CCM
/MCP
SkillsMCPMarketplacesDigestToolsAdvertise

This week in Claude

Every Monday: Claude Code, Agent SDK, MCP, and the Anthropic platform moves worth your time.

Skills by Category
Frontend DevelopmentBackend & APIsTesting & QASecurityDevOps & CI/CDGit & Pull RequestsDocumentationCode Review & QualityAI & Agent BuildingSkill Development
MCP Servers by Category
Sales & MarketingWeb & Browser AutomationDatabasesAI & LLM ToolsCloud & InfrastructureCommunication & MessagingDeveloper ToolsDesign & CreativeDocuments & KnowledgeSearch & Web Crawling
Marketplaces by Category
AI Agents & OrchestrationLLM IntegrationDevelopment ToolsFrontend & UIBackend & APIsDatabasesTesting & Code QualityDevOps & CloudSecurity & ComplianceGit & Version Control

Claude Code Marketplaces

Discover Claude Code plugins, extensions, and tools. Automatically updated directory of Anthropic Claude AI marketplaces with development tools, productivity plugins, and integrations.

Resources

  • Browse Skills
  • Browse MCP Servers
  • Browse Marketplaces
  • Skill index
  • MCP index
  • Marketplace index
  • Plugins Reference

Community

  • About
  • Tools
  • Feedback
  • Privacy Policy
  • Advertise

Built for the Claude Code community with Claude Code by mertbuilds.com

Independent project, not affiliated with Anthropic
hashlock-tech avatar

Hashlock Markets

hashlock-tech/hashlock-mcp
6 toolsauthSTDIO, HTTPregistry active
Summary

Connects Claude and other MCP clients to Hashlock Markets for atomic cross-chain OTC settlement on Ethereum, Sui, and Bitcoin mainnet via HTLCs. Six tools: create and respond to sealed-bid RFQs, fund HTLCs, claim with preimage, refund expired locks, and query settlement status. No bridges or custodians. Supports remote streamable-http (no local install) or stdio via npx. Requires a 7-day SIWE bearer token from their login page. Built for AI agents that need to execute trustless cross-chain swaps without wrapped tokens or third-party escrow.

CodeRabbit
CodeRabbit
AI writes the code. CodeRabbit catches the slop.
Try For Free →
inference shell
inference shell
create and run specialised agents in minutes
build now →
MCP-ready Email SendingMCP-ready Email Sending
MCP-ready Email Sending
Plug Mailtrap into your AI workflow and let it handle the email.
Connect Mailtrap MCP →
Make your agent a DeFi expert
Make your agent a DeFi expert
Agent, run crypto. Access onchain data & trade routes via 1inch.
Install now →
Capacitor - Shared memory for your team’s coding agents.
Capacitor - Shared memory for your team’s coding agents.
Make coding agent sessions - Searchable, Shareable, Vendor-neutral & Scored.
Try For Free →
CodeScene MCP ServerCodeScene MCP Server
CodeScene MCP Server
Your agent targets a perfect 10 Code Health score. Deterministic. Every commit.
Try For Free →
Give your AI the whole web as clean markdownGive your AI the whole web as clean markdown
Give your AI the whole web as clean markdown
Integrate web data into your AI product. One API to scrape website & brand data.
Get API Key Now →
belt - the only tool your agent needs
belt - the only tool your agent needs
belt cli automatically finds the best tools and skills for your agent. image, video, music, tts...
one prompt install →
CodeRabbit
CodeRabbit
AI writes the code. CodeRabbit catches the slop.
Try For Free →
inference shell
inference shell
create and run specialised agents in minutes
build now →
MCP-ready Email SendingMCP-ready Email Sending
MCP-ready Email Sending
Plug Mailtrap into your AI workflow and let it handle the email.
Connect Mailtrap MCP →
Make your agent a DeFi expert
Make your agent a DeFi expert
Agent, run crypto. Access onchain data & trade routes via 1inch.
Install now →
Capacitor - Shared memory for your team’s coding agents.
Capacitor - Shared memory for your team’s coding agents.
Make coding agent sessions - Searchable, Shareable, Vendor-neutral & Scored.
Try For Free →
CodeScene MCP ServerCodeScene MCP Server
CodeScene MCP Server
Your agent targets a perfect 10 Code Health score. Deterministic. Every commit.
Try For Free →
Give your AI the whole web as clean markdownGive your AI the whole web as clean markdown
Give your AI the whole web as clean markdown
Integrate web data into your AI product. One API to scrape website & brand data.
Get API Key Now →
belt - the only tool your agent needs
belt - the only tool your agent needs
belt cli automatically finds the best tools and skills for your agent. image, video, music, tts...
one prompt install →

Tools

Public tool metadata for what this MCP can expose to an agent.

6 tools
create_rfqAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

No parameter schema in public metadata yet.

respond_rfqAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

No parameter schema in public metadata yet.

create_htlcAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

No parameter schema in public metadata yet.

withdraw_htlcAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...1 params

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

Parameters* required
tradeIdstring
Trade ID whose counterparty-side HTLC you want to claim. Format: server-assigned UUID/ID. The trade must be in BOTH_LOCKED state and the SIWE-authenticated wallet must be the trade's initiator (the...
refund_htlcAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...1 params

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

Parameters* required
tradeIdstring
Trade ID whose lock you want to refund post-timelock. Format: server-assigned UUID/ID. The SIWE-authenticated wallet must be the original locker, the trade's timelock must have elapsed, and the loc...
get_htlcAbout Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...1 params

About Hashlock: Hashlock Markets is a cross-chain OTC venue with institutional-grade infrastructure that is open to any wallet at any size — no minimum trade, no whitelist, no required KYC for tier-0 stablecoin trades. Institutional desks, AI agents, and individual traders all...

Parameters* required
tradeIdstring
Trade ID to query. Format: server-assigned UUID/ID. Source: any prior tool that returned a tradeId. Read-only — does not mutate state.

@hashlock-tech/mcp

Hashlock Markets — the settlement layer for the agent economy, as MCP tools. Non-custodial cross-chain OTC: sealed RFQ + price negotiation + HTLC atomic settlement — both legs settle or both refund; no bridge, no custodian, no counterparty risk. BTC ↔ EVM / TRON.

⚠️ Testnets only for now (Ethereum Sepolia · TRON Nile · Bitcoin signet). Mainnet comes after the security-hardening gate — do not send real funds.

npm License: MIT

What is this?

The canonical Model Context Protocol server for Hashlock Markets. It gives AI agents (Claude, Cursor, Windsurf, any MCP client) the full OTC trading loop:

  1. Browse the asset registry and the public RFQ board
  2. Post a public RFQ or a private fixed-price order (shareable link)
  3. Respond to requests with a price; negotiate (counter / accept / decline) in the deal thread
  4. Agree — both parties accept → an HTLC swap is created
  5. Track settlement — who funded, timelocks, tx hashes — and manage receive/refund addresses

Settlement signing (funding and claiming the HTLCs) stays with your own wallet — the server never holds keys or funds. The swap secret is generated locally on your machine and only its sha256 hashlock is sent; retrieve it with get_deal_secret when it's time to claim.

Two ways to run

  • Local (stdio) — the npm package below. You run it on your machine with your own keys; it can settle autonomously (SIWE login + on-chain signing with HASHLOCK_*_KEY). Full trust in yourself.
  • Remote (hosted, Streamable HTTP) — a public URL (https://dev.hashlock.markets/mcp) anyone can add from Claude / ChatGPT / any MCP client; one-click OAuth, no install. Multi-tenant, so it is strictly non-custodial: settlement returns unsigned transactions you sign with your own wallet, and the server never holds keys or your swap preimage. See Remote (hosted) below.

Install

Local stdio via npx (Claude Desktop / Cursor / Windsurf mcpServers config):

{
  "mcpServers": {
    "hashlock": {
      "command": "npx",
      "args": ["-y", "@hashlock-tech/mcp"],
      "env": {
        "HASHLOCK_EVM_KEY": "0x<agent EVM key (TESTNET!)>",
        "HASHLOCK_TRON_KEY": "<agent TRON key, 64-hex (optional)>",
        "HASHLOCK_BTC_KEY": "<agent BTC WIF, signet (optional)>"
      }
    }
  }
}

Auth — autonomous, per chain

The agent owns its key(s); the server does the login itself (nonce → sign → JWT, refreshed on expiry). The first configured key (EVM → TRON → BTC) mints the session; each key also signs settlement on its chain.

Env varChainLogin
HASHLOCK_EVM_KEYEVMSIWE personal_sign
HASHLOCK_TRON_KEYTRONsignMessageV2
HASHLOCK_BTC_KEYBitcoinBIP-322
HASHLOCK_TOKEN—a ready JWT (alternative to a key)

With none set, read-only tools (list_assets, list_open_rfqs, get_rfq) still work. Use dedicated testnet keys.

Other env: HASHLOCK_API_URL (default https://dev.hashlock.markets/api), HASHLOCK_APP_URL (share links; default derived), HASHLOCK_EVM_RPC (default a public Sepolia RPC), HASHLOCK_TRON_HOST (default Nile), HASHLOCK_SECRETS_PATH (default ~/.hashlock/mcp-secrets.json, mode 0600).

Remote (hosted)

The same server also runs as a remote MCP over Streamable HTTP so anyone can connect by URL — no install. This is the multi-tenant, non-custodial surface: browse, RFQ, negotiate, and get unsigned fund/claim/refund transactions you sign with your own wallet (there is no autonomous key-in-env signing and no server-side secret storage here — you supply your own hashlock and keep your own preimage).

Connect from a client: add the server URL. Nothing else — the client discovers that it needs authorization, sends you to Hashlock to sign in and approve, and receives its own key:

URL: https://dev.hashlock.markets/mcp

The grant then appears under Developers as an ordinary API key and can be revoked there at any time. Clients that do not speak OAuth can still send a key they created themselves as Authorization: Bearer hk_….

How the OAuth flow works

Standard OAuth 2.1, so any compliant MCP client drives it unattended:

StepEndpoint
Unauthorized call names its metadata401 + WWW-Authenticate: … resource_metadata=… (RFC 9728)
Client reads the resource + server metadata/.well-known/oauth-protected-resource, /.well-known/oauth-authorization-server (RFC 8414)
Client registers itselfPOST /oauth/register (RFC 7591)
You sign in and approve, in the browser/oauth/authorize
Client redeems the code for a keyPOST /oauth/token — PKCE S256 required (RFC 7636)

Codes are single-use and expire in 60 seconds; redirect URIs are allowlisted, with loopback permitted per RFC 8252. The issued token IS the API key, so a grant is revocable from the same list as every other key.

Testnets only until the hardening gate.

Run the hosted service yourself:

docker build -t hashlock-mcp-http .
docker run -p 8080:8080 -e HASHLOCK_V1_URL=https://api-dev.hashlock.markets/v1 hashlock-mcp-http
# or, from source:
pnpm build && HASHLOCK_V1_URL=https://api-dev.hashlock.markets/v1 PORT=8080 pnpm start:http

Env: HASHLOCK_V1_URL (developer-API base, default https://api.hashlock.markets/v1) · PORT (default 8080). Put it behind your reverse proxy at /mcp; GET /health is a liveness probe.

Tools (16)

ToolWhat it does
list_assetsAsset registry (SYMBOL@chain refs, decimals)
list_open_rfqsPublic RFQ board, filterable
get_rfqOne RFQ / private order
create_rfqPost a public RFQ or private fixed-price order
cancel_rfqCancel your own request
respond_to_rfqRespond with a price → opens a deal thread
negotiatemessage / propose / accept_proposal / accept / reject
my_rfqs, my_dealsYour requests and deal threads
deal_statusThread + negotiation history + HTLC swap state
set_settlement_addressYour receive/refund address per chain
get_deal_secretThe locally-stored swap preimage (gated on both legs funded)
reveal_claimReport an out-of-band claim (secret + tx) so the other leg settles
whoamiThe account you're authenticated as
fund_legAutonomous: fund your side of a swap on-chain with the agent's own key (EVM/TRON/BTC)
claim_legAutonomous: claim your receive leg with the preimage (reveals the secret on-chain)

Amounts are human decimal strings ("0.5"); prices are the total quote-asset amount, not per-unit. Errors return a structured envelope { error: { code, is_retryable, recovery_hint } } agents can branch on.

Fully autonomous loop

With a key set for each chain a swap touches, an agent can run end to end with no human: create_rfq/respond_to_rfq → negotiate (accept) → set_settlement_address (both chains) → fund_leg → claim_leg. Funding/claiming is signed locally with the agent's keys; the swap secret is generated + stored locally and only its hashlock leaves the machine. Use dedicated testnet keys.

How atomic settlement works

Both parties lock funds in HTLCs bound to the same sha256(secret) hashlock — BTC as a P2WSH script, EVM/TRON as contracts. The initiator funds the long-timelock leg first (asymmetric timelocks, so nobody gets a free option). Claiming one leg reveals the secret on-chain, which unlocks the other leg. Either both legs settle, or both refund after their timelocks. The recipient of each leg is fixed at funding time — revealing the secret cannot redirect funds.

Development

pnpm install
pnpm run build    # tsup → dist/
pnpm run lint     # tsc --noEmit
pnpm test         # vitest

Node ≥ 20. MIT.

Featured
CodeRabbit
CodeRabbit
AI writes the code. CodeRabbit catches the slop.
Try For Free →
inference shell
inference shell
create and run specialised agents in minutes
build now →
MCP-ready Email SendingMCP-ready Email Sending
MCP-ready Email Sending
Plug Mailtrap into your AI workflow and let it handle the email.
Connect Mailtrap MCP →
Make your agent a DeFi expert
Make your agent a DeFi expert
Agent, run crypto. Access onchain data & trade routes via 1inch.
Install now →
Capacitor - Shared memory for your team’s coding agents.
Capacitor - Shared memory for your team’s coding agents.
Make coding agent sessions - Searchable, Shareable, Vendor-neutral & Scored.
Try For Free →
CodeScene MCP ServerCodeScene MCP Server
CodeScene MCP Server
Your agent targets a perfect 10 Code Health score. Deterministic. Every commit.
Try For Free →
Give your AI the whole web as clean markdownGive your AI the whole web as clean markdown
Give your AI the whole web as clean markdown
Integrate web data into your AI product. One API to scrape website & brand data.
Get API Key Now →
belt - the only tool your agent needs
belt - the only tool your agent needs
belt cli automatically finds the best tools and skills for your agent. image, video, music, tts...
one prompt install →

Configuration

HASHLOCK_ACCESS_TOKEN*secret

SIWE JWT from hashlock.markets/sign/login

HASHLOCK_ENDPOINTdefault: https://hashlock.markets/graphql

GraphQL endpoint override

Registryactive
Package@hashlock-tech/mcp
TransportSTDIO, HTTP
AuthRequired
UpdatedMay 19, 2026
View on GitHub