Fail-closed by default
An empty merchant allowlist cannot pay anyone. The revert is the product — not a bug in the demo.
Crypto World's Fair · Tempo pavilion
Companies issue spend mandates to humans and AI agents. Agents pay APIs over MPP. Finance sees a Stripe-like ledger — not fifty hot wallets.
An empty merchant allowlist cannot pay anyone. The revert is the product — not a bug in the demo.
HTTP 402 challenge, MandateBook.pay() with memo = challenge id, Payment-Receipt. One request cycle.
Tempo has no volatile gas token. Fees are attodollars, paid in TIP-20, ~$0.0006 per payment.
Why Tempo, not another EVM
| Need | Generic EVM | Tempo |
|---|---|---|
| Gas | Volatile native token | Any USD TIP-20 via Fee AMM |
| Micropayments | Fee dominates $0.40 API call | Payment lane, sub-cent, reserved blockspace |
| Reconciliation | Custom event indexing | 32-byte transfer memo = MPP challenge |
| Agents | Home-rolled x402 | MPP in production with Stripe |
| UX | User holds ETH/SOL for gas | Finance sponsors type-0x76 feePayer |
Issue a fail-closed mandate. Watch Helios hit 402. Allowlist the merchant. Settle. Probe an unlist merchant. Every revert is typed.