AI
AI agents and MCP
Allowed reads, protected intents, and tools that must not exist.
Prefer the official read-only explorer MCP for live chain queries: scan.thru.org/api/mcp. Protocol context starts at thru.org/docs/llm.txt.
A local wallet companion is a plan, not a shipped server.
Allowed reads
These are non-secret and still privacy-sensitive. A companion needs an explicit per-session permission.
wallet_get_public_accountswallet_get_balanceswallet_get_assetswallet_get_activitywallet_get_networkswallet_get_capabilities
Protected intents
Preparation only. The human reviews in the extension. The background signs after auth policy.
wallet_prepare_native_sendwallet_prepare_token_transfer- Swap and launchpad preparation only after those programs are real and verified.
Forbidden
- Mnemonic or private-key export
- Password access
- Direct signing or direct broadcast
- Reset, or mutation of security settings
- Raw decrypted vault access, or arbitrary
chrome.storageaccess
Account addresses and balances are not secrets, but they are not public telemetry either. This website does not ask for them.