Your agent asks. 1Password signs.

walleterm is a small macOS signing companion for Stellar. Agents request signatures. Private keys never leave 1Password.

How it works

One request goes out. One checked signature comes back.

  1. Your agent prepares the transaction

    It builds the transaction with the Stellar CLI.

  2. 1Password signs it

    walleterm takes the transaction and asks 1Password to sign it. Approve on your Mac if asked.

  3. walleterm checks the signature

    It checks the signature, then returns the signed transaction to your agent.

Made for agents to read

One sign command handles transactions, contract authorizations, and messages. It returns one JSON object, and a failure returns a stable error code.

Skills ship for Claude Code, Codex, OpenCode, and Grok. It also works as a Stellar CLI plugin: stellar walleterm.

$ walleterm sign < payment.json
{
  "ok": true,
  "public_key": "GDX4…Q7MA",
  "digest": "5f1c9e…a04b",
  "signature": "9ad07e…c211",
  "signed_transaction_xdr": "…",
  "verified": true
}

Boundaries

What it will and will not do.

Keys stay in 1Password
You create the key in 1Password. walleterm only asks for signatures. The key never reaches walleterm, your agent, or a website.
Approval, your way
Your agent inspects each transaction and decides what to sign. Then 1Password asks you as often as you choose, from once per app to every signature.
Works beside the Stellar CLI
The Stellar CLI builds and sends transactions. walleterm only signs them, in the same agent session.
Uses the 1Password you have
walleterm works with the SSH agent in the 1Password desktop app. It does not change your vaults or settings.

Websites

A website can ask, too.

Run walleterm tunnel. A website connects with a QR code or an eight-digit code. Then it can ask the key you pick to sign transactions and messages.

4821 0937

  • Works once
  • Expires in five minutes

Install

Start on your Mac.

Turn on the SSH agent in the 1Password desktop app, and create an SSH key there. Then install with the script, or with Homebrew.

curl -fsSL https://walleterm.com/install.sh | sh
npx skills add stellar-experimental/walleterm -g
walleterm list --human

Run the script again to update. It installs into ~/.local/bin. Read the script.