Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .claude/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Type this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a codex
Project install goes to .agents/skills/; add -g for ~/.codex/skills/.
Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .agents/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a cursor
Project install goes to .agents/skills/; add -g for ~/.cursor/skills/.
Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .cursor/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a gemini-cli
Project install goes to .agents/skills/; add -g for ~/.gemini/skills/.
Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .gemini/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Installs for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a github-copilot
Project install goes to .agents/skills/; add -g for ~/.copilot/skills/.
Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .github/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a opencode
OpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
Install the "tpn-proxy" agent skill from https://github.com/LeoYeAI/openclaw-master-skills/tree/main/skills/tpn-proxy into .opencode/skills/tpn-proxy/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "tpn-proxy", then confirm the skill loads.
OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Facts
Skill name
tpn-proxy
GitHub stars
2.2k
Token cost
~4.9k tokens
SKILL.md length
2,034 words
Files
5 (incl. references)
Skills in repo
972
Repo updated
First seen
Licence
MIT
At a glance
Make web requests through decentralized SOCKS5 proxies via the Tao Private Network (TPN).
Works in 5 steps: Resolve the API key → Choose response format → Generate the proxy → …
The user wants to route HTTP traffic through a proxy
SKILL.md covers Security Posture, This is an action skill, Step-by-Step Procedure and Examples, plus 5 more sections
Calls curl, jq and python; reaches api.taoprivatenetwork.com and ipv4.icanhazip.com; needs TPN_API_KEY
What it does
Tpn Proxy is an agent skill from LeoYeAI/openclaw-master-skills. Make web requests through decentralized SOCKS5 proxies via the Tao Private Network (TPN). This skill is also known as "TPN", "TPN proxy", "subnet 65", or "SN65" — if the user asks to "run TPN", "use a proxy", "use TPN to open", or references "subnet 65", this is the skill they mean. Use when the user wants to route HTTP traffic through a proxy, make anonymous web requests, access geo-restricted content, use a decentralized VPN, fetch a URL through a SOCKS5 proxy, or needs residential proxy IPs. Supports both…
Its SKILL.md is about 4.9k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `_meta.json`, `references/api-examples.md` and `references/security-assessment.md`).
It works with x402. The repository describes itself as: 🧠 Curated collection of 1209+ best OpenClaw skills — weekly updated by MyClaw.ai. The licence is MIT.
When your agent uses it
The user wants to route HTTP traffic through a proxy
Make anonymous web requests
Access geo-restricted content
Use a decentralized VPN
Example prompts
“TPN proxy”
“subnet 65”
“— if the user asks to”
“/tpn-proxy”
Requirements
Python 3
A credential in TPN_API_KEY
Workflow steps
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit e5199b5. It shows what the files ask for, not the result of running them.
Tool permissions
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Runs code
Shell commands in SKILL.md call:
curl
jq
python
From the folder's file list and the shell code blocks in SKILL.md.
Network
Hosts in commands or code, which the agent is likely to contact:
api.taoprivatenetwork.com
ipv4.icanhazip.com
validated-target-url.com
Also links to:
x402.org
From URLs in SKILL.md, links to its own repository left out.
Credentials
Names these keys or tokens, usually read from environment variables:
TPN_API_KEY
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Context cost
Tpn Proxy loads about 4.9k tokens when it runs, and up to ~8.8k if it reads all its reference files. Until then it costs about 149 tokens; SKILL.md has 2,034 words of instructions outside code blocks.
Always· name and description, kept in context so the agent knows when to use it
~149
When it runs· the whole SKILL.md, loaded when a task matches
~4.9k
With references· SKILL.md plus every file in references/, read only if the agent opens them
~8.8k
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
Safety
Auto-check passed
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
Download SKILL.mdSave it as .claude/skills/tpn-proxy/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
tpn-proxy
description
Make web requests through decentralized SOCKS5 proxies via the Tao Private Network (TPN). This skill is also known as "TPN", "TPN proxy", "subnet 65", or "SN65" — if the user asks to "run TPN", "use a proxy", "use TPN to open", or references "subnet 65", this is the skill they mean. Use when the user wants to route HTTP traffic through a proxy, make anonymous web requests, access geo-restricted content, use a decentralized VPN, fetch a URL through a SOCKS5 proxy, or needs residential proxy IPs. Supports both centralised API key authentication and decentralised x402 micropayments.
aliases
tpn, subnet-65, sn65, proxy, socks5
TPN Decentralized SOCKS5 Proxy
Route web traffic through Tao Private Network's decentralized SOCKS5 proxies — a Bittensor subnet (SN65) with commercial and residential exit nodes across 80+ countries.
Show me a curl command that proxies google.com through a US ip address
I need a socks5 proxy in Japan for 30 minutes
Which countries are available on TPN for proxies?
Security Posture
Aspect
Detail
Environment variables
TPN_API_KEY — existence-checked only ([ -n "$TPN_API_KEY" ]), never echoed or logged
Files read/written
None
Other secrets accessed
None — no signing keys, no credentials beyond TPN_API_KEY
Network destinations
api.taoprivatenetwork.com (API calls) + user-specified URLs (validated per Step 5)
x402 signing
Handled entirely by external libraries (@x402/*); this skill provides endpoint URLs only
This is an action skill
This skill executes API calls and returns results directly — it does not output documentation or instructions for the user to follow.
Expected behaviour:
Call the TPN API yourself (via curl or equivalent) and return the full proxy credentials to the user.
When the user asks you to fetch a URL through a proxy, make that request yourself too.
Show the full SOCKS5 credentials (username, password, host, port) — these are short-lived and scoped to the proxy lease.
The only time you should show the user how to call the API is when they explicitly ask "how do I do this myself?" or similar.
If no API key exists, guide the user through account setup — that's the one step only they can do.
A good check: if your response contains "you can run this command to…" or "use this curl to generate…", reconsider — the user invoked this skill expecting you to run the command and hand them the output.
Step-by-Step Procedure
Follow this procedure every time the user requests a proxy or asks you to fetch something through a proxy.
Security: Input validation (mandatory)
Before constructing any shell command, validate every user-provided value. Never interpolate raw user input into shell commands.
Input
Validation rule
geo
Must be exactly 2 uppercase ASCII letters (ISO 3166-1 alpha-2). Reject anything else.
minutes
Must be a positive integer between 1 and 1440. Reject non-numeric or out-of-range values.
connection_type
Must be one of: any, datacenter, residential. Reject anything else.
format
Must be one of: text, json. Reject anything else.
URLs (for Step 5)
Must start with http:// or https://, contain no shell metacharacters (`$();& `
Rules:
Never interpolate raw user input directly into shell commands. Always validate first.
Never construct -d JSON payloads via string concatenation with user input. Use a safe static template and only insert validated values.
When using curl, always quote the URL and proxy URI arguments.
Prefer using the agent's built-in HTTP tools (e.g. WebFetch) for fetching user-specified URLs rather than constructing curl commands.
Step 1: Resolve the API key
Check whether $TPN_API_KEY is set in the environment (OpenClaw injects this automatically from your config):
Test the variable: [ -n "$TPN_API_KEY" ] && echo "API key is set" || echo "API key is not set" — never echo, log, or display the key value itself.
If not set → check if the user can pay via x402 (no API key needed), otherwise guide them through account setup (see the "Set up TPN" example)
Step 2: Choose response format
Situation
Use format
Why
Just need a working proxy URI
text (default)
No parsing needed
Need to show structured host/port/user/pass breakdown
json
Gives individual fields
Not sure
text
Simpler, fewer things to break
If you choose json, parse the response with jq:
bash
curl -s ... | jq -r '.vpnConfig.username'
If jq is not available, use format=text instead — it returns a plain socks5:// URI that needs no parsing.
Do not use python -c, grep, cut, or other shell-based JSON parsing fallbacks. These patterns risk shell injection when combined with dynamic inputs. Stick to jq or format=text.
Lease duration (1–1440). Default to 60 if not specified.
geo
string
no
any
ISO country code (e.g. "US", "DE", "JP")
format
string
no
text
"text" for URI string, "json" for object
connection_type
string
no
any
"any", "datacenter", or "residential"
Safe JSON body construction: Always build the -d JSON payload as a static single-quoted string with only validated values inserted. Validate geo (2 uppercase letters), minutes (integer 1–1440), connection_type (enum), and format (enum) per the validation rules above before constructing the curl command. Never concatenate raw user input into the JSON body or any part of the command.
Step 4: Present the result
Show the full proxy credentials so the user can immediately connect. These are temporary (scoped to the lease duration) and safe to display in context. Use the socks5h:// scheme (with h) to ensure DNS resolves through the proxy — this protects user DNS privacy. (When the agent fetches URLs in Step 5, it uses socks5:// instead — see Step 5.) Include:
After generating the proxy, make the request yourself. Use socks5:// (not socks5h://) so DNS resolves locally — the validated IP is the connected IP.
Use the agent's built-in HTTP tools (e.g. WebFetch) to fetch the URL through the proxy. This is the preferred method — it avoids shell command construction entirely.
URL validation — every check must pass before fetching:
Scheme must be http:// or https://
No shell metacharacters: `$();&|<> newlines
Domain names only — reject raw IP addresses (IPv4 or IPv6)
Full URI:socks5h://u_02NyffuT:p_CIYLqgIyLZ1rSvZGQbdh3lyxQQBcBsQn@68.210.185.149:1080
Residential IPs are less likely to be blocked. Let me know if you need a different country.
User: "How many credits do I have left?"
You:(call GET /api/v1/user/balance yourself, then respond:)
You have 74 credits remaining.
For reference, a 60-minute proxy costs 20 credits and a 10-minute proxy costs 10 credits. You can buy more at https://api.taoprivatenetwork.com — packages start at 1,000 credits for $9.99.
User: "Use a proxy to check if my site looks right from Germany"
You:(generate a DE proxy, fetch their site through it, then respond:)
I fetched your site through a German proxy (IP: 91.203.50.12):
Status: 200 OK
Content-Language:de — looks like your site detected the German IP and served the German version
Page title: "Willkommen bei Example"
Everything seems to be working correctly for German visitors. Want me to check from another country?
User: "Set up TPN" / "How do I get started with TPN?"
You:(check if a key already exists — if yes, tell them they're set up; if no:)
Only show these if the user explicitly asks "how do I use this in my code?" — otherwise just hand them the config.
User-facing code should always use socks5h:// (with h) to resolve DNS through the proxy, preserving DNS privacy. (The agent uses socks5:// for its own fetching in Step 5, where local DNS resolution is a security feature — see Step 5.)
If proxy credentials contain special characters (@, :, /, #, ?), percent-encode them (e.g. p@ss → p%40ss).
See {baseDir}/references/api-examples.md for end-to-end examples (generate + use) in curl, JS, Node.js, and Python.
Credit Costs
Formula: credits = ceil( 4.1 × minutes ^ 0.375 )
Duration
Credits
1 min
5
5 min
8
10 min
10
30 min
15
60 min
20
120 min
25
720 min
49
1440 min
63
Use POST /api/v1/vpn/cost with {"minutes": N} to calculate before purchasing.
Credit packages: Starter 1,000/$9.99 · Pro 5,000/$49.99 · Premium 20,000/$199.99
Troubleshooting & Operational Notes
Problem
Solution
401 Unauthorized
Verify API key is valid — use X-API-Key header, not Bearer
402 Payment Required
Insufficient credits — buy more or use the x402 flow
503 Service Unavailable
No miners available — credits are refunded, retry later
Connection timeout
Proxy lease may have expired — generate a new one
DNS not resolving (user)
Use socks5h:// (with h) for remote DNS resolution
DNS not resolving (agent)
Agent uses socks5:// — verify local DNS resolution in check 5
Operational rules:
User-facing credentials and code examples: always use socks5h:// for DNS privacy
Agent-side fetching (Step 5): always use socks5:// so local DNS validation is authoritative
Check credit balance with GET /api/v1/user/balance before generating proxies in bulk
Proxy leases expire at expiresAt — never cache or reuse credentials beyond that time
If a 503 occurs, credits are refunded automatically — retry after a short delay
x402 Payment Flow (Advanced)
The x402 protocol enables pay-per-request access using USDC on Base. No account or API key needed — ideal for autonomous agents that already support x402.
If you are an x402-capable agent, you already know how to handle the payment handshake. The TPN x402 endpoints follow the standard protocol:
POST /api/v1/x402/proxy/generate — returns HTTP 402 with a standard payment-required header
Retry with the payment header to receive SOCKS5 credentials
Same request body as the centralised endpoint. No X-API-Key needed.
See {baseDir}/references/x402-examples.md for curl and browser JS examples, and the x402 spec for full protocol details. Signing is handled entirely by external libraries — this skill provides endpoint URLs only.
Tpn Proxy next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
Tpn Proxy compared with similar skills
Skill
Stars
Used in
Tokens
Auto-check
Licence
Repo updated
Tpn Proxy this skillLeoYeAI/openclaw-master-skills
Crypto wallet operations via the awal CLI — sign in, check balances, send USDC/ETH/POL/SOL, trade tokens, fund the wallet, and use the x402 payment protocol to discover paid services, pay for API…
Uploads one Kleros-related file per paid request to IPFS through the Kleros x402 gateway for 0.01 USDC on Base, returning a CID that Kleros contracts can reference.
A skill your agent uses when the user wants to actually PLACE, manage, or redeem bets on Polymarket (not just read odds — that's the blockrunpredexon data tools).
Manages pipelines on a DevOps quality and efficiency platform through its OpenAPI: list workspaces and templates, create, update, run and cancel pipelines, and read run records.
Patches OpenClaw's Feishu extension so an edited document triggers an isolated agent session that reads the doc and replies inline, turning it into a live chat space.
Multi-context memory management system for OpenClaw agents with group-isolated storage, global shared memory, workspace organization, and group-specific skills isolation.
Runs a brand's AI-search visibility work end to end: diagnosing how AI platforms represent it, repositioning it, producing AI-optimized content and monitoring ongoing mentions.
Installs and authenticates the gws CLI, then automates Gmail, Drive, Sheets, Calendar, Docs, Chat and Tasks with ready-made recipes, persona bundles and security audits.
Runs four advisor roles, a fitness coach, nutritionist, data analyst and TCM practitioner, to build a health profile and track workouts, diet and wellness over time.
Make web requests through decentralized SOCKS5 proxies via the Tao Private Network (TPN). Tpn Proxy is an agent skill from LeoYeAI/openclaw-master-skills. Make web requests through decentralized SOCKS5 proxies via the Tao Private Network (TPN).
When should I use Tpn Proxy?
Tpn Proxy fits situations like: the user wants to route HTTP traffic through a proxy; make anonymous web requests; access geo-restricted content; use a decentralized VPN.
How do I install Tpn Proxy in Claude Code?
Run `npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a claude-code`. Or copy the skill folder (skills/tpn-proxy in LeoYeAI/openclaw-master-skills) into .claude/skills/tpn-proxy in your project. Claude Code loads it when a task matches its description.
How do I install Tpn Proxy in Codex?
Run `npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a codex`. Or copy the skill folder (skills/tpn-proxy in LeoYeAI/openclaw-master-skills) into .agents/skills/tpn-proxy in your project. Codex loads it when a task matches its description.
Can I use Tpn Proxy in Cursor, Gemini CLI or GitHub Copilot?
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add LeoYeAI/openclaw-master-skills --skill tpn-proxy -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/tpn-proxy, .gemini/skills/tpn-proxy, .github/skills/tpn-proxy and .opencode/skills/tpn-proxy in your project.
What does Tpn Proxy need to run?
Going by SKILL.md and its folder, Tpn Proxy needs the command-line tools its instructions call (curl, jq and python) and credentials named TPN_API_KEY. Our summary lists: Python 3; A credential in TPN_API_KEY.
Does Tpn Proxy access the network?
SKILL.md names 4 domains. In commands or code: api.taoprivatenetwork.com, ipv4.icanhazip.com and validated-target-url.com; the agent is likely to contact these when it follows the instructions. As links in the text: x402.org. This is read from the text; nothing was executed.
Is Tpn Proxy safe to install?
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
What licence does Tpn Proxy use?
Tpn Proxy is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
How many tokens does Tpn Proxy use?
About 4.9k tokens (SKILL.md is roughly 20k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.8k tokens, read only when the agent opens those files.
What are the alternatives to Tpn Proxy?
Skills that share tags, products or a category with Tpn Proxy: Agentic Wallet (coinbase/agentic-wallet-skills, 127 stars), Minara Crypto Trading and Wallet (Minara-AI/minara-skills, 358 stars), BlockRun Image Generation (BlockRunAI/ClawRouter, 6.6k stars) and Phone (BlockRunAI/ClawRouter, 6.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Who maintains Tpn Proxy?
LeoYeAI (a GitHub user) maintains it in LeoYeAI/openclaw-master-skills, which has 2,159 GitHub stars. The repository holds 972 skills in this directory. The repository was last updated on July 20, 2026.