# pay_request

Make an HTTP request to a URL. If it returns 402 (Payment Required),

Agent View of the PolicyLayer registry record for `pay_request`. HTML page: https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-request

## Facts

- Tool: `pay_request`
- Server: Pay Mcp (`@pay-skill/mcp`) — https://policylayer.com/tools/io-github-pay-skill-pay-mcp.md
- Install: `npx -y @pay-skill/mcp`
- Homepage: https://github.com/pay-skill/pay-mcp
- Risk category: Financial (Critical risk)
- Registry record: grade F, identity unverified
- Server rate-limited: no
- Parameters: 0
- Recommended policy verdict: Approval-gated

## Example call (MCP tools/call, JSON-RPC 2.0)

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "pay_request",
    "arguments": {}
  }
}
```

## Why pay_request is rated Critical

This tool is Financial because it facilitates USDC cryptocurrency payments on the Base blockchain. Even though the description is incomplete, the context establishes this as a payment system. An AI agent misusing this could send unauthorized payments, drain wallets, or commit financial fraud. Severity is critical due to direct monetary loss potential and irreversibility of blockchain transactions.

From the tool's own definition: "Server description explicitly states 'USDC payments for AI agents on Base' and tool name 'pay_request' is part of payment infrastructure. Sibling tools include 'pay_send', 'pay_fund', 'pay_tab_charge', 'pay_tab_topup' which all commit financial transactions."

## Use case

AI agents use pay_request to commit financial operations through Pay Mcp, usually the final step of a payment, billing, or trading workflow. A call moves real money.

## Recommended policy (PolicyLayer)

Verdict: **Approval-gated**. Enforced by the PolicyLayer MCP gateway (https://policylayer.com/mcp-gateway) before a call reaches Pay Mcp:

```json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "pay_request": {
      "deny_if": [
        {
          "conditions": [],
          "on_deny": "Requires human approval."
        }
      ]
    }
  }
}
```

## Other tools on Pay Mcp (14)

- `pay_webhook_delete` — Destructive — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-webhook-delete.md
- `pay_fund` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-fund.md
- `pay_mint` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-mint.md
- `pay_send` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-send.md
- `pay_tab_charge` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-tab-charge.md
- `pay_tab_close` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-tab-close.md
- `pay_tab_open` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-tab-open.md
- `pay_tab_topup` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-tab-topup.md
- `pay_withdraw` — Financial — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-withdraw.md
- `pay_discover` — Read — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-discover.md
- `pay_status` — Read — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-status.md
- `pay_tab_list` — Read — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-tab-list.md
- `pay_webhook_list` — Read — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-webhook-list.md
- `pay_webhook_register` — Write — https://policylayer.com/tools/io-github-pay-skill-pay-mcp/pay-webhook-register.md

## For agents

This record is a snapshot. Live verdicts and the full registry:

- Check every server in your MCP config at once: `npx -y policylayer stack`
- Vet a server before you add it: install the mcp-precheck skill — `npx skills add https://policylayer.com` (skill text: https://policylayer.com/skill.md)
- Query the registry over MCP: endpoint `https://api.policylayer.com/mcp` — tools `check_mcp_server`, `check_mcp_stack`, `check_tool`, `search_registry`, `get_change_events`

---

Source: the PolicyLayer MCP registry — one continuously verified record per MCP server. Full record: https://policylayer.com/registry?q=io-github-pay-skill-pay-mcp · API: https://policylayer.com/registry/api · Policy library: https://policylayer.com/policies/io-github-pay-skill-pay-mcp
