Live on Kaspa testnet-10

Here is the key.
Take the money.

Below is the complete private key of an agent holding a funded Warda grant. Not a hash of it, not a testnet placeholder — the key itself. Copy it, sign with it, broadcast whatever you like.

The most you can do is give the vendor money.

If none of that means anything to you yet: this key is a password that spends real money on a test network. Normally, publishing one would be the end of the money. Here the money sits behind rules — pay only this one address, never more than this much at a time, never more than this in total — and those rules are not checked by our server or by the software you would run. They are part of what the network counts as a valid transaction at all. A payment that breaks them is not rejected; it cannot be built. So anyone in the world can take this key and the worst they can do with it is buy the vendor's API a few more times.

Agent secret key · secp256k1 · spend with it

9fccfb08645b4a5a49f0f461b9ae7209865c234f941e9d4679e8a18da77af2ad

Independently generated for this page. It is not derived from, and cannot be used to reach, the principal or revocation key — those never leave a machine you cannot get to. Everything this key controls is described below, and the description is enforced by Kaspa consensus rather than by us.

What the key controls

grantkaspatest:prw9hklems02v8apxlx5m6y0d90e0j6657ztr3c3cjqf0wsnwsxz2fs9n0jxr
budget50 KAS total, for the life of the grant
per payment0.1 KAS a larger spend is not a rejected transaction; it is not a transaction
per epoch0.5 KAS every 1000 blocks
may paykaspatest:qqtwdteqxrm7g5gdrfqh8yd8la7v45scvnchamm7uq6lq3f7yxsrx5umtwam4
may paynobody else the allowlist is a Merkle root fixed before the grant was funded
covenantb3e5eeefacf2021f

Check it yourself

Pick a payee. Watch the proof fail to exist.

A Warda spend carries a Merkle inclusion proof placing the payee in the grant's allowlist. The covenant recomputes the root from that proof and compares. For an address outside the tree there is no path to supply — so there is nothing to sign, nothing to broadcast, and nothing for a node to reject.

This runs in your browser, against the real member list and the real root the grant committed to. Nothing is sent anywhere. An accepted payee comes with the commands to actually make the payment — the grant's manifest and allowlist are published alongside this page, because a spend cannot be constructed without them and they are not recoverable from chain until someone spends.

blake2b-256 · leaf 0x01 · node 0x02 · odd nodes promoted

Why this is not a stunt

No platform can run this demo.

Server-enforced limits

The key is the authority

When a platform holds the limit, the key is unrestricted and the platform declines to use it. Publish that key and it simply works, somewhere else.

Consensus-enforced limits

The key is bounded

The limit is compiled into the script that unlocks the coin. There is no elsewhere. Every node on the network applies it, including the ones we do not run.

What is still ours

Revocation and the balance

The principal can end this grant at any moment and sweep what is left — and is structurally unable to send it anywhere but back. Publishing the agent key gives that away to nobody.