Try it — no wallet, no signup

Watch the rules refuse a payment they aren’t allowed to make.

Every verdict below is computed by the real rule contract live on Coston2 — not a mockup. Each attempt is a read-only check against the deployed rule: no gas, no wallet, nothing moves. Try the presets, or type your own and try to break it.

Exchange & allowlist

real rule ↗

A savings account that can only ever pay your exchange. Try to send it somewhere else.

May only pay one allowlisted address: rw15K…VDMC (a demo exchange).

TestingrGKXFNqj71DaSTRyv1Sg8xKLeozyDuBT1 ↗·key held in the enclave
Pick a scenario above — the refusal is the interesting part.

Spending limit

real rule ↗

An allowance for a bot: it can spend to the allowlist, up to 10 XRP/day. Try to blow past it.

Allowlisted recipient + a cap of 10 XRP per day.

TestingrNJrYUrmiHGTnQghR1vK2F76cgSFaxwtqy ↗·key held in the enclave
Pick a scenario above — the refusal is the interesting part.

Scheduled payments

real rule ↗

A standing order nobody can bend. The payee, the amount and the date are all pinned — try paying early, paying a bit more, or paying someone else.

Pays exactly 25 XRP to one payee on the 1st of each month, 12 times, and nothing else.

Testingr33g8KFgJRe8zkqwv3vsr4A82vXKUebUiP ↗·key held in the enclave
Pick a scenario above — the refusal is the interesting part.

Conditional

real rule ↗

A payment that waits on the real world. Flare hasn't proven the condition yet, so nothing can leave — not even back to the payer.

Pays a supplier up to 100 XRP — but only once Flare's Data Connector proves XRP is worth at least $5. If that hasn't happened by 31 Jan 2027, the funds return to the payer instead.

TestingrUxiFBkn444QeMBwMJSuLZ7ixKbKPHoEpu ↗·key held in the enclave
Pick a scenario above — the refusal is the interesting part.

Built on Flare

Four Flare pieces, each doing one job.

Listed in the order they carry weight. Every address below is live on Coston2 — click any of them rather than take this at face value.

The key
Flare Confidential Compute

Each account's XRPL key is generated inside a TEE and never leaves it — not to us, not to you. It signs only what the on-chain rule authorizes. Everything else on this page assumes this one holds; without it, Keyless would just be a contract asking a wallet nicely.

Extension 65645 · TEE manager 0x1a9C…18aE ↗
The trigger
Flare Data Connector

Turns a public API into a fact the chain can check. A Conditional account can pay nobody — not the payee, not the person who funded it — until the FDC attests the condition. The whole request is pinned on-chain, so a proof of some other API returning the same value can't be swapped in.

ConditionalRule 0x2d85…9E77 ↗
The bridge
FAssets direct minting

One tagged XRP payment mints FXRP on Flare. The destination is computed on-chain from the account itself rather than configured, so a stolen control key cannot repoint the mint at a thief.

FxrpRule 0xAABA…7482 ↗
The yield
Flare Smart Accounts

Where that FXRP lands and earns. The policy whitelists the instruction set — into a vault, out of a vault, home to XRP — and leaves transfer-out of it entirely, so the FXRP has nowhere to go but back.

FSA diamond 0x4349…D37c ↗

Convinced? Make your own in a minute.

Create an XRP account, pick a rule, and it’s yours — the key stays in the enclave, and it can only ever do what you allow.