wallet
Original:🇺🇸 English
Translated
1 scriptsChecked / no sensitive code detected
Manage encrypted BIP39 wallets stored at ~/.aibtc/. Create, import, unlock, lock, list, switch, delete, export, rotate passwords, set auto-lock timeouts, and check status or info for Stacks and Bitcoin addresses.
15installs
Sourceaibtcdev/skills
Added on
NPX Install
npx skill4agent add aibtcdev/skills walletTags
Translated version includes tags in frontmatterSKILL.md Content
View Translation Comparison →Wallet Skill
Manages encrypted BIP39 wallets stored locally at . Provides full lifecycle operations for Stacks L2 and Bitcoin L1 (native SegWit + Taproot) addresses. Wallets are AES-GCM encrypted with a password and never stored in plaintext.
~/.aibtc/Usage
bun run wallet/wallet.ts <subcommand> [options]Subcommands
create
Create a new wallet with a generated 24-word BIP39 mnemonic.
bun run wallet/wallet.ts create --name <name> --password <password> [--network mainnet|testnet]Options:
- (required) — Label for the wallet (e.g. "main", "trading")
--name - (required, min 8 chars) — Encryption password (sensitive)
--password - (optional) —
--networkormainnet(default:testnet)testnet
Output:
json
{
"success": true,
"walletId": "...",
"Bitcoin (L1)": { "Native SegWit": "bc1q...", "Taproot": "bc1p..." },
"Stacks (L2)": { "Address": "SP..." },
"network": "testnet",
"mnemonic": "word1 word2 ... word24",
"warning": "CRITICAL: Save this mnemonic..."
}import
Import an existing wallet from a BIP39 mnemonic phrase.
bun run wallet/wallet.ts import --name <name> --mnemonic "<24 words>" --password <password> [--network mainnet|testnet]Options:
- (required) — Label for the wallet
--name - (required) — 24-word BIP39 mnemonic (sensitive)
--mnemonic - (required, min 8 chars) — Encryption password (sensitive)
--password - (optional) —
--networkormainnet(default:testnet)testnet
Output:
json
{
"success": true,
"walletId": "...",
"Bitcoin (L1)": { "Native SegWit": "bc1q...", "Taproot": "bc1p..." },
"Stacks (L2)": { "Address": "SP..." },
"network": "testnet"
}unlock
Unlock a wallet to enable transactions. Session persists in-process memory until locked or timeout.
bun run wallet/wallet.ts unlock --password <password> [--wallet-id <id>]Options:
- (required) — Wallet password (sensitive)
--password - (optional) — Wallet ID to unlock (uses active wallet if omitted)
--wallet-id
Output:
json
{
"success": true,
"walletId": "...",
"Bitcoin (L1)": { "Native SegWit": "bc1q...", "Taproot": "bc1p..." },
"Stacks (L2)": { "Address": "SP..." },
"network": "testnet"
}lock
Lock the wallet, clearing sensitive key material from memory.
bun run wallet/wallet.ts lockOutput:
json
{ "success": true, "message": "Wallet is now locked." }list
List all available wallets with metadata (no sensitive data).
bun run wallet/wallet.ts listOutput:
json
{
"wallets": [
{
"id": "...",
"name": "main",
"btcAddress": "bc1q...",
"address": "SP...",
"network": "testnet",
"createdAt": "2024-01-01T00:00:00.000Z",
"isActive": true,
"isUnlocked": false
}
],
"totalCount": 1
}switch
Switch the active wallet (requires unlock after switching).
bun run wallet/wallet.ts switch --wallet-id <id>Options:
- (required) — Wallet ID to activate
--wallet-id
Output:
json
{
"success": true,
"activeWalletId": "...",
"address": "SP...",
"network": "testnet"
}delete
Permanently delete a wallet (requires password + confirmation).
bun run wallet/wallet.ts delete --wallet-id <id> --password <password> --confirm DELETEOptions:
- (required) — Wallet ID to delete
--wallet-id - (required) — Wallet password for verification (sensitive)
--password - (required) — Must be exactly
--confirmDELETE
Output:
json
{
"success": true,
"deletedWalletId": "...",
"message": "Wallet deleted permanently."
}export
Export the mnemonic phrase for a wallet (requires password + safety acknowledgment).
bun run wallet/wallet.ts export --password <password> --confirm I_UNDERSTAND_THE_RISKS [--wallet-id <id>]Options:
- (required) — Wallet password (sensitive)
--password - (required) — Must be exactly
--confirmI_UNDERSTAND_THE_RISKS - (optional) — Wallet ID (uses active wallet if omitted)
--wallet-id
Output:
json
{
"walletId": "...",
"mnemonic": "word1 word2 ... word24",
"warning": "SECURITY WARNING: ..."
}rotate-password
Change the wallet encryption password (atomic with backup/verify/rollback).
bun run wallet/wallet.ts rotate-password --old-password <pass> --new-password <pass> [--wallet-id <id>]Options:
- (required) — Current password (sensitive)
--old-password - (required, min 8 chars) — New password (sensitive)
--new-password - (optional) — Wallet ID (uses active wallet if omitted)
--wallet-id
Output:
json
{
"success": true,
"walletId": "...",
"message": "Password rotated. Use unlock with the new password."
}set-timeout
Set the auto-lock timeout in minutes (0 = never auto-lock).
bun run wallet/wallet.ts set-timeout --minutes <n>Options:
- (required) — Minutes until auto-lock (0 = disabled)
--minutes
Output:
json
{
"success": true,
"autoLockMinutes": 15,
"message": "Auto-lock set to 15 minutes."
}status
Get wallet readiness status: whether a wallet exists, is active, and is unlocked.
bun run wallet/wallet.ts statusOutput:
json
{
"message": "Wallet is locked. Unlock to perform transactions.",
"readyForTransactions": false,
"isUnlocked": false,
"currentNetwork": "testnet",
"wallet": { "id": "...", "address": "SP...", "btcAddress": "bc1q..." }
}info
Get the active wallet's address and session info.
bun run wallet/wallet.ts infoOutput:
json
{
"status": "ready",
"network": "testnet",
"Stacks (L2)": { "Address": "SP..." },
"Bitcoin (L1)": { "Native SegWit": "bc1q...", "Taproot": "bc1p..." }
}stx-balance
Get the STX balance for a wallet address.
bun run wallet/wallet.ts stx-balance [--address <addr>]Options:
- (optional) — Stacks address to check (uses active wallet if omitted)
--address
Output:
json
{
"address": "SP...",
"network": "testnet",
"balance": { "stx": "100 STX", "microStx": "100000000" },
"locked": { "stx": "0 STX", "microStx": "0" }
}Security Notes
- Mnemonics are AES-GCM encrypted before being written to disk
- Passwords never appear in stored files
- Use after sensitive operations to clear keys from memory
lock - and
exportrequire explicit confirmation strings to prevent accidentsdelete - is atomic: original keystore is backed up and restored on failure
rotate-password