Built by 2 parallel agents (+ image-API research):
- @pyre/prometheus: generateSpawn() engine — deterministic §9 meta-mixer
(40/25/20/15), prompt builder ("inspired mutation, not a clone" + no
people/brands), name/ticker/lore/tagline gen, image-prompt, denylist + moderation
safety. PROVIDER-ABSTRACTED (TextProvider/ImageProvider/ModerationProvider) with
deterministic STUBS so it runs keyless today; real call shapes documented (Claude
Haiku text · FLUX schnell image · OpenAI omni-moderation). 13 tests.
- @pyre/db: migration 002 (prometheus_generations, spawn_records) + record/list/get.
- @pyre/api: admin-gated POST /api/prometheus/generate + /api/spawn/launch
(x-admin-token; CLOSED with 403 when ADMIN_API_TOKEN unset; timing-safe compare),
public GET /api/spawns + /api/spawn/:id.
- @pyre/web: public /spawn record page; @pyre/core SpawnRecord type.
Verified: typecheck 8/8, 134 tests (core 91 + prometheus 13 + solana 30), web build
(+/spawn), migrate 002 live, /api/spawns OK, admin gate returns 403 (unconfigured).
Follow-ups: set ADMIN_API_TOKEN to use admin endpoints; wire real provider keys;
receiptId→DB-id wiring; admin generation UI.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
@pyre/api
PYRE backend HTTP API. Skeleton only — endpoints exist as TODO stubs/route
placeholders, NOT real implementations. No Solana transaction or scan/build
logic is implemented yet (see CLAUDE.md, §14).
Stack: Node.js + Fastify + TypeScript, with PostgreSQL (@pyre/db), Redis +
BullMQ for queueing jobs handled by @pyre/worker.
Responsibilities (§13)
Token scan coordination, classification helpers, route evaluation, AI generation orchestration, metadata preparation, receipt storage, Spawn record storage, public API, admin API.
Endpoints to implement (§14) — TODO
POST /api/scan— scan a wallet's token accounts; return summary + accounts.POST /api/build/close-empty— build unsigned close-account tx for empty ATAs.POST /api/build/burn— build unsigned burn tx for selected junk tokens.POST /api/receipt— record/return a cleanup receipt for a confirmed tx.POST /api/prometheus/generate— enqueue a Prometheus Spawn generation job.- Admin endpoints — review/approve/reject generated Spawn packages.
Currently only GET /health is wired up.
Backend security rules (§16)
Rate-limit scan endpoints, validate wallet pubkeys, validate token-account ownership, never trust client-submitted classifications (recompute server-side), log all transaction-build requests, protect admin endpoints, use env secrets only.
Scripts
dev—tsx watch src/index.tsbuild—tsc -p tsconfig.jsontypecheck—tsc --noEmitlint/test— placeholders for now