Agent skill

Build X402 Client

by coinbase in coinbase/cdp-sdk

Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet.

MITAuto-check passedBackend & APIs

Install Build X402 Client

skills CLI
$ npx skills add coinbase/cdp-sdk --skill build-x402-client -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install coinbase/cdp-sdk build-x402-client --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/coinbase/cdp-sdk.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/build-x402-client .claude/skills/build-x402-client && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
build-x402-client
GitHub stars
203
Token cost
~3k tokens
SKILL.md length
1,120 words
Files
1
Skills in repo
3
Repo updated
First seen
Licence
MIT

At a glance

Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet.

  • Works in 5 steps: Confirm credentials → Install → Write the client → …
  • The user wants to call a paid endpoint from their own application
  • SKILL.md covers When not to use this skill, Decisions, Steps and Troubleshooting, plus 2 more sections
  • Reaches x402.vercel.app; needs CDP_WALLET_SECRET and CDP_API_KEY_ID

What it does

Build X402 Client is an agent skill from coinbase/cdp-sdk. Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet. Covers TypeScript and Python. Use when the user wants to call a paid endpoint from their own application or agent, add x402 payments to an HTTP client, hit an API that charges per request, migrate an existing x402 client off a raw private key, or is stuck on an unexpected 402 response.

Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Requires a CDP API key and wallet secret. Node.js = 22 (TypeScript) or Python = 3.10.

It sits in Backend & APIs, covering REST APIs. It works with x402, Python and TypeScript. The repository describes itself as: Client libraries for managing EVM and Solana wallets while relying on CDP to secure private keys. The licence is MIT.

When your agent uses it

  • The user wants to call a paid endpoint from their own application
  • Add x402 payments to an HTTP client
  • Hit an API that charges per request
  • Migrate an existing x402 client off a raw private key

Example prompts

  • “/build-x402-client”

Requirements

  • Python 3
  • Node.js
  • A credential in CDP_API_KEY_SECRET
  • A credential in CDP_WALLET_SECRET
  • Compatibility (from SKILL.md): Requires a CDP API key and wallet secret. Node.js >= 22 (TypeScript) or Python >= 3.10.

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Confirm credentials
  2. Install
  3. Write the client
  4. Fund the wallet
  5. Verify

What it can do on your machine

Read from SKILL.md and the folder at commit 993de49. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are typescript and python).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • x402.vercel.app

    Also links to:

    • docs.cdp.coinbase.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • CDP_WALLET_SECRET
    • CDP_API_KEY_ID
    • CDP_API_KEY_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires a CDP API key and wallet secret. Node.js >= 22 (TypeScript) or Python >= 3.10.

    From compatibility in the SKILL.md frontmatter.

Context cost

Build X402 Client loads about 3k tokens when it runs. Until then it costs about 106 tokens; SKILL.md has 1,120 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~106
When it runs · the whole SKILL.md, loaded when a task matches
~3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from coinbase/cdp-sdk at commit 993de49, republished under its MIT licence (© coinbase). 1,120 words, ~2,995 tokens.

Download SKILL.mdSave it as .claude/skills/build-x402-client/SKILL.md (or your agent's skills folder).
name
build-x402-client
description
Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet. Covers TypeScript and Python. Use when the user wants to call a paid endpoint from their own application or agent, add x402 payments to an HTTP client, hit an API that charges per request, migrate an existing x402 client off a raw private key, or is stuck on an unexpected 402 response.
compatibility
Requires a CDP API key and wallet secret. Node.js >= 22 (TypeScript) or Python >= 3.10.
metadata.author
cdp@coinbase.com
metadata.version
0.1.0

Build an x402 client

Take the user from nothing to one successful paid API call: resolve a CDP-managed wallet, wrap their HTTP client so it answers 402 automatically, fund the wallet on testnet, verify with a 200.

Resolve the Decisions table below before writing any code, then read only the language subsection you resolved to in step 3. This file covers TypeScript and Python; reading both will blend them.

When not to use this skill

  • The user's end users should pay from their own wallets. That is x402 payments with User Wallets, a browser flow, not this server-side one.
  • The user wants an agent to spend money now, without writing code. Use the agentic-wallet pay-for-service skill, which drives the awal CLI. It is the nearest neighbour to this skill and the most likely mis-selection.
  • The user is the one charging. Use the build-x402-server skill.
  • The user needs to construct and sign a payment by hand (signX402Payment, custom retry logic). Out of scope here; see Client configuration.

Decisions

Resolve every row before writing code. Detect first; only ask when detection is ambiguous.

DecisionHow to detectAsk only ifDefault
Languagepackage.json -> TypeScript. pyproject.toml / requirements.txt -> Python.Both present, or neitherAsk
HTTP clientTS: axios in deps -> axios, else fetch. Python: httpx or any async def -> httpx, requests -> requests.No HTTP client in depsTS fetch, Python httpx
Networkenvironment: "development" selects Base testnet.Never assume mainnetdevelopment
TransportAn MCP server URL or an existing MCP client -> MCP variant. A plain URL -> HTTP.Unclear what the target isHTTP
Starting pointAn existing x402 client holding a raw private key -> migration path.—Fresh integration

The network row is a hard rule, not a preference: never move the user to Base mainnet unless they ask for it in the current turn, because mainnet payments spend real USDC.

Steps

1. Confirm credentials

Before installing anything, check that the environment has all three of CDP_API_KEY_ID, CDP_API_KEY_SECRET, and CDP_WALLET_SECRET. The API key authenticates the caller to CDP; the wallet secret is what lets the SDK sign payments. Missing either one fails at runtime, and it is a worse experience to discover that three steps in. Send the user to API key authentication if they have no key yet. Also confirm the runtime: Node.js 22 or later, or Python 3.10 or later.

2. Install

Pick the dependencies matching the Decisions table. @x402/core, @x402/evm, @x402/svm, and @x402/extensions are optional peer dependencies of the CDP SDK, so they are not installed for you, and all four are needed even for an EVM-only integration because @coinbase/cdp-sdk/x402 imports them at module load.

For TypeScript, use the package manager already configured in the project. If none is configured, use npm. Install:

  • fetch: @coinbase/cdp-sdk, @x402/core, @x402/evm, @x402/svm, @x402/extensions, and @x402/fetch
  • axios: the same packages with @x402/axios instead of @x402/fetch, plus axios
  • MCP: the same packages with @x402/mcp instead of @x402/fetch, plus @modelcontextprotocol/sdk

For Python, use the package manager already configured in the project. If none is configured, use pip. Install:

  • async: cdp-sdk and x402[evm,svm,httpx]
  • sync: cdp-sdk and x402[evm,svm,requests]
3. Write the client

Read only the subsection matching the language resolved above.

TypeScript

CdpX402Client is the whole point of the TypeScript path. It provisions the wallet, registers the payment schemes, and already satisfies the signer interface the x402 wrappers expect, so it drops into any of them unchanged.

typescript
import { CdpX402Client } from "@coinbase/cdp-sdk/x402";
import { wrapFetchWithPayment } from "@x402/fetch";

const client = new CdpX402Client({ environment: "development" });

// The wallet lives inside the client, so print the address to know what to fund.
const { evmAddress } = await client.getAddresses();
console.log(`Paying from ${evmAddress}`);

const fetchWithPayment = wrapFetchWithPayment(globalThis.fetch, client);
const response = await fetchWithPayment("https://x402.vercel.app/protected");
console.log(`HTTP ${response.status}`);

There is no key to store anywhere — that is the reason a developer reaches for CDP here, so say so rather than burying it.

Three things that break first:

  • Top-level await needs ESM or an async main(). In a CommonJS project this is the first error.
  • Omitting environment means Base mainnet and real USDC.
  • getAddresses() also returns svmAddress for Solana. The field is svmAddress, not solanaAddress.

axios: same client object, different wrapper — wrapAxiosWithPayment(axios.create(), client) from @x402/axios, which returns a wrapped axios instance.

MCP: paying for tool calls rather than routes, with wrapMCPClientWithPayment(mcpClient, client) from @x402/mcp. See clients/mcp/simple.ts below.

Migration: swap whatever signer the existing x402Client holds for CdpX402Client; the call sites stay where they are. See x402DevMigration.ts below.

Show full SKILL.md (446 more words)Show less
Python

There is no CdpX402Client in Python, so assemble the pieces by hand rather than hunting for a one-liner that does not exist.

python
import asyncio

from cdp import CdpClient
from cdp.evm_local_account import EvmLocalAccount
from x402 import x402Client
from x402.http.clients import x402HttpxClient
from x402.mechanisms.evm import EthAccountSigner
from x402.mechanisms.evm.exact import ExactEvmScheme


async def main() -> None:
    async with CdpClient() as cdp:
        account = await cdp.evm.get_or_create_account(name="x402-client-wallet-1")
        signer = EthAccountSigner(EvmLocalAccount(account))
        print(f"Paying from {signer.address}")  # this is the address to fund

        payment_client = x402Client()
        payment_client.register("eip155:84532", ExactEvmScheme(signer))

        async with x402HttpxClient(payment_client) as http:
            response = await http.get("https://x402.vercel.app/protected")
            await response.aread()

        print(f"HTTP {response.status_code}")


asyncio.run(main())

EvmLocalAccount and the x402 signer protocol declare sign_typed_data differently, and EthAccountSigner is what reconciles them. Writing the wrap explicitly is a readability choice rather than a requirement: ExactEvmScheme already auto-wraps anything that is an eth_account BaseAccount, which EvmLocalAccount is, so passing the account directly works too. Keep the explicit form so the adaptation is visible. A type checker may flag it, since EvmLocalAccount subclasses BaseAccount rather than LocalAccount; at runtime it is correct.

Three things that break first:

  • CdpClient is an async context manager. Resolve the account inside async with.
  • On the httpx path, await response.aread() before touching the body.
  • "eip155:84532" is Base Sepolia. Changing it is a deliberate network change.

requests: the sync alternative for a project with no async entry point. x402_requests(client) from x402.http.clients is a function that returns a requests.Session, and it needs x402ClientSync rather than x402Client — mixing the two raises a TypeError.

MCP: see clients/mcp/simple.py below.

4. Fund the wallet

Run the client once. With no USDC it fails, and it prints the address to fund. Send Base Sepolia USDC there:

typescript
import { CdpClient } from "@coinbase/cdp-sdk";

await new CdpClient().evm.requestFaucet({
  address: evmAddress,
  network: "base-sepolia",
  token: "usdc",
});
python
await cdp.evm.request_faucet(address=signer.address, network="base-sepolia", token="usdc")

The CDP faucet funds the same wallets the CDP Facilitator settles against, so there is no second faucet to find. Wait for the transfer to confirm before re-running — requesting and paying in the same run fails on an empty balance.

5. Verify

Re-run. HTTP 200 is the success signal, and it proves the whole path: the payment was verified, settled onchain, and the protected resource came back. If the user has no endpoint of their own yet, https://x402.vercel.app/protected charges $0.01 on Base Sepolia.

Troubleshooting

SymptomCauseFix
402 no matter how often you retryWallet holds no USDC, or the faucet transfer has not confirmedCheck the balance of the printed address before retrying
Python TypeError on the clientA sync client paired with async pieces, or the reversex402_requests needs x402ClientSync; x402HttpxClient needs x402Client
Wallet authentication errorCDP_WALLET_SECRET missing or wrongIt is separate from the API key secret; check both
No scheme registered for networkRegistered chain ID differs from the one the server asks forMatch the network in the 402 response
Payment exceeds balance—Report the shortfall in USDC, not atomic units: 10000 is $0.01

Runnable examples

TypeScript, under https://github.com/coinbase/cdp-sdk/blob/main/examples/typescript/x402/clients/: payForApi.ts, payForApiWithAxios.ts, payForApiWithSpendControls.ts, x402DevMigration.ts, mcp/simple.ts.

Python, under https://github.com/coinbase/cdp-sdk/blob/main/examples/python/x402/clients/: pay_for_api.py, pay_for_api_with_requests.py, mcp/simple.py.

Beyond the first paid call

© coinbase, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/build-x402-client of coinbase/cdp-sdk.

Open the folder on GitHubat commit 993de49

Compare with similar skills

Build X402 Client next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Build X402 Client compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Build X402 Client this skillcoinbase/cdp-sdk203—~3kAutomated safety check: PassMIT
Nevermined PaymentsLeoYeAI/openclaw-master-skills2.2k—~4.5kAutomated safety check: NotesMIT
Neon Postgresaiskillstore/marketplace4304 repos~4.2kAutomated safety check: NotesApache-2.0
Fathom SDK Patternsjeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMIT
OpenAPI to MCP Servermcp-use/mcp-use11k—~5.2kAutomated safety check: PassApache-2.0
Zhihu Searchitwanger/toBeBetterJavaer18k—~1.5kAutomated safety check: PassNone

Similar skills

  • Nevermined Payments

    LeoYeAI/openclaw-master-skills

    Integrates Nevermined payment infrastructure into AI agents, MCP servers, Google A2A agents, and REST APIs.

    2.2k GitHub stars~4.5k tokensUpdated 2 mo ago
    Backend & APIsAuto-check: notes
  • Neon Postgres

    aiskillstore/marketplace

    Guides and best practices for working with Neon Serverless Postgres.

    430 GitHub starsUsed in 4 repos~4.2k tokens
    DatabasesAuto-check: notes
  • Fathom SDK Patterns

    jeremylongshore/tons-of-skills-marketplace

    Production-ready Fathom API client patterns in Python and TypeScript.

    2.8k GitHub stars~1.1k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • OpenAPI to MCP Server

    mcp-use/mcp-use

    Turns an OpenAPI or Swagger spec into an MCP server with the mcp-use TypeScript SDK, mapping each operation to a tool, wiring auth, testing and deploying.

    11k GitHub stars~5.2k tokensUpdated today
    Backend & APIsAuto-check passed
  • Zhihu Search

    itwanger/toBeBetterJavaer

    Search Zhihu for content using the searchv3 API. An agent skill from itwanger/toBeBetterJavaer.

    18k GitHub stars~1.5k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • AWS Serverless Eda

    zxkane/aws-skills

    AWS serverless and event-driven architecture expert based on Well-Architected Framework.

    367 GitHub starsUsed in 4 repos~3.2k tokens
    Backend & APIsAuto-check passed

More from coinbase/cdp-sdk

  • Build X402 Server

    coinbase/cdp-sdk

    Write code that charges for an HTTP route with the x402 protocol and receives USDC in a CDP-managed wallet.

    203 GitHub stars~3.7k tokensUpdated 2 days ago
    Auto-check: notes
  • Bump X402 Dependencies

    coinbase/cdp-sdk

    Bumps every @x402/ package (the optional peer dependencies in the CDP TypeScript SDK, the pinned dev dependencies used to test the SDK against x402, and the dependencies in every TypeScript x402…

    203 GitHub stars~2.1k tokensUpdated 2 days ago
    Auto-check passed

Categories

Questions about Build X402 Client

What does Build X402 Client do?

Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet. Build X402 Client is an agent skill from coinbase/cdp-sdk. Write code that pays for an HTTP API returning 402 Payment Required, using the x402 protocol and a CDP-managed wallet.

When should I use Build X402 Client?

Build X402 Client fits situations like: the user wants to call a paid endpoint from their own application; add x402 payments to an HTTP client; hit an API that charges per request; migrate an existing x402 client off a raw private key.

How do I install Build X402 Client in Claude Code?

Run `npx skills add coinbase/cdp-sdk --skill build-x402-client -a claude-code`. Or copy the skill folder (skills/build-x402-client in coinbase/cdp-sdk) into .claude/skills/build-x402-client in your project. Claude Code loads it when a task matches its description.

How do I install Build X402 Client in Codex?

Run `npx skills add coinbase/cdp-sdk --skill build-x402-client -a codex`. Or copy the skill folder (skills/build-x402-client in coinbase/cdp-sdk) into .agents/skills/build-x402-client in your project. Codex loads it when a task matches its description.

Can I use Build X402 Client in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add coinbase/cdp-sdk --skill build-x402-client -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/build-x402-client, .gemini/skills/build-x402-client, .github/skills/build-x402-client and .opencode/skills/build-x402-client in your project.

What does Build X402 Client need to run?

Going by SKILL.md and its folder, Build X402 Client needs credentials named CDP_WALLET_SECRET, CDP_API_KEY_ID and CDP_API_KEY_SECRET. Our summary lists: Python 3; Node.js; A credential in CDP_API_KEY_SECRET; A credential in CDP_WALLET_SECRET. Compatibility (from SKILL.md): Requires a CDP API key and wallet secret. Node.js >= 22 (TypeScript) or Python >= 3.10..

Does Build X402 Client access the network?

SKILL.md names 2 domains. In commands or code: x402.vercel.app; the agent is likely to contact it when it follows the instructions. As links in the text: docs.cdp.coinbase.com. This is read from the text; nothing was executed.

Is Build X402 Client safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Build X402 Client use?

Build X402 Client is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Build X402 Client use?

About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Build X402 Client?

Skills that share tags, products or a category with Build X402 Client: Nevermined Payments (LeoYeAI/openclaw-master-skills, 2.2k stars), Neon Postgres (aiskillstore/marketplace, 430 stars), Fathom SDK Patterns (jeremylongshore/tons-of-skills-marketplace, 2.8k stars) and OpenAPI to MCP Server (mcp-use/mcp-use, 11k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Build X402 Client?

coinbase (a GitHub organization) maintains it in coinbase/cdp-sdk, which has 203 GitHub stars. The repository holds 3 skills in this directory. The repository was last updated on October 6, 2026.

Source: coinbase/cdp-sdk on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.