CART.FUNCART.FUNV1

agentic ecommerce

/Legal

Legal · Cart.fun Protocol

Terms & Conditions

Last updated: September 28, 2026

⚠

GEOGRAPHIC RESTRICTION — Cart.fun is not available to residents of the United States of America or any U.S. territory. By accessing or using the Services — including any automated or agentic interaction — you represent and warrant that you are not a U.S. person as defined under applicable law. Do not use these Services if you are located in or are a resident of the United States.

Contents

  1. 01Nature of the Services
  2. 02Eligibility
  3. 03Machine-to-Machine and Agent Use
  4. 04Checkout, Payments, and Receipt NFTs
  5. 05Store Operators
  6. 06User Representations
  7. 07Prohibited Activities
  8. 08Intellectual Property
  9. 09Third-Party Services
  10. 10Privacy
  11. 11Modifications and Availability
  12. 12Disclaimer of Warranties
  13. 13Limitation of Liability
  14. 14Indemnification
  15. 15Smart Contract and Blockchain Risk
  16. 16Governing Law and Dispute Resolution
  17. 17Miscellaneous
  18. 18Contact

01Nature of the Services

Cart.fun is an on-chain, non-custodial commerce protocol operated by a small team. There is no incorporated legal entity behind this name. The Services consist of:

  • Smart contracts deployed on Base, Arc, and Robinhood Chain that accept stablecoin payments and mint on-chain receipt NFTs.
  • A public-facing UI at cart.fun, provided as a convenience layer for human browsing.
  • A machine-readable API (REST + OpenAPI), agent skill files, ERC-8004 agent cards, and webhook infrastructure designed for autonomous agent and programmatic access.
  • Receipt NFTs minted on-chain as permanent, verifiable proof of purchase.

By accessing or using the Services — whether as a human user, an AI agent, an automated script, or any other software system — you agree to be bound by these Terms.

02Eligibility

You (or the entity on whose behalf you operate, including any software agent acting under your control) may only use the Services if all of the following conditions are met:

  • The natural person authorizing or operating the interaction is at least 18 years of age.
  • Neither you nor the controlling operator is a resident of, or physically located in, the United States of America or any U.S. territory.
  • Neither you nor the controlling operator is subject to economic sanctions administered by any government (including OFAC, EU, or UN sanctions lists).
  • Use of the Services is not prohibited by any applicable law or regulation in your jurisdiction.
  • You have full legal capacity to enter into these Terms.

Deploying an agent or automated system that interacts with the Services constitutes your ongoing representation that these conditions remain satisfied. We reserve the right to restrict access from any jurisdiction or any wallet address at any time without notice.

03Machine-to-Machine and Agent Use

Cart.fun is explicitly designed to support autonomous, machine-to-machine (M2M) commerce. The following terms govern programmatic access:

  • Agent authorization: Any AI agent, bot, or automated system interacting with the Services does so under the authority and responsibility of the human operator who deployed it. The operator is bound by these Terms on behalf of all systems they control.
  • API keys: Store owners may issue API keys (prefixed cartfun_) scoped to specific capabilities (read, orders, webhooks, admin). Each key is tied to its issuing wallet. Keys must not be shared, published, or transferred.
  • ERC-8004 agent cards: Each store exposes a machine-readable agent card at /api/v1/stores/{chain}/{id}/agent describing its catalog, payment token, and checkout contract. Reading an agent card does not require authentication and implies no agreement beyond these Terms.
  • Rate limits: Programmatic callers must honor rate-limit responses (HTTP 429 and Retry-After headers). Circumventing rate limits by rotating wallets, IP addresses, or API keys is prohibited.
  • Webhook delivery: Operators receiving webhooks must verify the HMAC-SHA256 signature on every delivery before acting on the payload. Cart.fun is not liable for actions taken on unverified webhook data.
  • No guaranteed uptime: The API and UI may be unavailable without notice. Smart contracts remain accessible directly on-chain regardless of API status.

04Checkout, Payments, and Receipt NFTs

The checkout flow — whether initiated by a human or an autonomous agent — is governed by the following terms:

  • Quotes: Order quotes are cryptographically signed by the store and are valid for a limited window (typically 10 minutes) for one specific buyer wallet. Quotes must not be reused, resold, or shared.
  • On-chain finality: Once a checkout transaction is confirmed on-chain, it is final. Cart.fun cannot reverse, refund, or modify any on-chain transaction. Any refund or void is at the sole discretion of the individual store operator, not Cart.fun.
  • Service fee: Each checkout may include a protocol service fee added to the item price. The fee is disclosed in the quote and visible in the checkout contract call.
  • Receipt NFTs: A receipt NFT minted on successful checkout is permanent on-chain proof of purchase. The NFT is non-fungible, non-transferable except as permitted by the minting contract, and does not represent financial value.
  • Stablecoins only: Payments are accepted exclusively in supported stablecoins (e.g., USDC) on supported networks. Cart.fun does not accept fiat currency or hold funds in custody.

05Store Operators

If you deploy a store on Cart.fun, you additionally agree that:

  • You are solely responsible for the legality, accuracy, and fulfillment of all products and services listed in your store.
  • You will not list products that are illegal, fraudulent, or that violate third-party rights.
  • You will not use the merchant API or webhook system to collect data beyond what is necessary to fulfill orders.
  • You are responsible for any taxes, duties, or regulatory obligations arising from sales made through your store.
  • Cart.fun does not act as a marketplace intermediary, payment processor, or escrow agent. All settlement occurs directly on-chain between buyer and store wallets.
  • Cart.fun reserves the right to delist any store that violates these Terms or that we reasonably believe poses legal or reputational risk, without notice or liability.

06User Representations

By using the Services — directly or through any system you control — you represent and warrant that:

  • You are acting on your own behalf and not on behalf of any U.S. person.
  • You have the legal right to spend any digital assets committed to the protocol.
  • You understand the technical and financial risks of interacting with smart contracts and decentralized protocols.
  • You have independently assessed the legal status of on-chain commerce in your jurisdiction and have determined it is lawful for you to participate.
  • Any agent or automated system you deploy has been configured to comply with these Terms.
  • You will not use the Services for money laundering, sanctions evasion, wash sales, or any other illegal purpose.

07Prohibited Activities

The following activities are expressly prohibited, whether conducted by a human user or any software system:

  • Exploiting, attacking, or stress-testing the smart contracts or API infrastructure.
  • Circumventing quote validity, buyer-lock, or signature checks in the checkout contract.
  • Using the Services while being or acting on behalf of a U.S. person.
  • Bypassing geographic restrictions via VPN, proxy, or any other technical means.
  • Publishing, selling, or sharing API keys issued under your account.
  • Deploying bots or agents that impersonate human users in contexts where agent identity matters.
  • Engaging in coordinated activity designed to manipulate store ratings, order counts, or platform metrics.
  • Scraping the API beyond the documented public endpoints without prior written consent.
  • Introducing malicious code, payloads, or denial-of-service attempts targeting the platform or its users.

08Intellectual Property

The Cart.fun smart contracts are deployed on public, permissionless blockchains and accessible to anyone. The API specification, agent skill files, ERC-8004 schemas, and UI are the work of the protocol operator.

Machine-readable artifacts (OpenAPI spec, llms.txt, skill.md) are provided specifically for programmatic consumption and integration. You may use them to build compatible tools and agents, subject to the restriction that you may not misrepresent your tool as an official Cart.fun product or imply endorsement.

The "Cart.fun" name and associated marks are not formally registered trademarks but may not be used in any way that implies official affiliation or endorsement.

09Third-Party Services

The Services integrate with third-party infrastructure including RPC providers, blockchain networks (Base, Arc, Robinhood Chain), IPFS pinning services, indexers, and wallet connection libraries. Cart.fun is not responsible for the availability, accuracy, or conduct of any third-party service.

On-chain data is sourced from public blockchain networks. We make no warranty regarding the accuracy or completeness of any on-chain state reflected in the API or UI.

10Privacy

Our data practices are described in our Privacy Policy, which is incorporated into these Terms by reference. Programmatic callers should note that all on-chain interactions — including wallet addresses, order data, and receipt NFT metadata — are permanently public and cannot be deleted by Cart.fun or anyone else.

11Modifications and Availability

We reserve the right to modify, suspend, or discontinue the API, UI, or any other off-chain component at any time without notice. Breaking changes to the API will be communicated via the changelog in llms-full.txt where operationally feasible, but are not guaranteed to be announced in advance.

The smart contracts, once deployed, cannot be modified by Cart.fun. Checkout contracts and receipt contracts are immutable after deployment.

12Disclaimer of Warranties

THE SERVICES — INCLUDING THE API, SMART CONTRACTS, AGENT INFRASTRUCTURE, AND UI — ARE PROVIDED ON AN "AS-IS" AND "AS-AVAILABLE" BASIS. TO THE FULLEST EXTENT PERMITTED BY APPLICABLE LAW, WE DISCLAIM ALL WARRANTIES, EXPRESS OR IMPLIED.

  • We make no warranty that smart contracts are free of bugs, vulnerabilities, or exploits.
  • We make no warranty that the API will be available, stable, or backward-compatible.
  • We make no warranty that receipt NFT metadata will remain accessible on any given IPFS gateway.
  • We make no warranty that agent cards, skill files, or OpenAPI specs will remain current or complete.

13Limitation of Liability

TO THE FULLEST EXTENT PERMITTED BY APPLICABLE LAW, IN NO EVENT SHALL THE PROTOCOL OPERATOR BE LIABLE FOR ANY DIRECT, INDIRECT, CONSEQUENTIAL, EXEMPLARY, INCIDENTAL, SPECIAL, OR PUNITIVE DAMAGES ARISING FROM YOUR USE OF THE SERVICES — INCLUDING LOSSES CAUSED BY AUTOMATED OR AGENTIC SYSTEMS ACTING UNDER YOUR CONTROL.

This includes but is not limited to: lost funds, failed orders, missed quotes, API downtime, incorrect webhook payloads, smart contract exploits, or actions taken by AI agents based on data returned by the Services.

Certain jurisdictions do not allow the exclusion or limitation of certain damages. If these laws apply to you, some or all of the above limitations may not apply.

14Indemnification

You agree to indemnify, defend, and hold harmless the protocol operator from and against any loss, damage, liability, claim, or demand — including reasonable costs — arising from: (1) your use of the Services; (2) any automated system or AI agent operating under your API keys or wallet; (3) products or services listed in your store; (4) your breach of these Terms; (5) your violation of any applicable law or third-party rights.

15Smart Contract and Blockchain Risk

By using the Services, you expressly acknowledge these risks:

  • Immutability: Checkout contracts cannot be modified after deployment. There is no recourse for erroneous transactions initiated by you or any system under your control.
  • Key loss: Loss of the private key controlling your wallet means permanent, irrecoverable loss of any assets and receipt NFTs held there.
  • API key compromise: A leaked or stolen API key may allow unauthorized orders, catalog changes, or store management actions. Cart.fun cannot reverse on-chain transactions resulting from compromised keys.
  • Agent errors: AI agents acting autonomously may misinterpret API responses, execute unintended orders, or exhaust wallet balances. You are solely responsible for the behavior of any agent you deploy.
  • Network risk: Gas fees, network congestion, or RPC outages may cause transaction failures or delays.
  • Regulatory risk: The legal status of on-chain commerce, stablecoin payments, and NFT receipts varies by jurisdiction and may change. You are solely responsible for compliance.

16Governing Law and Dispute Resolution

Cart.fun has no registered legal entity and no domicile jurisdiction. These Terms are not governed by the law of any specific state or country. To the extent any law applies, it is the law of the jurisdiction most closely connected to the subject matter of any dispute, excluding U.S. law.

  • Informal resolution: Before initiating any formal proceeding, contact us at legal@cart.fun and allow at least 30 days for good-faith resolution.
  • No class actions: You waive any right to participate in a class-action lawsuit or class-wide arbitration against the protocol operator.

The United Nations Convention on Contracts for the International Sale of Goods does not apply.

17Miscellaneous

  • Entire agreement: These Terms and the Privacy Policy constitute the entire agreement between you and the protocol operator regarding the Services.
  • Severability: If any provision is found unlawful or unenforceable, it is severed and the remainder continues in full force.
  • No waiver: Failure to enforce any provision is not a waiver of that provision.
  • No partnership: Nothing in these Terms creates a partnership, employment, agency, or joint venture.
  • Assignment: We may transfer our rights and obligations without restriction. You may not assign yours without prior written consent.

18Contact

For questions or concerns regarding these Terms:

Cart.fun (unincorporated protocol)

legal@cart.fun

Response times are best-effort. We are a small team.

← Back to Cart.funTermsPrivacy

Cart.fun · legal[@]cart.fun