MetaMask has opened general access to the non-custodial Agent Wallet for AI agents
8/7/2026, 11:10 AM • Евгения Слив

On August 6, 2026, the MetaMask team opened general access to the non-custodial Agent Wallet, designed for on-chain operations by AI agents within the framework of user-defined rules. The tool works via the Command line interface (CLI) and is compatible with Claude Code, Codex, OpenClaw, Hermes, OpenCode, and Cursor systems.
The wallet offers two modes of operation. In Guard Mode, enabled by default, there are lists of allowed networks, addresses, and recipients, as well as a daily spending limit. Operations beyond these limits are suspended and require user confirmation via a mobile app or email within five minutes. In Beast Mode, the permission lists and limits are not applied, but the system continues to block known malicious operations, and risky actions require manual confirmation.
Private keys are stored in a trusted execution environment isolated from the AI agent process. The agent forms the request, and a separate infrastructure verifies the policies and signs the transaction. The ability to export the recovery secret phrase allows you to classify the product as non-custodial. Agent Wallet supports the EVM, Hyperliquid, and Solana networks, allowing agents to perform swaps, trade derivatives, and interact with credit protocols.
To reduce risks, MetaMask has implemented a Transaction Protection program that provides compensation of up to $10,000 per month in the mUSD stablecoin in the event of covered damage from transactions approved by the system. Exceptions include key compromise, market losses, and protocol-level exploits. The main technical risk remains the possibility of "prompt injection", when a malicious instruction from external data initiates a transaction.
***
The material has been prepared solely for informational purposes and does not constitute financial advice or recommendation.
