Files
pyre/apps/api
RogueWave 8b58faf7c1 feat(prometheus+spawn): Prometheus engine (stubbed) + manual Pump.fun creator
Built by 2 parallel agents (+ image-API research):
- @pyre/prometheus: generateSpawn() engine — deterministic §9 meta-mixer
  (40/25/20/15), prompt builder ("inspired mutation, not a clone" + no
  people/brands), name/ticker/lore/tagline gen, image-prompt, denylist + moderation
  safety. PROVIDER-ABSTRACTED (TextProvider/ImageProvider/ModerationProvider) with
  deterministic STUBS so it runs keyless today; real call shapes documented (Claude
  Haiku text · FLUX schnell image · OpenAI omni-moderation). 13 tests.
- @pyre/db: migration 002 (prometheus_generations, spawn_records) + record/list/get.
- @pyre/api: admin-gated POST /api/prometheus/generate + /api/spawn/launch
  (x-admin-token; CLOSED with 403 when ADMIN_API_TOKEN unset; timing-safe compare),
  public GET /api/spawns + /api/spawn/:id.
- @pyre/web: public /spawn record page; @pyre/core SpawnRecord type.

Verified: typecheck 8/8, 134 tests (core 91 + prometheus 13 + solana 30), web build
(+/spawn), migrate 002 live, /api/spawns OK, admin gate returns 403 (unconfigured).
Follow-ups: set ADMIN_API_TOKEN to use admin endpoints; wire real provider keys;
receiptId→DB-id wiring; admin generation UI.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
2026-05-31 07:09:53 +00:00
..

@pyre/api

PYRE backend HTTP API. Skeleton only — endpoints exist as TODO stubs/route placeholders, NOT real implementations. No Solana transaction or scan/build logic is implemented yet (see CLAUDE.md, §14).

Stack: Node.js + Fastify + TypeScript, with PostgreSQL (@pyre/db), Redis + BullMQ for queueing jobs handled by @pyre/worker.

Responsibilities (§13)

Token scan coordination, classification helpers, route evaluation, AI generation orchestration, metadata preparation, receipt storage, Spawn record storage, public API, admin API.

Endpoints to implement (§14) — TODO

  • POST /api/scan — scan a wallet's token accounts; return summary + accounts.
  • POST /api/build/close-empty — build unsigned close-account tx for empty ATAs.
  • POST /api/build/burn — build unsigned burn tx for selected junk tokens.
  • POST /api/receipt — record/return a cleanup receipt for a confirmed tx.
  • POST /api/prometheus/generate — enqueue a Prometheus Spawn generation job.
  • Admin endpoints — review/approve/reject generated Spawn packages.

Currently only GET /health is wired up.

Backend security rules (§16)

Rate-limit scan endpoints, validate wallet pubkeys, validate token-account ownership, never trust client-submitted classifications (recompute server-side), log all transaction-build requests, protect admin endpoints, use env secrets only.

Scripts

  • devtsx watch src/index.ts
  • buildtsc -p tsconfig.json
  • typechecktsc --noEmit
  • lint / test — placeholders for now