Base Sentinel
Security
Base Sentinel keeps the receiving wallet public and signing keys out of the seller server.
Wallet model
The server needs only a public receiving address to accept x402 payments. Never place a wallet private key or seed phrase in this service. Buyer authorizations are created in the buyer's wallet or compatible payment client.
Payment boundary
The facilitator verifies and settles payment authorization. The application runs the requested handler, and the settlement layer completes only for a successful response.
Reporting
Set
SECURITY_CONTACT_EMAIL or CONTACT_EMAIL before production. Until then, use the source repository.