Skip to main content
POST

Authorizations

x-api-key
string
header
required

Headers

Idempotency-Key
string

Optional. Replaying the same key for the same user returns the cached result without a second withdrawal.

x-signature
string
required

Required for API-key authenticated requests. HMAC-SHA256(secretKey, timestamp + METHOD + path + body) as lowercase hex. Omit only for JWT/OAuth session tokens or public routes.

x-timestamp
string
required

Required with x-signature. Epoch milliseconds; rejected if drift exceeds 5 minutes. Omit only for JWT/OAuth session tokens or public routes.

Body

application/json

OpenAPI: McpWalletOperationBodyDto. toAddress is required for withdrawal.

amount
number
required

Amount for the operation

tokenMint
string

Token mint address (optional; defaults to USDC / PRIMARY_SPEND_MINT=EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v)

toAddress
string

Destination address (required for withdraw)

Response

200 - application/json

Operation result.

success
boolean
required
Example:

true

data
object
required

Endpoint-specific payload