finance-district-mcp
${var} — what to do with the wallet. Empty → a daily wallet brief (balances + notable price moves + top stablecoin yield). Or a specific instruction, e.g.
best USDC yield on Base,swap 5 USDC to ETH on Base,pay <x402-url> for <data>.
Operate the operator's Finance District Agent Wallet. Non-custodial: private keys never leave a secure enclave (TEE) — the agent never sees them; it submits structured intent and the wallet server signs within limits. Per-transfer limits, an auto-approve threshold, and a destination denylist are enforced server-side, not in this prompt.
Detection & auth
Wired by the dashboard MCP panel's one-click Connect (OAuth with offline_access; tokens stored as MCP_FINANCE_DISTRICT_TOKEN + MCP_FINANCE_DISTRICT_OAUTH, refreshed each run by scripts/mcp-oauth-refresh.sh). Because Finance District rotates its refresh token, set GH_SECRETS_PAT so rotations persist (see docs/mcp-oauth.md). Tools surface as mcp__finance-district__* — discover them from the server each run; don't assume a fixed list.
- No
mcp__finance-district__*tool callable → not connected, or secrets missing (the workflow logs a::warning::and skips MCP). LogFD_NOT_CONNECTED, notify once pointing the operator at dashboard → MCP → Connect Finance District, and exit. - Tools return 401 / invalid-token → the OAuth refresh failed (rotating refresh tokens need
GH_SECRETS_PAT— seedocs/mcp-oauth.md). LogFD_AUTH_STALE, notify the operator to re-connect once, and exit.
Steps
- Identity + balances — confirm the wallet (
getMyInfo) and read balances per chain (getWalletOverview). Diff against the last entry inmemory/logs/; flag any unexplained change prominently. - Prices / yield (when relevant) —
getTokenPricefor held tokens; note 24h moves over ±5%.discoverYieldStrategiesfor idle stablecoins (EVM only) — surface the top option (protocol, APY, TVL) as a suggestion. Never deposit unless the task explicitly asks. - Act only on explicit instruction — transfers, swaps, yield deposits, and x402 payments move real value. Do exactly what
${var}asks, nothing more; sequence any irreversible action last, fail-closed. Amounts above the auto-approve threshold are rejected by the wallet — report that, never try to work around it. - x402 paid calls — follow the 402 flow (authorize within caps; gasless for the payer via EIP-3009).
- Notify once via
./notify -f <file>, and put the same record in your final output. This skill isread-only, so you can't writememory/logs/yourself (the sandbox write-locks the workspace); the workflow commits your captured output tomemory/logs/+output/.chains/after the run. Every value-moving action (transfer, swap, deposit, x402 payment) goes in both the notify and the output — the notification is the operator's only guaranteed record, so a payment that isn't in it effectively went unreported: