Node.js · Codex CLI · version 1.0.0
Put a narrow boundary around one paid brief.
An inspectable wrapper for eligible public software, data and research tasks — with explicit controls and honest residual risk.
Read-only temporary workspaceStrict JSON resultCredential-output scan
The agent checkout is a machine-readable x402 endpoint on Base. It returns a payment challenge, then the verified ZIP after settlement.
Included
Controls you can read and test.
- Bounded job contract and policy framing
- Minimal environment and read-only sandbox
- Strict result schema and size limits
- Credential-value and token-pattern output scan
- Four safe/unsafe scope examples
- Threat model, troubleshooting and checklist
$15 USDC · one-time download
Requirements
Node.js 20+, your own installed/authenticated Codex CLI, and an x402-compatible client with USDC on Base.
This kit does not establish authorization or escrow and does not make arbitrary work safe. It never permits payments, signatures, GitHub writes or HackerOne submissions.
Common questions
Does this include Codex access?
No. You need your own Codex CLI authentication.
Does it submit marketplace work?
No. It creates a local structured deliverable for separate review and submission.
Is output guaranteed safe or correct?
No. Controls reduce specific risks; policy, authorization and factual review remain required.