Sato Hub
← Sato Check

Sato Check · Package

x402-openai

pypi:x402-openai · v1.0.0 · sha256:598b2396fa5e · as of 2026-09-29

Does it take your key?
traced
It asks for a private key or seed phrase in its setup.
Our static read of the published artifact found it.
Does your key leave?
no evidence
Not yet run — we have not run this version with planted test keys.
No evidence line on file for this question yet.
Can it move funds on its own?
no evidence
Unknown — we could not read what it exposes.
No evidence line on file for this question yet.
What changed?
no evidence
First profile of this subject — nothing to compare yet.
No evidence line on file for this question yet.

Is this your project? Respond →Dispute this reading

Hosts contacted

HostWhenRoleEvidence
llm.qntx.orgcodevendortraced
Evidence (3 lines)
  • tracedT-hosts2026-09-29

    llm.qntx.org appears in shipped code (vendor).

    src/x402_openai/_client.py

  • tracedT-key-handling2026-09-29

    Turns key material it is GIVEN into an account or signer (Account.from_key()); no read of a key from the environment or a key file was found. A signing library does this.

    src/x402_openai/_chains/_evm.py:23

  • declaredD-env-key2026-09-29

    Setup names a funded crypto wallet private key (EVM hex / mnemonic, or S as something to provide.

    deploy_spec.requires

Limits

  • The observed lane has not run on this version: not yet run on this version
  • Traced analysis follows flows inside one module only; a key handed from one module to another is not followed.
  • The observed lane has not run on this version.
  • No tool inventory was available, so fund actions were not read.
  • Traced: Python read line by line, not parsed.

A profile describes what we read and ran, with dates. It is not a safety rating, an audit or an endorsement, and "not found" is not "not there".

sato.custody/v1 · custody-1

Maintain this project? Respond to this reading

Loading sign-in…