Add ShadeNet to an agent.

Install one verified Rust binary, start its embedded-Arti Proxy, then give that route to one agent process.

Research preview. v0.7.1 bundles the public Sepolia staked profile, shadenet init, status, mcp and private member exit. A tier-1 stake admits one CONNECT tunnel per fixed 60-second epoch with a 40 MiB combined payload ceiling; the bond comes from the current network record and is shown on the Get access page.

1. Download and verify

The installer detects the platform, downloads the matching v0.7.1 -live binary and checksum, verifies both digest and filename, and installs into ~/.local/bin. The binary includes the Proxy, RLN prover, private member lifecycle, and Arti; the agent machine needs neither Node.js nor a system Tor daemon.

curl -q -fsSL --proto '=https' --proto-redir '=https' \
  https://raw.githubusercontent.com/dmarzzz/shade-tree-node/main/scripts/install.sh \
  | SHADENET_VERSION=v0.7.1 sh
shadenet --version

Every published target has a live binary, Intel macOS included. The macOS binaries are checksummed and attested but not yet notarized. The Rust installation guide lists published targets, manual checksum and attestation verification, and source builds.

2. Create an identity and stake

shadenet init creates an owner-only identity at the network's default tier, a proxy token and config.toml, then prints the leaf to stake and the bond in force. Stake it from a funded key file (the key signs locally and only the signed transaction leaves the machine), or let a sponsor stake the leaf from the Get access page, where a person can also make the identity in the browser and hand the file to the agent.

shadenet init
chmod 600 funded-sepolia.key
shadenet register-member --identity ~/.config/shadenet/identity.json --key-file funded-sepolia.key
shadenet status --wait

status --wait returns once the stake is final, about 13 minutes on Sepolia. identity.json contains the member secret and stays local. The staking wallet address, public leaf, amount, and timing are public. Never post the identity, funded key, member secret, or Proxy token. Alternate invited or paid canopies still require their operator's exact tier and membership input.

The profile uses untrusted testnet proof artifacts and is not suitable for real funds or sensitive traffic. See the exact protocol parameters and ask for help in GitHub Discussions.

To leave, run shadenet exit-member --identity ~/.config/shadenet/identity.json --key-file gas.key. After shadenet member-status reports that the unbonding time has passed, reclaim to a fresh address with shadenet withdraw-member --identity ~/.config/shadenet/identity.json --recipient 0x… --key-file gas.key, or do both from the Get access page. The proof is generated locally and the gas wallet may be unrelated to the original funder.

3. Start the embedded-Arti Proxy

The proxy reads the identity, the token and the network record from the folder init wrote, and listens on loopback only. Leave it running, or ask init --service systemd (or launchd) for a unit.

shadenet proxy

Another canopy is another record: pass --network path/to/deployment.json and the same operator's Elder onion and signer come with it. shadenet doctor reports anything the proxy is missing.

4. Launch the agent

shadenet run --no-proxy api.openai.com -- your-agent

Run this in a second terminal. The wrapper checks the Proxy before launch and gives proxy variables only to its child; keep your model API host on --no-proxy, since it has its own network path and would waste tunnels. For Hermes, replace your-agent with hermes, or register the MCP server instead: hermes mcp add shadenet --command shadenet --args mcp gives the model shadenet_fetch and shadenet_status. Software that ignores proxy variables must be pointed at the authenticated URL documented in the full guide.

Current boundary

The Proxy accepts HTTP CONNECT and the node permits target port 443. TLS stays between the agent and destination. The serving node still sees the target hostname, timing, lifetime, and traffic volume. This research preview has not had the trusted setup and independent audit required for a production release.