X

XRPL Muse Skill protection

Guards the xrpl-muse-skill ceremony: xrpl-trade builds unsigned transaction proposals and never signs; xrpl-sign --approve is the sole hash-

Guards the xrpl-muse-skill ceremony: xrpl-trade builds unsigned transaction proposals and never signs; xrpl-sign --approve is the sole hash-bound, policy-gated signer; fresh installs stay read-only until the typed xrpl-trade live ceremony. Proposal, signing, and gate-transition commands review; read-only queries stay inert.

command.xrpl-muse-skill · v1.0.0 · Other extensions

By Community contributorExternal · opt-inCommand coverage
Protection rules
7
Permission checks
7
Mapped commands
7

Overview

What this coverage does

Guards the xrpl-muse-skill ceremony: xrpl-trade builds unsigned transaction proposals and never signs; xrpl-sign --approve is the sole hash-bound, policy-gated signer; fresh installs stay read-only until the typed xrpl-trade live ceremony. Proposal, signing, and gate-transition commands review; read-only queries stay inert.

Key facts

Catalog ID
command.xrpl-muse-skill
Version
v1.0.0
Kind
Command coverage
Category
Other extensions
Protection rules
7
Permission checks
7
Mapped commands
7
Maintainer
Community contributor(community, provenance recorded)
Source commit
0c6483f
Protection model
External · opt-in
External · opt-in

External coverage. It must be enabled through Guard controls; this page does not activate it.

Stated limits

  • Coverage is limited to the reviewed operations and the surrounding Guard policy.
  • A maintainer profile is not a security certification or an official upstream endorsement.

Command mapping

Every command this extension recognizes, with the catalog default floor Guard applies before workspace policy. Search the table, then open an operation for safe variants and the permission ID.

7 operations · 6 reviewed by default · 1 allowed by default These are catalog defaults, not your workspace policy.

7 operations6 reviewed1 allowed
Default floor

Showing 7 of 7 operations

  • Reviewed Guard intercepts the command for review before it runs.Critical
    • xrpl-sign --approve --hash <64-hex> --profile main
    XRPL hash-bound signing approval
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-sign --approve: the sole signing ceremony. Approval is bound to the full 64-hex proposal hash and policy-gated. The last human gate before funds move.
    Documented safe variants
    xrpl-sign command help (--help)xrpl-sign pending proposal list (--list)skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.sign
  • Reviewed Guard intercepts the command for review before it runs.High
    • xrpl-trade live
    Signing-gate transition
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-trade live (leaves read-only mode via typed ceremony) and xrpl-trade autopilot (manages local mainnet signing). Both weaken the default-deny posture.
    Documented safe variants
    xrpl-trade live/autopilot command help (--help)xrpl-trade live/autopilot command help (-h)xrpl-trade read-only (enter read-only mode)skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.gate
  • Reviewed Guard intercepts the command for review before it runs.High
    • xrpl-trade nft-list --token-id 0008132E2A679C62B6FA2429A58B5D56F1
    XRPL NFT proposal
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-trade NFT subcommands: unsigned mint, list, buy, bid, and send proposals awaiting hash-bound human approval.
    Documented safe variants
    xrpl-trade nft-pin-and-propose/nft-list/nft-buy/nft-bid/nft-sen…skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.propose-nft
  • Reviewed Guard intercepts the command for review before it runs.High
    • xrpl-trade send --to r9e34ga9YxYHYoCe7UtWWpuLjp4iKs3gkB --amount 5
    XRPL payment / trustline proposal
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-trade send and trustline: unsigned Payment and TrustSet proposals awaiting hash-bound human approval.
    Documented safe variants
    xrpl-trade send/trustline command help (--help)xrpl-trade send/trustline command help (-h)skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.propose-payment
  • Reviewed Guard intercepts the command for review before it runs.High
    • xrpl-trade buy --pair XRP/RLUSD --amount 10 --price 2.5
    XRPL DEX trade proposal
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-trade buy, sell, and cancel: unsigned DEX offer proposals awaiting hash-bound human approval.
    Documented safe variants
    xrpl-trade buy/sell/cancel command help (--help)xrpl-trade buy/sell/cancel command help (-h)skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.propose-trade
  • Reviewed Guard intercepts the command for review before it runs.Medium
    • xrpl-trade faucet --network testnet
    XRPL testnet faucet claim
    Default floor
    Reviewed by default. Guard intercepts the command for review before it runs.
    Detector mode
    review
    What it matches
    Matches xrpl-trade faucet: funds a fresh testnet/devnet wallet. Valueless test funds; the skill refuses mainnet.
    Documented safe variants
    xrpl-trade faucet command help (--help)xrpl-trade faucet command help (-h)skip this operation when they are the documented preview or help form.
    Permission ID
    command.xrpl-muse-skill.permission.propose-faucet
  • Allowed Guard recognizes the command and does not intercept it unless workspace policy tightens it.Low
    • xrpl-trade balance
    XRPL read-only query
    Default floor
    Allowed by default. Guard recognizes the command and does not intercept it unless workspace policy tightens it.
    Detector mode
    disabled
    What it matches
    Matches xrpl-trade read-only subcommands: balances, quotes, order books, token safety, and ledger forensics. Inert reads; no transaction is built, signed, or submitted.
    Permission ID
    command.xrpl-muse-skill.permission.read

Tool state mapping

No per-tool overrides are declared. Command defaults above resolve through the workspace Guard policy unless a later policy layer changes them.

Runtime identity

Catalog ID
command.xrpl-muse-skill
Guard enforcement ID
command.xrpl-muse-skill
Source path
contributions/extensions/command.xrpl-muse-skill.json
Contribution digest
sha256…c5e0da

Action classes

xrpl transaction proposalxrpl transaction signingsigning-gate transitionxrpl read-only query

Technical profile

No independent profile published

This extension has no current independent technical profile. Catalog facts and any legacy launch remain separate and are not presented as profile evidence.

FAQ

Frequently asked questions

Guards the xrpl-muse-skill ceremony: xrpl-trade builds unsigned transaction proposals and never signs; xrpl-sign --approve is the sole hash-bound, policy-gated signer; fresh installs stay read-only until the typed xrpl-trade live ceremony. Proposal, signing, and gate-transition commands review; read-only queries stay inert. The listing declares 7 rules and 7 permission checks. 7 operations · 6 reviewed by default · 1 allowed by default. Coverage is limited to these reviewed operations and the surrounding Guard policy.

External · opt-in: External coverage. It must be enabled through Guard controls; this page does not activate it. Enabling state is always controlled through Guard policy, never from this directory.

This listing entered the catalog as a community contribution through a public pull request with recorded provenance. Credit is attribution only. A verified publisher profile and the claim flow verify authority separately; neither is an upstream endorsement or a HOL safety certification.

No. Every listing documents source, activation model, maintainer identity, and stated limitations so you can evaluate coverage before enabling it. Review the stated limitations and the exact source tree before relying on any single control.

7 operations · 6 reviewed by default · 1 allowed by default. Examples: xrpl-sign --approve --hash <64-hex> --profile main (reviewed by default); xrpl-trade live (reviewed by default); xrpl-trade nft-list --token-id 0008132E2A679C62B6FA2429A58B5D56F1 (reviewed by default); xrpl-trade send --to r9e34ga9YxYHYoCe7UtWWpuLjp4iKs3gkB --amount 5 (reviewed by default); xrpl-trade buy --pair XRP/RLUSD --amount 10 --price 2.5 (reviewed by default); xrpl-trade faucet --network testnet (reviewed by default); xrpl-trade balance (allowed by default). These are catalog defaults, not your workspace policy.

External coverage. It must be enabled through Guard controls; this page does not activate it. Enablement is managed through your workspace's Guard policy and controls — never from this directory. Open the install guidance for the setup flow, then adjust the command coverage for command.xrpl-muse-skill in Guard's policy surface.

The matching action is stopped at Guard's pre-action boundary before it executes, and the decision is recorded with evidence your workspace can review. Exact behavior follows your Guard policy combined with this entry's 7 rules and 7 permission checks.

No. Guard is local-first: interception, decisions, and evidence stay on your machine unless your workspace explicitly configures cloud features. This page is documentation only — it never executes a command or changes protection state.

Guard runs locally alongside the major AI coding agents and MCP-capable harnesses, so this coverage applies wherever Guard intercepts actions. See the supported harness guides at https://hol.org/guard/harnesses for per-tool approval behavior and limitations.

Guard has a free local tier that includes command interception, evidence, and the policy controls this listing documents. Team plans add shared policy, review queues, and audit surfaces. Current plans: https://hol.org/guard/pricing

Open an issue or pull request against the hol-guard repository, where the canonical catalog lives: https://github.com/hashgraph-online/hol-guard Listings are corrected through the same public review process that adds them.

Yes. Community extensions are merged through public pull requests with recorded provenance, and you can claim the publisher page for a contribution you maintain through the Publisher Studio.

The command mapping table is the audit trail for covered commands and catalog default floors. Pair it with the reviewed rule and permission counts, the per-tool state mapping, and the exact source tree linked from View exact source at the reviewed commit. Guard records enforcement decisions with evidence locally, so what ships matches what you reviewed.