Skip to main content
Tokscale’s claims fall into four strictly separated categories: public-chain facts independently verifiable in the explorer, attributed hosted application evidence, hermetic localnet proofs, and work that does not exist yet. This page is the authoritative source for all four.

Proven on public GIWA Sepolia (chain ID 91342)

Every row is verifiable in the explorer at https://sepolia-explorer.giwa.io. The source and the deployment manifests behind every contract row are public in junhoyeo/tokscale-giwa-contracts, and the explorer reports every contract Tokscale deployed for this evidence as source-verified. The x402 proxies and the ERC-6492 validator are upstream components. Tokscale deployed them only to satisfy the pinned facilitator’s fixed-address invariant, and their explorer verification comes from upstream compilation inputs: their provenance is recorded, not claimed as Tokscale-authored source. tUSD and TUSDDeployer are the Tokscale-authored contracts. GIWA-provided infrastructure we build on (not our deployments): EAS SchemaRegistry 0x4200000000000000000000000000000000000020 and EAS 0x4200000000000000000000000000000000000021 (OP Stack predeploys), DojangScroll 0xd5077b67dcb56caC8b270C7788FC3E6ee03F17B9, DojangAttesterBook 0xDA282E89244424E297Ce8e78089B54D043FB28B6, and the Testnet Faucet attester resolving to 0x63CCe2b569A7bC35895ee24306c1512fefc06121.
Scope, stated plainly: tUSD is a test token, not a stablecoin or production authorization. The standalone Upto settlement above proves actual-versus-maximum semantics on-chain, but it was submitted directly with the payer and facilitator held by one key. It is contract-level evidence, not evidence that the hosted product delivered a model response or issued a receipt.
Anyone can rebuild the Tokscale-authored contracts and check them against the live chain, with no Tokscale access. tUSD compiles under Solidity 0.8.30, optimizer enabled at 200 runs, evmVersion = prague:
Then compare the explorer’s bytecode at each address against runtimeCodeHash in the matching manifest under deployments/. Those manifests also pin the tUSD EIP-712 domain separator, the consumed ERC-3009 authorization behind the public exact settlement, and the CREATE2 salt, init-code hash, and observed runtime hash for each deterministic deployment. The maintainers’ own re-validation against live chain state is a separate, non-public target:

Proven on the hosted payment lane (attributed)

The hosted GIWA Sepolia environment exposes only its user-facing surfaces:
  • Web console: https://giwa.tokscale.ai.
  • Gateway: https://api.giwa.tokscale.ai.
  • Payment and worker services: private, with no public domains.
The public console and gateway were healthy on 2026-08-05. A dedicated macOS Keychain payer, 0x02cdd4a6f1308d310d624292a731c2d276310dc5, signed fresh Stage A exact terms and the live facilitator settled them. Representative explorer evidence: tx 0xf6093345…, tx 0xfe84d874…, and tx 0xca7b2b8d…. Hosted Stage B evidence stops before success. The gateway issued valid body-bound Upto challenges; the same Keychain payer signed the challenge-issued expiry; Permit2 allowance preflight passed; and paid presentations reached claude-gw. The configured models returned provider Unavailable before durable Upto admission. Database inspection found no Upto audit binding, payment row, adapter journal row, or transfer for those attempts. This proves hosted challenge/signing compatibility and fail-closed no-charge behavior. It does not prove terminal Upto settlement or delivery. A hosted Upto run is successful only when the same journey observes all three: a terminal 2xx completion body, a settlement transaction, and a receipt verified against the pinned signer. HTTP 202 is only admission, and an on-chain transfer alone is not delivery. No hosted Upto success marker was emitted on 2026-08-05.

Proven on local localnet (hermetic Anvil fixtures)

Local means a disposable Anvil topology that borrows chain ID 91342. Chain ID is not a network identity: GIWA_NETWORK plus the immutable database binding is. Nothing in this section carries a Sepolia explorer link, and every result below is maintainer-run: the harness is not publicly available. The full loop, end to end: gateway, x402 payment, receipts, attestation pipeline, and browser-rendered checks.
Stage A credit top-up with crash recovery: the reconciler is killed mid-settlement and recovers with exactly-once semantics.
Stage B upto per-request settlement with fault injection: durable actual-usage settlement across facilitator failures on the local topology.
Protocol vectors verified three independent ways: Rust (Alloy), TypeScript (viem), and Solidity (Forge). Independent oracles, not one shared library trusted twice.

Not yet: Phase 2 or pending

None of the following is live today.
  • Public Usage Root on GIWA Sepolia: no Usage Root exists on real Sepolia today. Anchoring lands only on the local EAS fixture until the first public anchor ships, which means one EAS schema registered, one real Usage Root published, and an explorer link added here at that moment.
  • Dojang eligibility gate: the Passport is not yet gated on a Dojang Verified Address. The read path is validated; the gate is Phase 2.
  • TokscaleScroll read contract: the DojangScroll-style convenience reader is Phase 2.
  • Transactional Earn: no bounties table, no apply flow, no payouts. Phase 2.
  • Terminal hosted Stage B upto proof: the hosted route issues valid challenges and fails closed without charging when claude-gw is unavailable, but no run has yet produced the required terminal 2xx, settlement transaction, and verified receipt together.
  • GIWA mainnet: does not exist. No GIWA token is planned.

Next steps