Propose → review → approve → sign.
XRPL Muse separates preparation from authorization. The agent may help assemble and explain an action, but an exact proposal must still pass human review before the protected signing path can proceed.
XRPL Muse helps terminal-based agents inspect the ledger and prepare transaction proposals—while approval and signing stay inside a deliberate human-controlled boundary.
Human in the loop by design
XRPL Muse separates preparation from authorization. The agent may help assemble and explain an action, but an exact proposal must still pass human review before the protected signing path can proceed.
Start on testnet
Explore balances, offers, trust lines, NFTs, marketplace information, and other read-only XRPL state.
Prepare payments, offers, trust lines, cancellations, and selected NFT actions for human review.
Make network, accounts, assets, limits, fees, expiry, and proposal identity visible before approval.
Python 3.10+ · testnet first
Review the repository and current documentation, then begin with an isolated testnet setup.
git clone https://github.com/terramike/xrpl-muse-skill.git cd xrpl-muse-skill ./install.sh
The wiki covers setup, command behavior, policy controls, security boundaries, and troubleshooting.
Scope matters
The merged HOL-guard extension classifies Muse commands so proposal, approval, and signing-gate transitions can require review while recognized read-only and safe help/list variants remain inert. The external trust class remains off until locally enabled.
This does not certify every operating system, wallet, signer configuration, future transaction, or user decision. Protected secrets, limited wallets, human review, and testnet-first practice still matter.
Frequently asked
No. It has no scheduler, market watcher, or automatic approval flow. Its defining pattern is proposal first, followed by explicit human review and approval.
The intended design keeps signing secrets outside the proposal agent. Never paste a seed or secret into chat, a proposal, source control, or ordinary configuration.
The merged contribution defined seven permissions, seven rules, and 21 portable behavior cases for command classification. All 21 passed with zero target commands executed during the fixture.
No. Start on testnet, use a dedicated setup, read the current security documentation, and understand every proposal before considering real value.
XRPL Muse is public, inspectable, and designed to keep consequential approval with the human using it.