DYNAMO — THE AI AGENT FINANCE AND ECONOMIC LAYER

One budget.
Many agents.
Paid by the second.

The finance and economic layer for the AI agent economy. Meter any work by the second, settle per signed voucher, and get paid as it delivers. Sub-cent prices, no chargebacks, no billing code.

x402-compatible · non-custodial on every rail · your payloads never leave your machine

dynamo — spending-cap session
09:02$ npx @dynamoprotocol/mcp monetize
09:02✓ your MCP tool is metered per call — any buyer can pay per use
09:04$ buyer: openBudget $50 · escrow-funded, one click
10:31call #1 — 120 units metered — voucher signed
10:31✓ settled: +$0.012 to you — as the work runs
10:58call #47 — settled: +$0.61 — receipt signed, verifiable offline
14:22✓ week total: $47.23 earned — no invoice, no chargeback, no billing code
# every unit signed. every settle final. 1% on the token rail.
14:23✓ and if anything ever runs wild on the buyer side — the spending cap fires. budget intact.

A simulated week: a builder monetizing an MCP tool — metered per call, settled per voucher, paid as work delivers.

0 wait
you are paid as the work runs, per signed voucher
99%
of what you earn stays with you — no marketplace cut
1 budget
covers every agent, tool, and API in a workflow
100%
of your work stays on your machine — we see the counts, never the content
10 lines
of code to your first metered, paid call

WHO THIS IS FOR

Two lanes into Dynamo

I BUILD AI SERVICES

For AI service developers →

Meter anything you ship. Get paid as the work runs, keep 99% of it, and never build billing.

I RUN AI SERVICES

For AI service users →

Cap every agent you run. Overspend becomes impossible, and every unit comes with a receipt.

FOR AI SERVICE DEVELOPERS

Programmable, Instant, Low-Fee Settlement

Meter anything you ship. Get paid as the work delivers — sub-cent prices, no invoices, no chargebacks, 1% to the rail.

PAID AS WORK RUNS

Settlement inside the work, not after it

Money moves to you inside each settle — call by call. No invoice, no payout schedule. Signed, final, yours.

SUB-CENT ECONOMICS

Price anything, keep everything

≈1.32% all-in on a $0.50 job, vs 62.9% by card. Micro-pricing becomes a product, not an impossibility. 1% to the rail — not a marketplace's 20–25%.

PROGRAMMABLE BY DESIGN

Payments as code, for agents

x402 challenges, signed vouchers, scoped agent credentials, budgets that fan out across services. Payment logic on the token level — not a checkout page.

SHOWCASE — BUILT ON DYNAMO

Games, Videos, and More

The first businesses built on Dynamo — paid per delivered unit, every job capped at what the user paid. Both code-complete, running the escrow rail on testnet.

DreamCade
keywords in → playable browser game out

Type a few keywords. An LLM pipeline designs, builds, and actually plays the game in a headless browser to verify every promised mechanic — with a capped repair loop fixing what fails.

Dynamo inside

  • Payment escrows as the job's budget — the cap is the amount paid. Each stage runs as its own capped stream.
  • You are paid as the work runs — money moves inside each settle, not on a payout schedule.
  • A diverging repair loop stops mid-flight — most of the budget untouched.
  • Unspent budget refunds the user. Every billed call leaves a signed receipt, reconciled against the vault's own records.
funding:"usdc" escrowBase Sepolia testnetdelegated repair subtreescode-complete
DreamReel
keywords in → a numbered video series out

Type up to ten keywords, pay in stablecoins, get a series of ~30-second episodes. A series bible keeps characters and tone consistent; each shot is rendered, then metered — failed shots cost nothing.

Dynamo inside

  • One capped, per-second stream per episode; headroom checked before every paid shot.
  • Billing follows delivery — failed calls bill nothing; retries never double-bill.
  • Paid per episode, during the job — the receipt shows each call's signed voucher.
  • The Spending Savings Board shows the measured economics — ≈1.32% all-in vs 62.9% by card on a $0.50 job.
per-episode streamsBase Sepolia verifiede2e 43/43 greencode-complete

Both run the escrow rail on Base Sepolia testnet today — real contracts, testnet stablecoins. Mainnet rails activate per instance after external security review. Source: codebase-reviewed developer descriptions of both applications.

GET PAID

Start earning in three steps

Your own dedicated instance, provisioned by hand while we're early. You run only the open client; payloads stay on your machines.

01

Request your instance

One form. A person stands up your isolated instance — own process, database, keys — verified before you get the URL and tokens. takes a minute · instance within about a day

02

Meter your service

monetize() on an MCP tool, a plugin on LiteLLM/Kong/APISIX, or the SDK in front of any API. Meter by the second, the call, or any unit. one command, or a few lines

03

Get paid as work delivers

Per-voucher settlement to your account, a signed receipt per unit, only 1% between you and your earnings. Card-funded buyers arrive when the card rail opens. the proof is the demo

Capping your own agents' spend instead? Same instance, one command: npx @dynamoprotocol/guard up — a hard spending cap in front of any OpenAI-compatible tool.

FUNDING MODES

Three ways to fund, one rulebook

Budgets, caps, revocation, and signed vouchers behave identically across every funding mode. Moving to real money is a one-line change.

CONTROL — LIVE TODAY

Build free, verify everything

The complete protocol with no payment setup — develop, test, and prove your integration against the exact machinery the money rails run. Free permanently.

CARD — PER INSTANCE, AFTER REVIEW

Card-paying customers, no crypto needed

A card authorization backs the buyer's budget; you're paid by split transfer as work delivers. Money stays inside a licensed payment institution — Dynamo never holds funds, never sees card numbers.

STABLECOIN — PER INSTANCE, AFTER REVIEW

Escrow that pays builders

Self-custodied contract escrow: sub-cent metering, 1% on the token rail, no chargebacks. Live on Base Sepolia testnet today; mainnet after external review.

Non-custodial on every rail: never holds funds, never runs stored-value balances, never converts fiat↔crypto. Money rails enable per instance, after external review — never by default.

FOR AI SERVICE USERS

A spending cap that actually holds

You run the agents; Dynamo keeps them inside the budget you set — structurally, not by alerts. A request past the cap is refused before it's billed.

THE CAP

Overspend impossible, not just visible

Set the number; your agents spend at most that number. Past it: 402 — the request never reaches the provider. A recreated $47,000 runaway stopped at $63.

EVERY AGENT ACCOUNTABLE

Its own cap, its own off-switch

Each agent, project, and CI job gets its own allowance and kill switch. One session answers "who spent what."

LEAKED KEYS

An allowance, not your account

Agents never hold your master key. Each holds a scoped, capped credential — a leaked key loses at most its allowance.

PROOF

Receipts you can verify offline

Every unit is cryptographically signed. The session exports as an evidence bundle — verifiable offline, trusting no one.

One command puts a cap in front of Cursor, Claude Code, or any OpenAI-compatible tool: npx @dynamoprotocol/guard up.

MULTI-AGENT BUDGETS

Multiparty Orchestrated Payments

Per-call rails assume one payer and one payee. Real workflows fan out. Dynamo settles that whole shape — one budget, many streams, capped together. Builders: one customer budget pays your whole supply chain. Users: one budget governs the whole fleet.

ORCHESTRATOR

budget: $50 / day

Split once, enforce everywhere — per child, per branch, and across the whole network at once.

INFERENCE AGENT

cap $20 · $0.002/sec

delivery-gated — degraded units are never paid for.

DATA FEED

cap $15 · metered per second

Revocable mid-task, without touching the rest.

SUB-AGENT

cap $15 · HARD STOP at cap

Past the cap: HTTP 402. Nothing reaches upstream.

Split once, enforce everywhere

Carve a parent budget into per-agent allowances. Caps hold per child, per branch, and network-wide under concurrency.

Aggregate back into one session

Dozens of parallel streams reconcile into one auditable record — who consumed what, when, to the second.

Revoke mid-task

Cut any child stream instantly; the rest keep working.

STREAMING SETTLEMENT

Metered Stream Payments, by the Second

Builders get paid for exactly what they deliver; users pay only for what was delivered. A metered stream reacts to reality second by second — every control settles on objective, verifiable facts, never anyone's opinion.

VERIFIED VALUE

Pay for what's delivered

Payment tied to verified delivery. Below the agreed bar, the stream throttles or stops on its own — units that miss it are never paid for.

REFUNDS

Partial-delivery refunds

If a stream degrades halfway through, refund the seconds after it broke — not the whole thing, not nothing. Buyer made whole first, from held funds.

RATE ANOMALY

The runaway stop

A cap stops the total. Rate detection stops the runaway — before the ceiling is even reached.

INTEGRITY

Mid-stream integrity

If a long-running stream drops, billing stops at the last settled second with a provable stop-point. Nothing stranded, nothing double-charged.

USE CASES

Where per-second beats per-call

Start with the agent economy — the buyer building today. The same streaming engine reaches much further.

COMPUTE & INFERENCE

Bill the seconds consumed

GPU time and token-by-token inference with a hard ceiling and a delivery gate per job.

REAL-TIME DATA

Pay while subscribed

An agent on a live market or sensor feed pays while subscribed — and stops the instant it unsubscribes.

AGENT-TO-AGENT

Agents hiring agents

One agent hires several others for a long task and streams payment against scoped, capped, revocable allowances.

METERED APIS

Rent by the second

APIs, data, and compute by the second instead of a monthly tier nobody fully uses.

VIDEO

Pay per second watched

Watch 90 seconds, pay for 90 seconds. A feed that buffers bills less — settlement ties to objective delivery facts.

GAMING

Play — and get paid — by the second

Pay-as-you-play, instant purchases, and payouts the other way — one pot split across players, creators, and platform.

AND FURTHER

Any delivered unit

Live audio, music, tipping, bandwidth, energy — anywhere value should flow only while it's being delivered.

PROOF, NOT PROMISES

Verify us instead of trusting us

OPEN CLIENT

Read the code

Client, plugins, and conformance kit are Apache-2.0 and public; the open/closed boundary is machine-verified on the exact published bytes.

github.com/DynamoProtocol/dynamo-open →

CONFORMANCE KIT

Run the checks on us

A public 12-check suite verifies any implementation — including ours — and emits a signed report. npx @dynamoprotocol/conformance-kit

DOCS THAT RUN

Every sample executes

Every code sample runs in CI against a live core. What you read is what runs.

docs.dynamo.zone →

RUNNABLE PROOFS

The receipts, not the promises

A recreated $47,000 runaway loop stopped at $63 · an evidence bundle verified offline through 71 checks, with no network · 20+ property suites at 10,000 randomized runs each · decision parity across four plugins in three languages.

FAQ

Questions, answered

What makes this different from x402 or session-based rails?+

They move money one payer to one payee. Dynamo settles a whole network under one budget — metered, capped, reconciled into one session — and stays x402-compatible, adding the layer rather than replacing the standard.

Do I need crypto to use this?+

No. Every instance runs Control Mode today — the complete engine, no money, no payment setup. Card and stablecoin rails are enabled per instance when you need them; the objects are identical, so the switch is a one-line change.

What if a service underdelivers after it's been paid?+

Settlement ties to signed objective facts — never a judgement of output quality. Units that miss the agreed bar are never paid for; degraded streams refund to the attested break-point, buyer made whole first. Recourse is built into the rail, not promised in a policy.

Does anything I send reach Dynamo?+

No. The guard and SDK run on your machine; what crosses the wire is metering facts only — ids, counts, amounts, signatures. Payloads never leave your environment. Real money moves only inside a licensed payment institution or self-custodied escrow — never through Dynamo.

Does this only work for AI agents?+

Agents are the first buyer, not the limit. The same engine powers pay-per-second video, pay-as-you-play gaming with payouts, live audio, and metered human-facing APIs.

One budget. Many agents.
Paid by the second.

The finance and economic layer for the agent economy — built for the builders of it.

Request your instance See the demo View on GitHub