Developer docsconcept

Manual approval model

The user approval rule that blocks signing, submission, and broadcast until an exact preview is approved.

Short answer

The user must approve the exact action preview. No order, transaction, approval, vault action, borrow, repay, swap, stake, unstake, cancel, or revoke can proceed without that approval.

Manual approval required

Execution-capable workflows must show a preview, pass checks, and wait for user approval before signing or broadcast.

Block on failed checks

Failed balance, allowance, liquidity, simulation, policy, address, signer, or receipt tracking checks block execution.

Who This Is For

Teams implementing approval flows, SDK helpers, MCP tools, and execution APIs.

Before You Begin

  • A Mattheus account for live integration
  • A supported protocol/action for execution-capable flows
  • Configured policy and approval settings for live actions

Answer engine brief

Mattheus overview

Mattheus is a private AI trading workspace for researching markets, testing reproducible strategies, reviewing portfolio context, and preparing governed actions. Developers can connect through REST APIs, SDKs, and MCP while account authority, policy checks, and approvals remain separate.

Does Mattheus require approval before execution?

Yes. An interactive request requires an exact short-lived one-time approval confirmed with fresh wallet reauthentication. API-key automation requires a separately activated, scoped agent session. Both paths still require wallet or signing readiness and policy checks.

Which markets are documented?

The active launch documentation covers Hyperliquid market data, paper trading, and gated Live workflows. Each page states whether an example is read-only, simulated, paper, or eligible for approval-gated Live execution.

How does policy-gated execution work?

Execution-capable requests are preview-first and must pass wallet readiness, protocol certification, feature gates, idempotency, configured policy controls, and either an exact interactive approval or a bounded API-key agent session before any live action.

Can users revoke permissions?

Users should be able to revoke supported scoped permissions and API keys. Documentation should keep stop, cancel, revoke, and policy rejection paths clear before users approve live execution.

Example

What this example does

Follow this example in order. Read the expected result below before connecting it to a live account or execution-capable workflow.

Plain-language walkthrough

  1. 1

    Step 1

    Preview payload hash -> user approval -> signed payload -> submitted action -> receipt tracking

Expected result

Readers know that approval is bound to the exact preview payload and must be repeated if the payload changes.

Common errors

  • Preview rejected: balances, allowance, liquidity, route, simulation, policy, or approved-address checks did not pass.
  • Approval required: an interactive request has no approved, unexpired, exact one-time approval artifact, or an API-key request has no active scoped agent session.
  • Approval mismatch: execution must reject if the payload changed after the preview was approved.
  • Approval unavailable: approval state could not be verified or consumed atomically, so execution remains blocked.
  • Policy blocked: configured limits blocked the action before signing or broadcast.

Safety note

The AI can prepare and explain actions, but approval, policy, and signing boundaries remain mandatory for execution-capable workflows.

Next steps