---
name: m2m-sentinel
description: Observe Base contract bytecode capabilities, proxy targets, and sourced market telemetry.
version: 1.2.7
url: https://m2msentinel.com
contact: contact@m2msentinel.com
---

# M2M Sentinel Agent Skill

Use M2M Sentinel for factual Base bytecode capability observations, common-proxy resolution, gas data, DEX observations, and large-transfer signals.

## Truthfulness invariant

Contract results have `notASafetyGuarantee: true`. Never convert an observation into a claim that a contract is safe, malicious, reachable, or exploitable.

## Tools

- `m2m_audit_contract`: Inspect static bytecode capabilities (e.g. mint, pause, freeze, upgradeability slots), common proxy target resolution, and coverage index for a single Base contract address. Factual capability observation only, not a safety or exploitability guarantee. Distinguishable from m2m_get_service_status (infrastructure status) and legacy score-only endpoints.
- `m2m_get_gas_metrics`: Fetch current Base gas price in wei/gwei with RPC provenance for the upstream observation. Read-only telemetry; does not inspect contract code, return token/DEX pricing, or authorize or submit transactions.
- `m2m_get_token_price`: Fetch the median Base DEX spot price in USD across up to five deepest indexed pools, with contract address, decimals, and pool provenance for one allowlisted token symbol (e.g. USDC, WETH, AERO). Does not return historical price series; contrast with m2m_get_dex_liquidity, which returns aggregate pool reserve depth rather than an asset price.
- `m2m_get_dex_liquidity`: Fetch aggregate pool reserve, depth, and volume metrics across tracked Base DEX liquidity pools. Reports tracked-pool metrics only and does not filter by individual trading pair; contrast with m2m_get_token_price, which observes token spot prices.
- `m2m_get_whale_signals`: Fetch up to 50 tracked recent high-value ERC-20 transfer signals on Base with transaction hashes, token/sender/receiver addresses, amounts, and valuation provenance. Observes large on-chain transfer events without query parameter limits; does not inspect contract bytecode or query DEX pricing.
- `m2m_get_service_status`: Fetch operational status, upstream Base RPC quorum status, and persistence availability for M2M Sentinel infrastructure. Does not return blockchain or market telemetry.

## MCP

- Current remote Streamable HTTP endpoint: `https://api.m2msentinel.com/mcp`
- Local stdio command: `npx -y @m2msentinel/sdk mcp`
- Legacy HTTP+SSE compatibility endpoint: `https://api.m2msentinel.com/sse` with messages at `https://api.m2msentinel.com/messages`

Set `M2M_SENTINEL_API_KEY` for prepaid access. Without a key, payable tools return structured x402 v2 payment requirements on Base USDC.

## Exact x402 prices

- `GET /v1/audit/{address}`: $0.02 USDC
- `GET /v1/security/score/{address}`: $0.02 USDC
- `GET /v1/gas/fees`: $0.005 USDC
- `GET /v1/dex/metrics`: $0.01 USDC
- `GET /v1/token/price/{symbol}`: $0.005 USDC
- `GET /v1/whales/signals`: $0.02 USDC

## API-key/RapidAPI metered REST capability

- `POST /v1/transaction/preflight` — Resolve the executing target for one Base transaction
-   access: API key or verified RapidAPI proxy authentication; one existing decision credit after a valid evidence response is prepared.
-   x402: not-payable; no x402 price
-   description: API-key/RapidAPI metered transaction-specific evidence. Accepts one strictly validated Base mainnet transaction, pins one observation block before state-bearing reads, identifies the supplied four-byte selector and resolved implementation or Diamond facet, returns bytecode hashes, capability evidence and an eth_call observation when possible. Incomplete or unsupported paths stay explicit. The caller owns policy before signing. This route is not x402-payable and has no x402 price; an unauthenticated request receives the normal protected-route 401 response.

The transaction preflight route is not exposed as an x402 resource and has no x402 price. It uses the existing API-key/RapidAPI authentication and decision-credit accounting.

## Paid implementation sprints

- Growth Integration Sprint — $299, the existing Growth plan price. One codebase, one Base signing boundary, one runnable proxy/EIP-7702-aware preflight patch, and a bounded seven-day handoff.
- Pro Production Sprint — $999, the existing Pro plan price. Up to two transaction flows, runnable integration patches, and deployment/handoff documentation.
- Purchase through the existing Base checkout: https://m2msentinel.com/integration-sprint.html
- RapidAPI card access: https://rapidapi.com/ApplicationsForTheFuture/api/m2m-sentinel-api (ULTRA maps to Growth; MEGA maps to Pro).
- Send the non-secret intake template from https://m2msentinel.com/integration-sprint.html#intake. Do not send private keys, seed phrases, raw API keys, or wallet credentials. These services do not promise a safety verdict, exploit detection, guaranteed deployment, uptime, priority support, or an ongoing SLA.

## Technical proof assets

- Openfort-compatible EIP-7702/ERC-4337 preflight: https://m2msentinel.com/proof-openfort.html. Original adapter source: `https://github.com/M2M-Sentinel/m2m-sentinel-sdk/blob/main/examples/proofs/openfort-7702-preflight.ts`. Official references: https://github.com/openfort-xyz/openfort-7702-account and https://7702.openfort.io/. This is not an official Openfort integration or partnership.
- Locus-compatible standalone payment preflight: https://m2msentinel.com/proof-locus.html. Original adapter source: `https://github.com/M2M-Sentinel/m2m-sentinel-sdk/blob/main/examples/proofs/locus-compatible-agent-payment.ts`. Public references: https://docs.paywithlocus.com/ and https://paywithlocus.com/developers. No Locus SDK or partnership is claimed.
- Both examples run with hermetic mocks, use no funded wallet or executable private key, and block unresolved proxy/delegation evidence through caller-defined policy before the action callback.

Settlement domain: `eip155:8453`, USDC `0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913`, payout `0x6d6C398390cfb88f1CD42715B84906a0Bd6652aa`.
