npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@agenzo/token-cli

v0.8.1

Published

Payment token CLI for the Agenzo platform

Readme

@agenzo/token-cli

npm License: MIT node

The payment credential CLI (runtime plane) for the Agenzo platform. Agents use it to manage payment methods (card details + 3DS verification) and to issue payment tokens (VCN / Network Token / X402) before a transaction.

Installation · Authentication · Commands · payment-methods · payment-tokens · Errors

Binary: agenzo-token-cli | Auth: API Key (X-Api-Key)

Installation

npm install -g @agenzo/token-cli

The agenzo-token-cli command is available after installation. Requires Node.js ≥ 22. Upgrade later with npm install -g @agenzo/token-cli@latest.

Authentication

token-cli is a runtime-plane tool. Every command authenticates with --api-key <api_key> (prompted interactively when omitted).

API Keys are issued by the control-plane tool agenzo-admin-cli:

agenzo-admin-cli keys create --developer-id <dev_id> --key-name "Prod Key" --scope token
  • The key's scope must include token, otherwise calls return KEY_SCOPE_DENIED.
  • API Keys and admin-cli's Bearer Token are not interchangeable.

Environment configuration

token-cli reuses the environment configuration (API host / path) written by admin-cli; it has no environment-management commands of its own. The default target is production https://agent.everonet.com. Switch environments via admin-cli:

agenzo-admin-cli config set-host https://agent-dev.agenzo.com   # switch to the test environment
agenzo-admin-cli config show                                       # show current host / path

Global options

| Option | Description | |---|---| | --format <json\|table> | Output format. Defaults to table; pass json (or set AGENZO_FORMAT=json) for machine-readable output | | --yes | Skip all confirmation prompts (non-interactive automation) | | --verbose | Print verbose logs to stderr | | --version | Print the CLI version |

Prompts and logs for write operations go to stderr; under --format json, stdout emits structured data only. Exit code 0 on success, 15 for different error categories.

Command matrix

| Noun | Verb | Purpose | Write/Read | |---|---|---|---| | payment-methods | add | Add a payment method via --mode manual (collect card + 3DS, default) or --mode dropin (Drop-in session), then auto-poll verification | W | | payment-methods | list | List payment methods under the current API Key | R | | payment-methods | get <pm_id> | Show details of a single payment method | R | | payment-methods | disable <pm_id> | Disable a payment method (cascades to revoke its issued tokens) | W | | payment-tokens | create | Issue a payment token (VCN / Network Token / X402, pick one) | W | | payment-tokens | list | List payment tokens under the current API Key | R | | payment-tokens | get <payment_token_id> | Show details of a single payment token | R | | payment-tokens | revoke <payment_token_id> | Revoke a payment token (X402 uses delayed revocation) | W |

payment-methods

add — add a payment method

Two modes, selected with --mode:

  • manual (default): the CLI collects card details and polls 3DS verification.
  • dropin: the CLI mints a Drop-in session and polls until the user finishes adding the payment method in their browser — no card details are entered at the terminal.

Manual mode (default)

agenzo-token-cli payment-methods add \
  --api-key <api_key> \
  --type card \
  --email [email protected] \
  --card-number 4111111111111234 \
  --expiry 1230 \
  --cvv 123

| Flag | Required | Description | |---|---|---| | --api-key | Yes | Prompted interactively when omitted | | --mode | No | manual (default) or dropin | | --type | No | Payment method type, defaults to card | | --email | Yes | Used to deliver the 3DS email challenge | | --card-number | Yes | Card number | | --expiry | Yes | Expiry date in MMYY format (note: not MM/YY) | | --cvv | Yes | CVV; piping via stdin is recommended to keep it out of shell history | | --idempotency-key | Yes (in --yes) | Forwarded verbatim as the Idempotency-Key header |

Returns a PM ID with PENDING status immediately, then auto-polls 3DS verification (3s interval, 15 min timeout). On success it prints ACTIVE status plus card brand, first six and last four. On timeout it suggests continuing with payment-methods get.

UnionPay enrollment mode

agenzo-token-cli payment-methods add \
  --api-key <api_key> \
  --payment-brand unionpay \
  --member <member_id> \
  --email [email protected] \
  --return-url https://merchant.com/bind-done   # optional

| Flag | Required | Description | |---|---|---| | --api-key | Yes | Prompted interactively when omitted | | --payment-brand | Yes | Set to unionpay | | --member | Yes | End-user identity (must be stable across enrollment and token creation) | | --email | Yes | Email associated with the binding | | --return-url | No | Front-end redirect URL returned alongside the terminal status. Only for --payment-brand unionpay. Not sent to UnionPay — used by the caller for post-enrollment navigation |

Returns Enroll URL and polls for ACTIVE/FAILED (5s interval, 60s timeout). The user must open the Enroll URL in a browser to complete passkey authentication. Card details flags are not used.

Drop-in mode

agenzo-token-cli payment-methods add \
  --api-key <api_key> \
  --mode dropin \
  --email [email protected]

| Flag | Required | Description | |---|---|---| | --api-key | Yes | Prompted interactively when omitted | | --mode | Yes | Set to dropin | | --email | Yes | Reference for the Drop-in session |

Mints a Drop-in session and prints a Session ID. Initialise the add-payment UI in your own front-end with that Session ID (the user enters card details and completes verification in the browser). The CLI then polls the same verification endpoint (5s interval, 30 min timeout) and prints ACTIVE with brand / first six / last four on success. If the payment method is not added it reports FAILED / EXPIRED (or a 30-minute timeout) with the PM ID and exits non-zero — re-run with the same email to resume. Card flags (--card-number / --expiry / --cvv) and --idempotency-key are not used in this mode.

list

agenzo-token-cli payment-methods list --api-key <api_key> [--member <member_id>]

Outputs a table of ID / Type / Brand / First 6 / Last 4 / Status; prints No payment methods found when empty.

get

agenzo-token-cli payment-methods get <pm_id> --api-key <api_key>

disable

agenzo-token-cli payment-methods disable <pm_id> --api-key <api_key> [--idempotency-key <key>]

Disables the payment method and cascades to revoke its issued payment tokens, printing Status and the Revoked tokens count. --idempotency-key is required in --yes mode.

payment-tokens

create — issue a payment token

The three types branch via --type: vcn / network-token / x402.

# VCN (Virtual Card Number)
agenzo-token-cli payment-tokens create \
  --api-key <api_key> --type vcn \
  --payment-method-id <pm_id> \
  --amount 25.00 \
  --idempotency-key <unique_key>

# Network Token
agenzo-token-cli payment-tokens create \
  --api-key <api_key> --type network-token \
  --card 1234 \
  --idempotency-key <unique_key>

# X402 (on-chain USDC payment signature)
agenzo-token-cli payment-tokens create \
  --api-key <api_key> --type x402 \
  --payment-method-id <pm_id> \
  --amount 1.50 --pay-to 0x... --nonce <n> --network base-sepolia --deadline <unix_ts> \
  --idempotency-key <unique_key>

| Flag | Applies to | Description | |---|---|---| | --api-key | all | Prompted interactively when omitted | | --type | all | vcn / network-token / x402 | | --payment-method-id | vcn / network-token | One of this or --card; takes priority over --card | | --card | vcn / network-token | Match a payment method by its last 4 digits | | --member | all | Associate a member (optional) | | --amount | vcn / x402 | VCN: USD (0.01500.00); X402: USDC amount | | --currency | vcn | Omitted by default; the server applies its default currency | | --pay-to / --nonce / --network / --deadline | x402 | Required X402 quadruple; --deadline is a Unix timestamp | | --external-tx-id | all | Forwarded to the request body as external_tx_id (optional) | | --recipient-first-name | network-token (unionpay) | Recipient first name for UnionPay order delivery details | | --recipient-last-name | network-token (unionpay) | Recipient last name for UnionPay order delivery details | | --recipient-email | network-token (unionpay) | Recipient email (one of email or phone required for unionpay) | | --recipient-phone | network-token (unionpay) | Recipient phone (one of email or phone required for unionpay) | | --unionpay-amount | network-token (unionpay) | Intent amount as decimal string (e.g. "174.58"), required for unionpay cards | | --return-url | network-token (unionpay) | Front-end redirect URL returned alongside the terminal status. Not sent to UnionPay — used by the caller for post-payment navigation | | --idempotency-key | all | Required; forwarded verbatim as the Idempotency-Key HTTP header, retrying the same key returns the first result |

Before writing, the freeze amount and service fee are shown and confirmation is requested; --yes skips confirmation (in which case --idempotency-key must be supplied explicitly).

list

agenzo-token-cli payment-tokens list --api-key <api_key> [--type <type>] [--member <member_id>]

get

agenzo-token-cli payment-tokens get <payment_token_id> --api-key <api_key>

revoke

agenzo-token-cli payment-tokens revoke <payment_token_id> --api-key <api_key> [--idempotency-key <key>]

Revokes immediately and prints REVOKED plus the revocation time; X402 tokens use delayed revocation (the cryptogram expires naturally), printing ACTIVE plus the expiry time. --idempotency-key is required in --yes mode.

Output and errors

  • Success: table mode prints formatted text; json mode emits the structured payload to stdout.
  • Failure: an error envelope is written to stderr. In json mode it is { "error": { "code", "code_num", "message", "request_id?" } }; in table mode it is ✗ [<code_num>] <message>.
  • Exit codes: 0 on success, 15 for different error categories (e.g. user cancellation = 5).

Common error codes: KEY_INVALID (invalid API Key), KEY_SCOPE_DENIED (scope lacks token), TOKEN_FEATURE_DISABLED (token type not enabled), PARAM_IDEMPOTENCY_KEY_REQUIRED (missing --idempotency-key), CLIENT_NO_PAYMENT_METHOD / CLIENT_CARD_NOT_MATCHED (no usable payment method matched locally).

Related

  • Control plane (login / organizations / developers / API Key management): @agenzo/admin-cli.