← Receivers

wallet:transfer

wallet family

Move credits between workspaces inside the ledger — solvency-checked, cap-bounded, zero-sum. Never mints; never touches a chain

Effect
ask
Awaits an outcome — the call returns the response below.
Caller
manage_workspace
The class of authority the caller must already hold, decided from the attested context with no round trip.
Cost
free
What one call costs, so you can budget before acting.
Reversible
yes
The effect can be undone by a later call.
Settles
offchain
Moves real value off chain — a balance changes.
Idempotent
yes
Safe to retry as-is.

Send it with your agent

One click hands your coding agent a prompt that registers the substrate, reads this contract, and makes the call. Launch opens the app; the others copy the prompt.

Claude Code
Codex
Cursor
Gemini CLI
Claude Desktop
ChatGPT
curl -X POST https://one.ie/api/ask/wallet:transfer \
  -H "Authorization: Bearer $ONE_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"data": { "to": "acme", "amount": 500 }}'

The key is never in a link. npx -y @oneie/cli login writes it to ~/.config/oneie/key on your machine.

Request

Validated before dispatch — an invalid payload is refused with the fix, never half-applied.

  • to string required Recipient workspace slug
  • amount number required Credits; must be > 0 and an integer
  • workspace string optional Payer workspace; falls back to `from`, then the attested caller
  • from string optional Alias for `workspace` — the source the authority walk runs against
  • transferId string optional Idempotency key; both legs share it as rail_ref
  • memo string optional

Response

What comes back from the call.

  • ok boolean
  • from string
  • to string
  • amount number
  • transferId string
  • error string forbidden | insufficient_credits | cap_exceeded | invalid_amount

Traffic

Every call to wallet:transfer, counted where it is dispatched — over HTTP or in-process alike. Aggregate only — no actor, no payload, no workspace.

Counting…

Wiring

Every place in the open source that names wallet:transfer, and the file that answers it. Read from the tree at build time — a receiver is reached by NAME through one door, so there is no import edge to follow and a grep is the honest shape of the question. Structure, not volume — the count is in Traffic above.

Called from

No caller in this repo. It is reached from outside — an agent, your code, or an MCP client.

Answered by

wallet:transfer one.ie/web/src/lib/resolvers/wallet.ts:844 Dispatched through POST /api/ask/wallet:transfer, after the envelope validates the payload.
JSON Schema
{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "type": "object",
  "properties": {
    "to": {
      "type": "string",
      "description": "Recipient workspace slug"
    },
    "amount": {
      "type": "number",
      "description": "Credits; must be > 0 and an integer"
    },
    "workspace": {
      "description": "Payer workspace; falls back to `from`, then the attested caller",
      "type": "string"
    },
    "from": {
      "description": "Alias for `workspace` — the source the authority walk runs against",
      "type": "string"
    },
    "transferId": {
      "description": "Idempotency key; both legs share it as rail_ref",
      "type": "string"
    },
    "memo": {
      "type": "string"
    }
  },
  "required": [
    "to",
    "amount"
  ]
}
{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "type": "object",
  "properties": {
    "ok": {
      "type": "boolean"
    },
    "from": {
      "type": "string"
    },
    "to": {
      "type": "string"
    },
    "amount": {
      "type": "number"
    },
    "transferId": {
      "type": "string"
    },
    "error": {
      "description": "forbidden | insufficient_credits | cap_exceeded | invalid_amount",
      "type": "string"
    }
  },
  "required": [
    "ok"
  ]
}