Agent♥︎Age
Catalog

io.github.cdrn/sigil

Official

by cdrn · TypeScript

Local keystore + MCP server. Claude can sign EVM transactions but never sees the private key.

sigil — Local Keystore MCP Server for Transaction Signing

sigil is a local signing tool and Claude Code integration that provides an MCP server for agentic coding tools. It enables Claude to sign EVM transactions while ensuring the private key is never placed in the model’s context window. It also includes signing flows and supporting components described below.

🛠️ Key Features

  • Local keystore + MCP server (io.github.cdrn/sigil)
  • Private-key isolation: Claude can sign but never sees the private key
  • End-to-end functionality for MCP server, CLI, unlock flow, and signing proxy
  • Policy engine with static checks
  • Out-of-band confirmation via ntfy
  • Solana signing support
  • JSON-RPC signing proxy (Foundry/Hardhat)

🚀 Use Cases

  • Agentic coding tools that need EVM transaction signatures
  • Secure signing workflows where key material must not reach the model context
  • JSON-RPC signing integrations with Foundry/Hardhat
  • Solana signing via the provided flow

⚡ Developer Benefits

  • Prevents private key exposure to the model context window
  • Provides static policy checks before signing
  • Supports unlock flow and signing orchestration across components

⚠️ Limitations

  • Status is pre-alpha
  • Rolling-window value caps and EIP-712 domain allowlists are not yet implemented
  • Supply-chain attestations promised for v0.1.0

Related servers

More in Security