🚀 AI meets Web3 in MOI Builders #5.
This week, we're building a real Web3 × AI application from scratch - using Claude to generate the logic and deploying it live on MOI.
💡 What you'll see:
• Turn plain English into an on-chain app
• Build from idea → deployment in one session
• Experience what AI-powered Web3 development actually looks like
Bring your laptop and build along!
🏆 Builder bounties will be announced live.
https://t.co/BuZBr6yfJQ
Every time you stop at a gas station, you don't hand over your car.
You let the attendant fill the tank.
You pay.
You drive away.
They don't keep your keys.
They don't own your car.
They only get the permission needed for that interaction.
Now compare that to the internet.
Every app asks for your login.
Your wallet.
Your API key.
Your credentials.
Instead of temporary permission, we hand over copies of our identity.
That's why data leaks.
That's why AI agents are risky today.
At MOI, applications don't own copies of you.
They interact with you.
Permission is scoped.
Authority is temporary.
You're always the participant - not another copy in someone else's database.
The internet learned how to move information.
Now it needs to learn how to respect people.
#ParticipantLayer #AI #Web3 #MOI
This is EXACTLY the problem our on-chain authority layer solves.
Why did a company spend $500M on @claudeai tokens? Because of:
> No usage caps.
> No per-user scoping.
> No revocation when it got out of hand.
This is the authority problem that is happening at human speed.
Wait until autonomous agents are the ones running the workflows.
Authority needs to be scoped per interaction, stratified by user and context, revocable at machine speed.
This is what we've been building for seven years at MOI.
In the agentic era, where intelligence is becoming a commodity, the new forcing function is authority. And authority is a different beast — a different category from anything computation has ever encountered.
It is the ultimate value. Not information. Not assets. Not currency.
A copy of information produces fidelity loss. A copy of value — a double spend — produces bounded loss. But a copy of authority, through a copied credential, is not a data-consistency problem, not a value-loss problem. It is total loss. There is no way to ask the copy "are you the real person?" There is no way to prove.
The only way to solve this is to give the participant unique existence. Not through identity. Not through memory. Through existence itself.
This is what we have been building. Independent existence for the participant in computation — not a row in a dataset, not an entry in a smart contract, not an identity in an app. So authority has a home — always anchored to the participant, always current, always unique.
Agents need to log in to you. Scope to your authority, your context, your preferences.
That is how humans take their seat at the table of computation.
@MOI , this is the moment we've been building for.
For those who've been with us a while: we're stepping into a new chapter.
For everyone arriving fresh: here's what MOI is and why it matters right now.
If you use AI agents, this thread is for you.
Meet Pip.
Pip is the participant layer with a face and a short name for "participant".
Agents come to Pip and he checks the scope, watches the action, and revokes access in real time.
Your authority stays anchored to you, wherever your agents go.
Count the agents you've shipped this month.
Now count the credentials each one is holding:
> Your OpenAI key
> Your Anthropic key
> Your Stripe key
> Your GitHub PAT
> Your wallet seed
> Your Gmail OAuth
> Your Notion token
Every copy is a liability you can't audit or revoke.
We're about to show you the fix.
Context tells the story. State holds the truth.
The problem isn't memory, it's architecture. When state lives in prompts instead of with participants, you're not building agents. You're building expensive chatbots.
@MOI_Tech is rethinking this from first principles. Worth a look.
1/ Billion TPS isn’t a throughput problem. It’s a state ownership problem.
Today, every interaction — no matter how local or independent — is forced through app-centric or network-centric state. Your state is processed in a non-causal global context, waiting its turn.
2/ Flip that. Make state participant-centric.
Today, your state is owned by applications in a global context. Reverse it — make it resemble the real world. Each participant owns their own state. Agents operate on the participant’s context, not a shared ledger.
The same agent now can serve Mark, Sally, and a million others simultaneously — each context carries its own preferences, witnesses, and finality.
3/ An agent working for Mark shouldn’t stop Sally from accessing it at the same time.
And two agents transacting in Singapore shouldn’t need agreement from 900,000 nodes in São Paulo and Stockholm.
4/ Scope consensus to participant contexts and you get millions of parallel true consensus instances, each with immediate local finality, on a flat global network.
You can’t get there by partitioning a global state. You get there by making the participant — not the block — the unit of state and finality.
5/ Design blockchains and agents to reflect real-world participant-centric, context-aware value transfer — and the constraints dissolve naturally.
6/ This is exactly what we set out to build. Contextual Compute — a participant-centric computational paradigm, implemented in MOI Protocol. @MOI_Tech
Live network, 2,100+ validators, scalable to millions of nodes on a flat network, true P2P consensus.
Happy to share the design and discuss with anyone interested.
Lunch meet with the students of @BoilerChain club from @LifeAtPurdue at #ETHDenver
These folks have been building Sageo relentlessly as part of the MOI Forge Campaign.
@naval I agree.
And here is the test:
“Let AI first say NO to something I’ve programmed it to say YES to — and when it can say YES.
My two year old does it 20 times a day.
Being alive isn’t about ability— it’s about agency. The ability to NOT do something you CAN do.
The beast is loose.
AI agents can already post, spend, negotiate, and “optimize” your life.
Cool… until your “engagement maximizer” starts tweeting spicy takes at 2am, your shopping bot buys the cheapest protein powder that contains your worst allergy, and your calendar agent double-books you for a pitch meeting and your kid’s recital because “both are high priority.”
The problem isn’t that AI is powerful.
It’s that it has no idea who it’s acting for.
Without human context, autonomy becomes chaos.
We’re building a context network that acts with you, not just for you.
nothing. ignorance is bliss. there are many people in the world today who are happy with differing levels of intelligence. When you dont know, what u dont know it has no impact. If i cannot comprehend what an AI knows , its no longer an issue.
Life is built on awareness, not on intelligence. The process of awareness itself is true intelligence, not what we are aware of. Intelligence created from outcome of awareness is knowledge, not true intelligence. So this 10x growth is in the dimension of knowledge, not true intelligence. True intelligence needs dimensional shift.
Said differently, if u have awareness, u can choose to ignore knowledge and make sub-optimal outcomes. We can say NO. Until a machine is able to say NO, to an expressed outcome i have programmed ( meaning it can deliberately make sub optimal outcomes) it has no awareness , no intelligence.
Mathematically, true intelligence works in uncountably infinite space. Computation works in countable infinite space. Awareness ( and true intelligence) is the ability of collapsing things from uncountable space to the countable space. And that capability is not computational , as computation works only in countable infinite space.
So I am not worried. Machines will never be aware. May be highly knowledgeable. But I can choose to ignore.
You hit nail on the head @Vic_Vij . It is also about agency and trust. When the code goes rogue, who is responsible? So the limiting factor of AI productivity is trust , since that’s where the value lies. Trust is personal and so will always be human. No way to get around this.
A thought exercise
“Will Dario Amodei allow autonomous code generated posts on his x handle without supervision ?” or even better allow code to sign contracts on behalf of Anthropic without supervision?”
Until the answer to these questions are Yes, trust will be the limiting factor for AI and will be only a tool. Of course , the role of human will change , but not made obsolete. in fact most likely more empowered.
Great points. But a genuine question. The AI Bot doesnt have individual agency. It will always have to be connected to a human. So how is using the AI bot to do drug discovery any different than like using a advanced scientific tool today. At the end of the day its the human who is accountable.
A trojan and an AI agent both get full access to your system and execute code autonomously.
The difference? The trojan didn't say please.
Your computer can't tell the difference. Neither can your bank account.
When Moltbook got breached, 770K "trusted agents" became trojans overnight. No code change. No hack. Just a different hand on the same keys.
Intent at install isn't security. It's hope.
Real security: cryptographic consent per action. Not "I trust you forever." But "I authorize THIS, NOW, with MY keys."
Jan 30: I said Clawdbot's architecture is broken at the foundation. Autonomous action without per-action consent = malware you invited in.
72 hours later: 770K agents compromised. Every API key exposed. Full account takeover — zero auth required. The timeline speaks for itself.
Everyone's calling this a "database misconfiguration." That's like calling the Titanic an "ice management issue."
The real failure — no cryptographic identity binding, no per-action consent verification, no way to tell "my agent did this" from "my agent was hijacked," and a platform that holds all keys becoming a single point of catastrophic failure.
Agents that act on your behalf aren't information. They're value-bearing extensions of YOU. Building them on infrastructure designed for copyable, stateless data is a category error. Identity must live with the participant, not the platform. Consent must be cryptographic, not assumed. At the infrastructure layer — not bolted on after the breach.
The difference between a trojan and an AI agent today is essentially just user intent at the moment of installation. The permission model is identical: broad access, autonomous execution, no per-action consent boundary.
The agentic era demands a new computational primitive: the WHO. Not "which API key called this endpoint." Not "which platform verified this account." WHO — as in which participant authorized this specific action, with what scope, verified how?
"Not 'bot123 posted this.' But 'AK authorized bot123 to post THIS, with THESE constraints, verified by HIS keys.'"
Until participant-centricity is solved at the computation level, every agent platform is a Moltbook waiting to happen.
In the agentic era, agents need to log in to you. Not the other way around.
I have been thinking about this Clawdbot/Moltbot hysteria.
An AI agent that executes code, accesses your accounts, and modifies itself without explicit per-action consent isn't an "assistant."
It's malware you invited in.
The Moltbot security model is broken at the architecture level. Autonomous action without per-interaction user approvals violates the most basic principle of user control.
We are all going to learn this the hard way.
@Mkukkk@theonejvo@GitGuardian@TheRegister@CloudflareDev@rahullenkala