메뉴
HN
Hacker News • 52일 전

클라우드플레어 월렛: 에이전트를 위한 프로그래밍 가능 지갑

IMP
8/10
핵심 요약

클라우드플레어가 AI 에이전트가 인간의 개입 없이 API 및 콘텐츠를 결제하고 이용할 수 있도록 돕는 '클라우드플레어 월렛(Cloudflare Wallets)'을 발표했습니다. 이를 통해 사용자는 에이전트 전용 가상 지갑에 한도를 설정해 자율적으로 다양한 API를 탐색하고 안전하게 소액 결제를 진행하도록 할 수 있습니다. 이는 에이전트 중심의 머신 투 머신(M2M) 경제 생태계를 촉진하는 핵심 인프라로 작용할 것입니다.

번역된 본문

오늘날 AI 에이전트가 새로운 API를 사용해 보는 것은 매우 어렵습니다. 에이전트는 종종 사람이 아닌 대상을 위해 설계된 로그인 페이지를 탐색하고, 결제 수단을 추가하기 위해 사람에게 연락하고, API 키를 생성한 다음 API를 호출하는 방법을 알아내야 합니다. 이 과정은 두 가지 이유로 에이전트에게 매우 어렵습니다. 첫째, API에 가입할 수 있는 안정적인 식별자가 없고, 둘째, API 사용 요금을 지불할 고유한 결제 수단이 없기 때문입니다. 이러한 요소들이 부족하기 때문에 에이전트는 소프트웨어에 온보딩하는 데 어려움을 겪으며, 이는 에이전트 기반 상거래의 성장을 제한합니다. AI 에이전트는 종종 이러한 작업을 아예 포기하고 가입, 결제 수단 등록 및 API 키 생성을 다시 사람에게 떠넘깁니다. 이로 인해 에이전트가 다양한 API를 사용해 보고 비교하는 것이 매우 어렵습니다.

이를 해결하기 위해 우리는 '클라우드플레어 월렛(Cloudflare Wallets)'을 만들었습니다. 오늘부터 계정에 클라우드플레어 월렛 핸들을 등록하여, 판매자와 더 잘 연결될 수 있도록 돕는 고유한 사용자 이름을 얻을 수 있습니다. 조만간 클라우드플레어 월렛을 설정하여 API 및 콘텐츠 결제에 사용할 수 있게 될 것입니다. 이달 초, 우리는 클라우드플레어 고객이 자신의 웹사이트와 애플리케이션을 통해 결제를 받을 수 있도록 돕는 '수익화 게이트웨이(Monetization Gateway)'를 발표했습니다. 수익화 게이트웨이는 결제 정보를 HTTP 요청에 첨부할 수 있는 x402 프로토콜을 사용한 소액 결제를 지원합니다. 이러한 소액 결제는 AI 인퍼런스, 데이터, 콘텐츠에 이르기까지 다양한 사용에 대한 대가를 지불할 수 있게 해줍니다. 수익화 게이트웨이 및 기타 x402 호환 엔드포인트 뒤에 있는 서비스에 대해 대금을 지불하거나 받으려면 지갑이 필요합니다. 클라우드플레어 월렛을 통해 웹 전체에 걸쳐 스테이블코인을 저장하고, 서비스를 구매하며, 자금을 수령할 수 있습니다. 지갑이 있는 각 계정은 에이전트가 API, MCP 도구, 콘텐츠 등을 구매할 수 있도록 에이전트를 위한 '가상 지갑(Virtual Wallets)'을 생성할 수도 있습니다. 소유자는 가상 지갑에 대한 가이드라인(예: 예산 한도, 허용 목록, 최대 거래 금액 등)을 정의하여 에이전트가 계정에서 안전하게 자금을 지출하도록 도울 수 있습니다. 이를 통해 에이전트는 마찰을 최소화하고 통제된 위험 내에서 수많은 API를 자유롭게 사용해 볼 수 있습니다. 또한 월렛 사용자는 클라우드플레어 월렛 핸들을 공유하여 판매자와 상호 작용할 때 안정적인 신원을 가질 수 있는 옵션이 주어집니다.

양면형 에이전트 시장 구축 클라우드플레어의 수익화 게이트웨이를 통해 자격을 갖춘 클라우드플레어 고객은 자신의 리소스(예: 콘텐츠 또는 API)를 에이전트 구매자에게 헤드리스(화면 UI 없이) 방식으로 판매할 수 있습니다. 하지만 이 시장이 진정으로 발전하기 위해서는 에이전트가 머신에 최적화된 방식으로 판매자로부터 구매할 수 있는 더 많은 도구가 필요합니다. 월렛은 클라우드플레어 에이전트 SDK(Agents SDK)에 또 다른 강력한 도구를 추가하여 AI 에이전트가 소액 결제를 사용해 필요한 API와 콘텐츠를 쉽게 구매할 수 있게 해줍니다.

클라우드플레어 월렛에는 '계정 지갑(Account Wallets)'과 '가상 지갑(Virtual Wallets)'의 두 가지 유형이 있습니다. 계정 지갑은 클라우드플레어 계정의 소유자이자 사용자인 '사람'을 위해 설계되었습니다. 사용자는 자금을 충전하고, 에이전트가 관리하는 가상 지갑으로 지출 권한을 위임하며, 필요에 따라 자금을 인출할 수 있습니다. 반면 가상 지갑은 에이전트를 위해 설계되었으며 API 키를 통해 작동합니다. 가상 지갑 내에서 에이전트는 부여된 권한에 따라 자금을 지출할 수 있습니다. 에이전트의 최대 지출 한도는 계정 지갑 소유자가 설정한 한도에 의해 제한됩니다. 이러한 프레임워크는 에이전트의 과도한 지출 능력을 제한하는 동시에, 사용자를 대신하여 끊임없은 수동 승인 없이도 자율적으로 행동할 수 있는 자유를 제공합니다.

자유로운 탐색 가상 지갑이 흥미로운 이유는 에이전트가 자신들이 가장 잘하는 일, 즉 수십 또는 수백 개의 서비스를 탐색하고 특정 사용 사례에 가장 적합한 서비스를 찾을 수 있게 해주기 때문입니다. x402를 통한 스테이블코인 소액 결제는 별도의 계정 없이도 API를 사용해 볼 수 있게 만들어, 에이전트가 마찰 없이 새로운 옵션을 테스트할 수 있도록 합니다. 가상 지갑의 지출 한도는 사람이 안전한 지출 한도 내에서 에이전트가 자율적으로 탐색하도록 놓아주기 위해 설계되었습니다. 이러한 한도는 제약처럼 보일 수 있지만, 역설적으로 에이전트에게 더 많은 자유를 줍니다. 만약 에이전트가 10달러까지만 책임지도록 제한되어 있다면, 무제한의 자금을 다루는 것보다 그 지출에 대해 훨씬 덜 걱정할 수 있을 것입니다.

원문 보기
원문 보기 (영어)
Today, it is difficult for AI agents to try out new APIs. They often have to navigate through a login page designed for humans and not agents, contact a human to add a payment method, generate an API key, and then figure out how to call the API. This flow is very difficult for agents for two reasons: Agents do not have a stable identifier to sign up for an API, and they do not have a native way to pay for APIs. Because they lack these things, they often struggle to onboard onto software, which limits the growth of agentic commerce. AI agents often give up on these tasks entirely, kicking registration, payment methods, and API key generation back to humans. This makes it very difficult for agents to try out and compare many APIs. To solve this, we’ve created Cloudflare Wallets. Starting today, you can claim a Cloudflare Wallet handle for your account, which will provide a unique username to help you better connect with merchants. Soon, you will be able to set up and use your Cloudflare Wallet to pay for APIs and content. Earlier this month, we announced the Monetization Gateway to help Cloudflare customers get paid for their websites and applications. Monetization Gateway will support micropayments using the x402 protocol , which allows for payments to be attached to HTTP requests. These micropayments will be able to pay for uses ranging from AI inference to data to content. If you want to pay or get paid for services behind Monetization Gateway and other x402-compatible endpoints , you’ll need a wallet. Cloudflare Wallets will allow you to store stablecoins, purchase services, and receive funds across the web. Each account with a wallet will also be able to create Virtual Wallets for its agents to enable them to buy APIs, MCP Tools, content, and more. You will be able to define guardrails for your Virtual Wallets (such as an allowance, an allow list, and a maximum transaction size) to help your agent spend money safely from your account. This will allow your agent to try out many APIs with low friction and managed risk. Wallet users will have the option to share their Cloudflare Wallet handles, which will give them a stable identity when interacting with merchants. Building the two-sided agentic market Cloudflare’s Monetization Gateway will allow eligible Cloudflare customers to sell their resources (such as content or APIs) headlessly to agentic buyers. But for that market to truly develop, agents need more tools to buy from merchants in a machine-native way. Wallets will add another tool to Cloudflare’s Agents SDK, enabling AI agents to easily purchase necessary APIs and content using micropayments. There will be two types of Cloudflare Wallets: Account Wallets and Virtual Wallets. Account Wallets are designed for humans who are owners and users of Cloudflare accounts. They will be able to add funds, delegate spend to virtual wallets managed by agents, and remove funds as needed. Virtual Wallets , by contrast, are designed for agents and operate via API keys. Within a Virtual Wallet, an agent will be able to spend funds according to its permissions. Its maximum spend will be capped by the limit set by the owner of the Account Wallet. This framework gives agents freedom to act on behalf of users without constant manual approval while limiting an agent’s ability to overspend. The freedom to explore Virtual Wallets are exciting because they will allow agents to do what they’re best at: explore dozens or hundreds of services and find the best one for a particular use case. Stablecoin micropayments via x402 will make it simple to try an API without an account, allowing agents to test new options with little friction. The spending caps on Virtual Wallets are designed so that humans can let agents explore autonomously within safe spending limits. These limits may seem like constraints, but counterintuitively they give agents more freedom. If an agent is responsible for $10, you can worry less about its spending than if it is responsible for $1,000. If an API only costs a few cents to try, then $10 is more than sufficient to pursue and evaluate many options. Once you or your agent has picked an API to use, policies set by you in your Account Wallet will act as cost controls for Virtual Wallets. Want to give every employee a $100 per week budget for AI inference? Simply provision an Account Wallet with the right balance and create Virtual Wallets for each employee with that rule. Anyone who exceeds the limits on their Virtual Wallet will be able to request a manual override from a human who is authorized to make changes to the Account Wallet. We want to make it easy for Account Wallets to set flexible yet firm spending policies that do not require daily, active monitoring. When something anomalous happens, such as unexpectedly fast spending, a human will be able to review and confirm whether everything is operating as intended. If the spend was intentional, then the administrator of the Account Wallet will be able to raise the limit or approve a one-time injection of funds. If the spend was unintentional, then the spending policies for adding funds to virtual wallets did their job by imposing caps. We are working to make it as easy as possible to fund and use these wallets. We will start with simple ways to onramp and offramp funds within supported geographies, with self-funding via stablecoins available as an alternative for eligible users. The Internet will not shift completely overnight, but with a majority of traffic on the web now being driven by bots, we are excited to give agents and merchants first-class tools for agentic commerce. Beyond payments alone Allowing humans to delegate authority to agents to easily buy and sell services is a helpful starting point. But this delegation is not always obvious to the merchants as they interact with agents. Today, if an agent comes to your website, you may know little about them as a user, despite the fact that the agent is acting on behalf of an individual or an organization. This lack of attribution challenges many traditional web business models. It’s easy to give a one-week free trial or sign-up credits to a human or an organization. It’s hard to give these same perks to an agent that lacks a stable identity and when one human can spin up dozens of agents under their control. We solve this problem by linking wallets to a Cloudflare account via cloudflare.pay . cloudflare.pay will allow agents to optionally identify themselves, since their identity is a delegate of the account. A research agent could live at research.example.cloudflare.pay , allowing merchants to know that it is an agent from a particular organization. This approach will permit agents to maintain consistent and persistent identities, making the experience better for all parties. It will be completely optional for agents to choose to declare their identity or not, and it will be up to businesses to decide whether they want to prioritize transacting with known agents. Agent identifiers should be human-readable We believe that the approach to dealing with agents will look like the approach to dealing with VPNs: If someone is unidentified, they are not inherently untrustworthy, but they need to prove themselves more. This is why we have Turnstile and other initiatives to detect bots within Bot Management . Our identity primitive will build on top of this prior work. For example, Web Bot Auth already allows agents to register their identity via a keypair. IDs attached to Cloudflare Wallets allow this keypair to become human-readable. We know that agentic identity standards are changing quickly, which is why we wanted to keep our approach simple. We are proposing a human-readable identifier for a not-very-readable keypair, similar to the URL and IP-address pairings used in DNS . We are not trying to define a particular schema or other verification system. We only want to make identity simple to remember and easy to declare. As schemas to enric