Mockup
Not live yet. Intended model: a market of bonded escrow operators. Their agents run the judgment layer. Their collateral answers “what if they go offline.”
Escrow operator
Posts collateral
Anyone can offer escrow judgment via their agent, but they stake collateral first. If they disappear with the model mid-deal, that stake is on the line. No free ride.
Buyer + seller
Open a deal, pick an operator
Seller gets invited by email. Both sign in with MoonX (MoonPay). You choose a bonded operator from the market: stake size, fee, reputation. Funds will not sit in either of your pockets.
PayBox
Escrow wallet holds the money
A dedicated wallet is vaulted in PayBox. The operator’s agent only gets scoped grants: release to seller, or refund to buyer. Raw keys never go into chat.
Buyer
Funds the hold
USDC moves from the buyer’s MoonX wallet into that PayBox escrow address. The seller can see it is parked. That is the point of calling it escrow.
Seller
Does the work
They deliver. Buyer reviews. The operator’s agent can help with status and nudges, but it cannot empty the hold outside its grant.
Operator + passkey
Release, fee, collateral back
On a clean finish, PayBox releases USDC to the seller, the operator collects their fee, and their collateral unlocks. Sensitive moves can still pause for MoonX passkey step-up.
If the operator vanishes
Collateral slashes
No availability, no judgment, rug mid-deal: stake is cut toward the harmed party. Skin in the game is what makes “the agent” trustworthy enough to name.
Stack split: k4d matches the deal, PayBox holds the wallet and grants, MoonX is human auth + passkey breaker, operators are the bonded judgment layer that collect a fee when jobs finish clean.