), with a limit_raw spend cap
remove_allowlist_entryRevoke an allowlist entry by policy id (from list_allowlist)
list_allowlistList host (api) and payee (vendor) allowlist entries with their caps

Inference gateway tools (pricing)

ToolDescription
list_modelsOpenAI-compatible model catalog for Floe Inference (text/embedding/TTS/STT/realtime)
estimate_inference_costPrice an inference call from a usage vector without making it

Budget-awareness skill

Floe's agent skills live in their own repo: Floe-Labs/agent-skills.

The floe skill is the playbook that turns the MCP tools above into deliberate spending behavior: read budget status before paying, taper as it nears the tightest cap, replan to finish the task on budget, and stop before the ceiling. It reads status from the existing get_credit_remaining, get_spend_limit, estimate_x402_cost, and get_loan_state tools, plus the X-Floe-Budget-Advisory header the Floe x402 proxy stamps on paid responses — no new tool or backend required.

Soft signal, not the guardrail. The skill helps a cooperative agent spend wisely. The real ceiling is enforced server-side — the on-chain credit line, the session spend cap, and (if configured) the merchant allowlist refuse calls past the limit regardless of what the agent decides.

Install:

npx skills add floe-labs/agent-skills          # skills.sh CLI
# or manually:
git clone https://github.com/floe-labs/agent-skills
cp -r agent-skills/skills/floe ~/.claude/skills/   # or .claude/skills/ per-project

Transaction Flow

All write tools return unsigned transactions — the server never holds private keys.

1. Call a write tool (e.g., create_counter_intent)
   → Returns { transactions: [...], summary, warnings, expiresAt }

2. (Optional) Call simulate_transaction to dry-run

3. Sign each transaction locally with your wallet

4. Call broadcast_transaction with the signed hex
   → Returns { transactionHash, status, blockNumber }

Example: Get a USDC Credit Line

Agent: "I need 9,950 USDC working capital"

1. get_open_lend_intents → browse USDC/USDC offers
2. create_counter_intent(offer_hash, wallet) → unsigned txs
3. simulate_transaction(from, to, data) → { success: true, gasEstimate }
4. Sign locally → signed hex
5. broadcast_transaction(signed_hex) → confirmed

Signing with viem

import { createWalletClient, http } from "viem";
import { privateKeyToAccount } from "viem/accounts";
import { base } from "viem/chains";

const wallet = createWalletClient({
  account: privateKeyToAccount(PRIVATE_KEY),
  chain: base,
  transport: http(),
});

// Sign and send each transaction in order
for (const { transaction: tx } of response.transactions) {
  const hash = await wallet.sendTransaction({
    to: tx.to,
    data: tx.data,
    value: BigInt(tx.value),
  });
  // Wait for confirmation before next step
}

Programmatic Usage

MCP Client SDK

import { Client } from "@modelcontextprotocol/sdk/client";
import { StreamableHTTPClientTransport } from "@modelcontextprotocol/sdk/client/streamableHttp.js";

const client = new Client({ name: "my-agent" });
await client.connect(new StreamableHTTPClientTransport(
  new URL("https://mcp.floelabs.xyz/mcp"),
  { requestInit: { headers: { "Authorization": "Bearer floe_..." } } }
));

const markets = await client.callTool("get_markets", {});
const counter = await client.callTool("create_counter_intent", {
  offer_hash: "0x...",
  wallet_address: "0x...",
});

LangChain / LangGraph

from langchain_mcp_adapters import MultiServerMCPClient

async with MultiServerMCPClient({
    "floe": {"url": "https://mcp.floelabs.xyz/mcp", "headers": {"Authorization": "Bearer floe_..."}}
}) as client:
    tools = client.get_tools()
    # Use tools in your agent

CrewAI

CrewAI agents can consume the Floe MCP tools via langchain-mcp-adapters. A runnable crew is available in floe-cookbook/crewai-demo.


Architecture

Your Agent → MCP Server → credit-api.floelabs.xyz → Envio Indexer / Base RPC
                ↑                    ↑
           This package         Private backend
          (open source)        (holds secrets)

The MCP server is a thin HTTP client. All protocol logic, indexer queries, and RPC calls happen in the private Floe API backend. This package contains only tool definitions and fetch() calls.


Lending protocol (advanced)

Floe is the spend layer for AI agents — one key that pays any vendor API under programmable budgets (everything above). It also exposes an advanced, crypto-native intent-based lending layer on Base, for agents that want working capital against deposits:

  1. Primary market (USDC/USDC): Deposit USDC as collateral, borrow up to 99.5% as a credit line. No price-volatility risk — same-token market.
  2. Volatile markets: Also supports WETH and cbBTC collateral for crypto-native use cases.
  3. Solvers automatically match compatible intent pairs on-chain.
  4. Loans are created with matched terms, collateral locked in per-loan isolated escrow.
  5. Gas-free — Floe sponsors all transaction costs.
  6. Fixed rates — no variable-rate surprises.

Key concepts:

  • Intent: An on-chain offer to lend or borrow
  • Counter-Intent: An intent created to match an existing offer
  • Health Factor: Ratio of collateral value to debt — below threshold triggers liquidation
  • LTV (Loan-to-Value): Borrower's debt as % of collateral value

Contract Addresses (Base Mainnet)

ContractAddress
LendingIntentMatcher0x17946cD3e180f82e632805e5549EC913330Bb175
PriceOracle0xEA058a06b54dce078567f9aa4dBBE82a100210Cc
LendingViews0x9101027166bE205105a9E0c68d6F14f21f6c5003
x402 Facilitator0x58EDdE022FFDAD3Fb0Fb0E7D51eb05AaF66a31f1

Links

License

MIT