June 08, 2026 ChainGPT

MetaMask Launches Agent Wallet — AI Trading with Hardware Keys and User-Set Guardrails

MetaMask Launches Agent Wallet — AI Trading with Hardware Keys and User-Set Guardrails
MetaMask has unveiled Agent Wallet, a new self-custodial wallet built to let AI agents trade, rebalance portfolios and interact with DeFi — while keeping those agents constrained by clear, user-set safety rules. (Disclaimer: MetaMask is a product of Consensys, one of numerous investors in an editorially independent Decrypt.) Why it matters AI agents that can autonomously manage crypto assets are multiplying across the industry, but many early implementations give those agents direct access to private keys — a risky shortcut, MetaMask says. “It’s genuinely day one for agents, but the infrastructure decision can’t wait because agents are already touching real money,” MetaMask Senior Director of Product Zhen Yu Tong told Decrypt. He warned that giving away keys would recreate “the custodial mistakes crypto spent a decade escaping.” How Agent Wallet works Agent Wallet is designed to let agents act with autonomy while keeping their power bounded: - Guard Mode (default): Users set spending caps, approved protocols, assets, time windows and other limits. Any transaction that breaks those rules or looks suspicious triggers two-factor authentication (2FA) before it proceeds. - Beast Mode: For users who want hands-off automation. Agents can execute routine operations without a pop-up for every transaction, but they still operate inside guardrails (limits, approved assets/protocols, time restrictions). And if threat detection flags a transaction as malicious, 2FA is required regardless of mode. Tong emphasized that “Beast Mode is for users who want genuinely hands-off operation — the agent acts without a pop-up on every transaction. What Beast Mode does not do is switch off the safety net.” Security stack and threat assumptions MetaMask routes Agent Wallet activity through its existing security tooling: transaction simulation, scam and malicious-contract detection, Blockaid-powered threat scanning, Clear Signing and Servo MEV protection. The wallet is explicitly designed around the reality that large language models (LLMs) can be manipulated — prompt injection is an open problem — so the aim is not to assume perfect model integrity but to limit the harm when agents are tricked or err. Prompt injection explained: malicious instructions can cause an AI to approve transactions, move funds, or interact with an unsafe smart contract. Agent Wallet’s layered detection plus 2FA on flagged events is intended to guard against those scenarios. Key isolation and supported integrations Agent Wallet keeps private keys inside a hardware-isolated enclave using Cubist’s trusted execution environment (TEE) technology. MetaMask says this prevents MetaMask and Consensys from accessing users’ key material during signing. The wallet already supports EVM-compatible chains, Hyperliquid, and a range of agent frameworks — OpenAI Codex, Anthropic’s Claude Code, Cursor, OpenClaw and Hermes Agent — making it usable with popular developer stacks. Rollout and industry context Agent Wallet is in an Early Access Program for roughly 200 users now, with a broader rollout planned later this summer. MetaMask’s move follows similar launches across the industry: Coinbase released Agentic Wallets in February (self-custodial wallets with keys in TEEs), and MoonPay has been integrating Ledger hardware wallets and released an Open Wallet Standard backed by big names including PayPal, the Ethereum Foundation, Solana Foundation, Ripple and Base. (Disclaimer: MoonPay Ventures is an investor in Decrypt’s parent company, Dastan.) MoonPay also shipped a desktop app last week that connects Claude Code and OpenAI Codex agents to wallets and DeFi tools. Bottom line MetaMask is staking out a middle path: enable agent-driven automation while preventing a repeat of the custody trade-offs that centralized services introduced. By combining hardware key isolation, layered threat scanning and user-configurable guardrails, Agent Wallet aims to let AI agents handle routine financial operations without handing them unfettered control over private keys — a critical distinction as autonomous agents begin touching real money. Read more AI-generated news on: undefined/news