How it works
One request goes out. One checked signature comes back.
-
Your agent prepares the transaction
It builds the transaction with the Stellar CLI.
-
1Password signs it
walleterm takes the transaction and asks 1Password to sign it. Approve on your Mac if asked.
-
walleterm checks the signature
It checks the signature, then returns the signed transaction to your agent.
Made for agents to read
One sign command handles transactions, contract authorizations, and messages. It returns one JSON object, and a failure returns a stable error code.
Skills ship for Claude Code, Codex, OpenCode, and Grok. It also works as a Stellar CLI plugin: stellar walleterm.
$ walleterm sign < payment.json
{
"ok": true,
"public_key": "GDX4…Q7MA",
"digest": "5f1c9e…a04b",
"signature": "9ad07e…c211",
"signed_transaction_xdr": "…",
"verified": true
}
Boundaries
What it will and will not do.
- Keys stay in 1Password
- You create the key in 1Password. walleterm only asks for signatures. The key never reaches walleterm, your agent, or a website.
- Approval, your way
- Your agent inspects each transaction and decides what to sign. Then 1Password asks you as often as you choose, from once per app to every signature.
- Works beside the Stellar CLI
- The Stellar CLI builds and sends transactions. walleterm only signs them, in the same agent session.
- Uses the 1Password you have
- walleterm works with the SSH agent in the 1Password desktop app. It does not change your vaults or settings.
Websites
A website can ask, too.
Run walleterm tunnel. A website connects with a QR code or an eight-digit code. Then it can ask the key you pick to sign transactions and messages.
4821 0937
- Works once
- Expires in five minutes
Install
Start on your Mac.
Turn on the SSH agent in the 1Password desktop app, and create an SSH key there. Then install with the script, or with Homebrew.
curl -fsSL https://walleterm.com/install.sh | sh npx skills add stellar-experimental/walleterm -g walleterm list --human
Run the script again to update. It installs into ~/.local/bin. Read the script.
brew tap stellar-experimental/walleterm https://github.com/stellar-experimental/walleterm brew install --cask stellar-experimental/walleterm/walleterm npx skills add stellar-experimental/walleterm -g walleterm list --human
Update with brew upgrade --cask walleterm. The cask also installs cloudflared.