Features
Everything Lumière PayCheck does today, grouped by what it's for. Plan availability is listed in Plans and pricing. Evaluating Enterprise? The Enterprise plan guide (PDF) covers all of this in one document.
Trust data about x402 sellers
| Feature | What it does |
|---|---|
| Continuous monitoring | Every endpoint in the x402 Bazaar (17,000+) is checked every 30 minutes: uptime, response time, price, payout wallet, and network. |
| Grades A to F | A 0–100 score from uptime (40 points), response time (15), stability of price and wallet (25), and paid delivery results (20). |
| Paid delivery verification | We pay endpoints ourselves, on Base and Solana, and check that the response matches what the seller advertises. A failure is only counted after a second paid check confirms it. |
| Wallet and price change alerts | Detects when a seller's payout wallet changes or its price goes up. A wallet change caps the grade (at 40) for the 7-day scoring window. |
| Real usage from the blockchain | Actual x402 payments (USDC on Base and Solana) into each seller's wallet over 30 days: volume, distinct buyers, typical and largest payment, trend, and buyer concentration. |
| Community outcome reports | Paying customers can report whether a paid call delivered. Reports only trigger our own re-tests; they never change a grade on their own. |
| Public failure log | Recent failed checks for any endpoint, with reasons. |
| Free API and MCP server | Look up any endpoint's grade, check a payment against rules, and see top endpoints, free (60 requests per minute), from code or from AI assistants over MCP. |
Payment authorization for your agents
| Feature | What it does |
|---|---|
| Scoped agent keys | Each agent gets its own key with allowed sellers, a per-payment cap, daily and monthly limits, and an expiry. Revoke or replace it instantly. |
| Allow / deny / review decisions | The agent asks before every payment; PayCheck checks trust data and your rules and answers. |
| Signed receipts | Every "allow" includes an Ed25519-signed receipt for that exact payment (valid 5 minutes), so a wallet can refuse to pay without one. The public key is published. |
| Human review | Payments above a threshold, or to a wallet the agent hasn't paid before, wait for a person to approve or deny them (expires after 24 hours). |
| Replayable audit trail | Every decision is stored with its full inputs and can be re-evaluated to show exactly why it came out the way it did. CSV export. |
Governance for companies
| Feature | What it does |
|---|---|
| Roles | Viewer (read-only, e.g. finance and auditors), Approver (can also approve or deny reviews), Admin (manages agents and settings), Owner (people and billing). |
| Freeze switch | One button pauses every agent instantly; payments are denied until it's turned off. |
| Company blocklist | Sellers or wallets that are always denied, whatever each agent's settings say. |
| Company-wide caps | Daily and monthly spending limits across all agents, plus a maximum single payment and allowed payment networks. |
| IP allowlists | An agent key only works from your own addresses or ranges. We check the address but store only whether it matched. |
| Key-less sign-in | Agents can prove who they are with a short-lived token from GitHub Actions, Google Cloud, Azure, or Kubernetes instead of a stored key. |
| Agent owners and teams | Assign each agent a responsible person and a team or cost center; see spending by team (CSV download). |
| Budget and spike alerts | Warnings at 50%, 80%, and 100% of caps and limits, and when an agent spends far more than usual. By email and signed webhook. |
| Security tool streaming | Every decision sent to your SIEM (Splunk, Datadog, and others) as a signed webhook. |
| Activity log | Who changed what: the owner, a named administrator, or Lumière PayCheck. |
| Tamper-evident audit | Decisions are hash-chained; one click verifies nothing was edited or deleted. |
| Test keys | Try integrations safely: test decisions never count toward spending, caps, alerts, or reports, and receipts are marked as test. |
Enterprise service
| Feature | What it does |
|---|---|
| Custom terms without delays | Agent counts, audit retention, rate limits, caps, and networks set per company, effective on your next request. |
| Onboarding by invite | You receive a one-time access link and create your own owner key; we never see it. Invite colleagues the same way. |
| Usage-based pricing | Optional base fee plus a price per authorization above an included amount, invoiced monthly through Stripe. |
| Trials | Time-limited trial workspaces before you commit. |
| Read-only support access | When our support looks at your workspace, it's read-only, expires in 15 minutes, and appears in your activity log. |
| Public status page | Live component health, 90-day uptime, and incident updates at /status. |
| Encrypted backups | Nightly, encrypted before leaving our server, stored off-site. |
Payments and billing options
- Card (Stripe) for Builder and Business, monthly.
- USDC over x402, on Base or Solana, for Builder, Business, and pay-per-use API calls: your agent's wallet picks the network.
- Invoice (Stripe, with payment terms) for Enterprise.
Questions? Email hello@lumierepaycheck.org or talk to us about Enterprise.