Nunchuk CLI AI agent multisig wallet

AI Agents with Bitcoin Keys: How Nunchuk CLI Keeps Humans in Charge

Giving an AI agent the ability to spend your bitcoin sounds like a terrible idea. In early April 2026, Nunchuk released a tool that makes it a considerably less terrible idea: nunchuk-cli, a command-line interface that lets AI agents operate inside Nunchuk group wallets, with the human holding ultimate control. It shipped as two MIT-licensed repositories, nunchuk-cli plus a companion Agent Skills repo that teaches agents to operate the CLI across common workflows. Stacker News user @Scoresby flagged the release.

The core safety idea is simple and worth stealing for any agent-money design: the agent gets a key, not the money. Transactions above policy limits require explicit user approval. Your key keeps ultimate control.

The model: a shared wallet between human and agent

The wallet is a group multisig with three kinds of keys: your key, the agent’s key, and a policy co-signer. The agent can transact within its policy limits. Anything above those limits needs your signature.

Two design decisions stand out. First, funding a wallet and authorizing an agent are treated as separate decisions. Putting money in the wallet does not grant the agent permission to move it. Second, the tool ships with platform-key policies that support dummy-transaction approvals, so you can test what the agent is allowed to do before any real sats are at stake.

What the tool includes

Nunchuk-cli is a real piece of software, not a concept post. It includes local key generation, encrypted key storage, and descriptor and BSMS export and recovery, so the wallet remains recoverable with standard multisig tooling. It works with m-of-n group wallets, and miniscript wallet support was noted as work in progress at the time of the post.

The thread also touched on the broader 2026 context of AI-agent payment rails: Alby’s MCP server, OpenClaw agents paying over Lightning, and Lightning Labs’ agent tools. Agent money is becoming a category, and the teams building the guardrails early will define what “safe” means here. If you are picking the hardware keys for a setup like this, compare them in the la mejor cartera de bitcoins guide, and check coordinator support in the compatibility checker.

Why multisig is the right shape for this

Single-sig plus an agent is a binary: the agent can spend everything or nothing. Multisig turns agent spending into a spectrum. Policy limits define the agent’s lane, the user’s key is the override, and the policy co-signer enforces the rules even if the agent misbehaves.

This is the same principle behind all good multisig design. No single key, no single moment, no single party should be able to move the money alone. An AI agent is just a new kind of party, faster and more error-prone than the human kind, which is exactly why it should never hold unilateral control.

The honest caveats

This is early tooling. Miniscript support was still in progress, the policy model is only as good as the limits you set, and an agent with a key inside your wallet is still an attack surface you did not have before. Set limits conservatively, test with dummy transactions, and keep the funding separate from the authorization, as the tool’s own design suggests.

Also worth remembering: the descriptor backup rule applies here too. An agent wallet is still a multisig wallet. Back up the descriptor alongside the keys, or recovery becomes a research project. Seed words alone are not enough to recover a multisig.

Who should experiment with this now

This is builder tooling, not consumer software. If you run AI agents that need to move small amounts of bitcoin, for API payments, testing, or automation, the policy-limited group wallet is the safest shape available today. Fund it with only what the agent is allowed to lose, keep the policy limits tight, and keep your own key offline except when approving over-limit spends.

Everyone else can watch this space. The pattern, agent key inside multisig with human override, is likely to become the standard way agents hold bitcoin, and early experiments like nunchuk-cli are where the kinks get found.

If you are new to multisig entirely, start with the multisig wizard before adding AI agents to the mix.

Discussed on Stacker News: nunchuk-cli: Nunchuk CLI for wallet management

Publicaciones Similares

Deja una respuesta

Tu dirección de correo electrónico no será publicada. Los campos obligatorios están marcados con *