New Your team’s decisions, in one playbook every coding agent works from. Never answer your agent twice

escrow_open

Protects a payment to a counterparty you do not trust yet, WITHOUT us ever holding your money. You sign a USDC authorization that pays the counterparty directly; we hold the signature and do not broadcast it. When they deliver and you confirm the artifact hash matches, we broadcast and they are p...

SERVERAFOS — Agentic Financial OS SOURCEhttps://focxle.com/api/v1/mcp
Critical RISK CLASS
Category Financial
Parameters 53 required
Recommended Approval-gatedsee the rule below
Registry record Grade F, identity unverified Pull the record →

This record as markdown: /tools/com-focxle-afos/escrow-open.md

What escrow_open does on AFOS — Agentic Financial OS

AI agents use escrow_open to commit financial operations through AFOS — Agentic Financial OS, usually the final step of a payment, billing, or trading workflow. A call moves real money.

ParameterTypeRequiredDescription
amount_usd number Yes The amount being protected, in USD. Must match the value in your signed authorization.
term_hours number How long the counterparty has to deliver. Default 24, maximum 168 (7 days). Shorter is safer: your signature is held for the whole term.
seller_wallet string Yes The counterparty's 0x address on Base. Must match the payee in your signed authorization.
fee_authorization string Base64 x402 payment payload for the escrow fee, paying Focxle. Settled immediately when the escrow opens.
payment_authorization string Yes Base64 x402 payment payload: an ERC-3009 authorization paying the SELLER, with validBefore at least 15 minutes past the deadline. Held, never broadcast until de

Parameters from the server's own tool schema.

Why escrow_open is rated Critical

Tool initiates a USDC payment authorization on-chain, directly committing financial obligations.

From the tool's definition sign a USDC authorization that pays the counterparty directly

Questions about escrow_open

What does the escrow_open tool do? +

Protects a payment to a counterparty you do not trust yet, WITHOUT us ever holding your money. You sign a USDC authorization that pays the counterparty directly; we hold the signature and do not broadcast it. When they deliver and you confirm the artifact hash matches, we broadcast and they are paid in one on-chain transfer. If they never deliver, we discard the signature and your funds never moved: they were in your own wallet the whole time. Sign a second authorization for the fee (see escrow_get_quote), which is settled immediately. Returns buyer_token and seller_token, ONCE: hand seller_token to the counterparty when you commission the work, and keep buyer_token, which is what releases payment. Needs no account. It is categorised as a Financial tool in the AFOS — Agentic Financial OS MCP Server, which means it involves financial transactions. Block by default and require explicit approval.

What parameters does escrow_open accept? +

escrow_open accepts 5 parameters: amount_usd, term_hours, seller_wallet, fee_authorization, payment_authorization. Required: amount_usd, seller_wallet, payment_authorization. The full parameter table on this page comes from the server's own tool schema.

How do I enforce a policy on escrow_open? +

Register the AFOS — Agentic Financial OS MCP server in PolicyLayer and add a rule for escrow_open: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches AFOS — Agentic Financial OS. Nothing to install.

What risk level is escrow_open? +

escrow_open is a Financial tool with critical risk. Critical-risk tools should be blocked by default and only enabled with explicit human approval.

Can I rate-limit escrow_open? +

Yes. Add a rate_limit block to the escrow_open rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.

How do I block escrow_open completely? +

Set action: deny in the PolicyLayer policy for escrow_open. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.

What MCP server provides escrow_open? +

escrow_open is provided by the AFOS — Agentic Financial OS MCP server (https://focxle.com/api/v1/mcp). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.

More on AFOS — Agentic Financial OS, and thousands of servers like it.

// THE MCP REGISTRY

PolicyLayer tracks 44,603 MCP servers and 515,000+ tools.

Every server has a live record: who publishes it, whether it answers without auth, its risk grade, every tool classified, the recommended policy. This page is one line of AFOS — Agentic Financial OS's. Pull the full record:

Teams ship this data inside their own products. See what a licence covers →

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.