AirGap by Papers AG - Turn your spare smartphone into a cold wallet!

Proposal Brief

We are seeking $75,000 to bring native TRON support to AirGap, while building the ecosystem’s first agentic payment infrastructure for a true cold wallet. AirGap is one of the few wallets that keeps signing keys permanently offline, and our approach extends this security model to AI agents without compromising user custody.

This will be the first agentic payment implementation for a true cold wallet, establishing secure infrastructure for AI-driven commerce, recurring payments, and autonomous financial agents. As AI rapidly becomes a core part of the Web3 experience, this project lays the foundation for secure, permissioned automation on TRON without sacrificing the security principles that cold wallets are built on.

Basic Information

Project Name: AirGap

Project Track: infra-security

Team Name: Papers AG

Team Members: 20

Social Info

Telegram: Telegram: Contact @ash_eth1

X (Twitter): @AirGap_it

Discord: AirGap

Website: https://airgap.it


Project Overview

AirGap is a self-custody open-source cold wallet that transforms any spare smartphone into an air-gapped cold wallet, providing maximum security without the need for dedicated hardware wallets. It consists of two applications:

  • AirGap Vault (offline) – Stores private keys completely offline and signs transactions securely via QR codes, preventing any exposure to online threats.

  • AirGap Wallet (online) – Manages balances, initiates transactions, and interacts with dApps, ensuring a seamless user experience.

Project Goal

Integrate native TRON support into AirGap Wallet and Vault while introducing secure agentic payments through TRON’s native permission system. This enables users to safely delegate on-chain actions to AI agents without ever exposing or moving their private keys online.

Unique Value Proposition:

We are building first truly secure AI agent architecture for TRON wallets — AI agents can execute transactions without users surrendering custody of their private keys.

Built on TRON’s native permission model it will uses Active Permissions instead of custom smart contracts, making delegation transparent, auditable, and protocol-native.

Why AirGap is best positioned to build this agentic payment infrastructure?

1. Hardware Wallet Accessibility

Problem:Devices like Ledger or Trezor are hard to source in many regions, and prone to supply chain risks.

AirGap’s Solution:Converts any spare smartphone into a secure cold wallet — no proprietary hardware or shipment required .

2. Online Wallet Vulnerabiliti es

Problem:Hot wallets (extensions, mobile apps) expose private keys to malware and phishing on connected devic es.

AirGap’s Solution:Uses a two-device model — Vault (offline) securely holds keys; Wallet (online) manages transactions. Keys never touch the inter net.

3. Weak Entropy & PRNG At tacks

Problem:Most wallets rely on system-generated entropy that may be predic table.

AirGap’s Solution:Adds real-world randomness through camera, mic, gyroscope, touch — plus dice roll and coin flip options — to protect against PRNG vulnerabi lities.

4. Closed-Source Hardware Lim itations

Problem:Many hardware wallets are closed-source, limiting auditability a nd trust.

AirGap’s Solution:Fully open-source and reproducible — users can audit the code and build fr om source.

5. Poor Key Management Flexibility

Problem:Limited support for advanced key derivation and bac kup options.

AirGap’s Solution:Supports BIP-39 Passphrase, BIP-85 see d derivations

6. Lack of Multi-Accou nt Arrangement

Problem:Most wallets are not optimized for users managing multiple accounts across chains.

AirGap’s Solution:Allows users to create and manage multiple accounts with ease, offering structured organization and control in one s ecure interface.

Additional Security Features

  • Totally Air-gapped Security – AirGap Vault operates without Bluetooth, USB cables, Wi-Fi, or NFC, making it 100% offline, eliminating any potential attack vector from connected devices.

  • Fully open source & free to use: Anyone can audit, contribute to, or fork AirGap - ensuring transparency, trust, and no vendor lock-in.

  • Globally accessible: No shipping, customs, or availability issues anyone with a spare smartphone, anywhere in the world, can set up a secure cold wallet instantly.

  • True Randomness for Seed Generation – Unlike traditional wallets that rely on a device’s RNG (which can be manipulated), AirGap uses device sensors (gyro,touch,mic,camera) and supports manual methods like dice roll and coin flip entropy to generate seed phrases, ensuring verifiable, human-generated randomness for maximum security.

  • Advanced Security features - AirGap includes BIP-39 passphrase protection, BIP-85 deterministic seed derivation, and social recovery, allowing users to add extra layers of security and flexibility to their wallets.

Project Demo: https://www.youtube.com/watch?v=OaYiXsD2sQ8


Expected Completion Date: Project is already LIVE.

Current Progress (%): AirGap is already live and has established itself as a highly secure solution for self-custody. Building on this strong security foundation, we now aim to expand the wallet-side experience by introducing new features that significantly enhance usability and overall UX. We’ve laid out the roadmap for full TRON integration and the rollout of the agentic layer.

Download Links

AirGap Wallet

:mobile_phone: iOS — App Store

:mobile_phone: Android — Google Play (GitHub APK)

AirGap Vault

:mobile_phone: iOS — App Store

:mobile_phone: Android — Google Play (GitHub APK)


Technical & Governance Details

Step by Step guide: How to setup AirGap | AirGap Support

Technical Details

Core functionality

airgap-coin-lib— foundational open-source library: A modular, multi-protocol JS library that handles:

  • Transaction building: Construct raw transactions, inputs, outputs, memos, fees.

  • Cryptographic signing logic: Abstracted across multiple blockchains.

  • Broadcasting: Push signed transactions to blockchain nodes via RPC or HTTP.

Any chain integration begins here, making it portable, reusable, and audit-friendly.

Two-app modular architecture for true air-gapping -

AirGap Vault: Runs on an entirely offline device. Stores private keys, generates secure wallets, and signs transactions using only QR codes — no Bluetooth, USB, or NFC.

AirGap Wallet: Runs on an internet-connected device. Used to create transactions, scan signatures from Vault, broadcast transactions, and interact with dApps.

Together, they ensure private keys never touch an online device, achieving a fully air-gapped flow.

How is the Project Governed?

AirGap is an open-source project, allowing anyone to review, contribute, and improve the codebase. It is currently maintained by Papers AG, ensuring consistent development and high security standards. The project is self-sustaining and relies on ecosystem grants to support new integrations and feature expansion. Over time, it has benefited from contributions by a wide range of developers.


Funding & Business Model

Revenue Model: AirGap is a lean, self-sustaining project with funding secured through previous grants from leading ecosystems such as Polkadot, ICP, Optimism,Rootstock, Tezos, Cosmos, and Stellar. In addition to grant support, AirGap receives community donations and generates revenue through the AirGap Shop, which offers security-focused products like metal backup plates.

Interested in TRON Having a Stake?: No

Preferred Collaboration Method: We propose starting with a basic TRON integration into the AirGap solution to ensure secure and seamless support. Following this, we are open to collaborating with TRON DAO and ecosystem partners to explore and implement additional features on the AirGap wallet that enhance user experience and ecosystem utility.


Ecosystem Impact

Benefits to the TRON Ecosystem

For Users

  • Access TRON from a secure, open-source cold wallet.
  • Use AI agents to automate payments without exposing private keys.
  • Stay in full control with on-chain permission management and one-click revocation.
  • View all agent actions through a transparent on-chain activity log.

For Builders

  • Build AI-powered applications on top of secure wallet infrastructure.
  • Integrate using the Open Wallet Standard (OWS).
  • Enable recurring payments, subscriptions, merchant payments, and autonomous commerce without managing user keys.
  • Reduce security overhead by relying on TRON’s native permission model.

Partnerships: AirGap has received grants from leading ecosystems such as Polkadot, ICP, Optimism, Cosmos, Coreum, Stellar, Aeternity, Tezos, Rootstock, Kusama, Moonbeam, Moonriver, Astar, and Groestlecoin.

Time on TRON: Yet to launch on TRON


Project Milestones

Milestone 1: TRON airgap-coinlib Integration ($10,000)

airGap-coin-lib is the core open-source library that powers the entire AirGap ecosystem.

It acts as the engine that handles transaction creation, signing, and broadcasting for different blockchains. Whenever a new chain is integrated into CoinLib, it automatically becomes compatible with both AirGap Vault (offline cold wallet) and AirGap Wallet (online app).

Because it’s fully open source, third parties can also use coin-lib to build their own wallets or tools for specific chains — without starting from scratch.

Timeline: Weeks 1–3 ru ntime

Description:

  • Integrate TRON into AirGap’s open-source airgap-coin-lib, which handles transaction construction, signing logic, and broadcasting.

  • Testing of the airgap-coin-lib integration

Milestone 2: Vault Integration ($5,000)

Timeline : Weeks 3-4 runtime

Description:

  • Enable TRON key storage and offline signing via AirGap Vault

  • Ensure reproducible builds and compatibility with QR-based workflows

  • Testing of the AirGap Vault integration

Success Metrics:

  • Offline signing of TRON transactions via Vault

  • Private keys never exposed to internet-connected device.

  • Documentation of cold storage setup for TRON

Milestone 3: Wallet Integration & Token Support ($10,000 )

Timeline: Weeks 4–6 runtime

Description:

  • Add support for TRON in AirGap Wallet

  • Add top 10 TRON tokens by market cap for portfolio view

  • Integrate Reown (formerly known as WalletConnect) support

  • Testing of the Airgap Wallet integration

  • Full integration tests of airgap-coin-lib, Airgap Wallet and vault

  • Deployment and Publishing in both app stores

Milestone 4: Agentic Integration (Requested Add-on) ($50,000)*

Overview

This milestone extends AirGap’s TRON integration with a native agentic layer — letting users delegate on-chain actions to autonomous agents while preserving AirGap’s core security guarantee: no signing key ever lives on an online device.

Rather than placing an agent key inside the Vault (which would reduce AirGap to a hot wallet with a permission screen), this design uses TRON’s built-in account permission model. The agent operates its own key on its own infrastructure, and the user grants it a scoped Active permission directly on-chain.

The Vault is only involved three times: to grant the permission, to modify scope if needed, and to revoke it. Everything the agent does in between is independent, on-chain, and auditable.

Deliverables

  • OWS Implementation — Full implementation of the Open Wallet Standard agent-facing protocol. TRON is a founding network on OWS, making it the appropriate standard to build against for longevity and ecosystem compatibility.

  • Permission Console — A UI that exposes TRON’s full Active permission model (weights, thresholds, per-operation scoping), not just simplified cases. Users can define exactly what an agent key is and isn’t allowed to do at the protocol level.

  • Vault Grant & Revoke Flow — QR-based signing flows for adding and removing agent keys as Active permissions, with UX designed to make scope unambiguous at the moment of signing.

  • Chain-Event Audit View — A read-only log inside the Wallet that decodes agent activity from on-chain events into human-readable entries. AirGap does not hold or co-sign agent transactions; this view is observational only.

  • Agent-Facing Permission Request Channel — A defined channel through which agents can request permission grants or scope changes, routed to the user for Vault-side approval.

  • Security Review — End-to-end security review of the full agentic flow.

Design Boundaries

AirGap acts as a key and permission manager in this architecture — not the agent runtime. The agent operator is responsible for their own key and infrastructure. TRON’s native Active permissions handle operation-level scoping cleanly. Richer policy enforcement (per-tx value caps, daily spend limits, time-bounded sessions) requires smart account contracts; the TRON contract ecosystem for this is still early, so that enforcement layer is intentionally left as a future plug-in point. The OWS layer is structured to accommodate it without requiring changes to the wallet side when standards mature.

Note: If there are specific commerce flows you want this to land for first (recurring payments, merchant-scoped spend, marketplace agents, whatever else) let us know and we’ll build the permission templates around those rather than guess.

Total Budget Requested - $75,000

Note: AirGap will provide full post-integration support for two years, including maintenance, community engagement, and prompt bug fixes to ensure the integration remains robust and up to date.

Project in 5 Years: Our long-term vision is for AirGap to evolve into a fully self-sustaining, open-source cold wallet solution maintained and continuously improved by a global community of contributors.

3 Likes

Hi @ashish , congrats for your hard work over the years on providing secure, convenient and self custodial solutions for web3 users!

Im wondering if there is any plans on exploring new features and ecosystem integrations for agentic-wallet semi-automated flows, specially for agentic commerce use cases, where users might not rely on a specific wallet UI but still need secure ways to sign transactions like your Airgap vault does.

Some references worth checking include:

2 Likes

Hey Simbad, thanks, good question. Apologies for not getting back to you earlier.

Quick yes: this is something we want to support on TRON. But probably not in the shape most agent-wallet projects are going, because there’s one thing about AirGap we can’t move on.

The whole reason people use us is the two-device split. No signing key on the online device, ever. The moment we put an agent key on the Wallet side so it can sign on its own, we’re a hot wallet with a fancy permission screen, and the trust story is gone. So that route is out for us.

What works instead, on TRON specifically: the native account model already gives you most of what you need. TRON accounts have Owner and Active permissions with weights, thresholds and per-operation scoping built into the protocol. So the agent runs its own key on its own infra, and the user grants that key a scoped Active permission. The agent then operates within those on-chain limits on its own, and the Vault is never in the loop for individual agent txs.

The user touches the Vault three times in total:

- once to grant the permission (QR scan, signs the tx that adds the agent key as an Active permission) - once to change it later if they want to adjust scope

- once to revoke (QR scan, signs the tx that removes the permission)

In between, the Wallet just shows a log of what the agent has actually done on-chain. Read-only on our side.

For the agent-facing protocol we’d implement OWS. TRON is a founding network there, it’s purpose-built for agent flows, and it’s broadly backed, so we’re not picking a niche standard that could die. The two repos you linked both fit cleanly into this picture, and they already cover TRON.

One thing worth being upfront about: native Active permissions handle “this key can call these contracts with these operations.” They don’t handle richer stuff like per-tx value caps, daily spend limits or time-bounded sessions. That kind of policy normally lives in a smart account contract, but the contract ecosystem for that on TRON is still early. We’d rather wait for the right contract to become standard than ship our own and be on the hook for it. The OWS layer is set up so a contract-based enforcement layer can plug in later without redoing the wallet side.

Also worth saying clearly: in this picture AirGap is a key and permission manager, not the agent runtime. We don’t hold the agent’s key, and we don’t enforce anything past what TRON’s permission system enforces. The agent operator is responsible for their own key. We’ll have opinions about how that should be done, but it sits outside our trust boundary, and we think that’s where the line should be.

On scope: the base TRON integration above is $25k (coin-lib, Vault, Wallet, top tokens, Reown). The agentic layer is a bigger lift than it looks from the outside, so we’d put it at $50k on top of that, for $75k all in. Roughly it covers: OWS implementation against a spec that’s still moving and needs careful handling, a permission console that can express the full Active permission model rather than just the simple cases, a chain-event audit view that decodes agent activity into something readable, the Vault-side grant and revoke flow with UX that makes scope unambiguous at signing time, an agent-facing channel for permission requests, and security review of the end-to-end flow. Two years of post-integration support carries over to this layer too.

If there are specific commerce flows you want this to land for first (recurring payments, merchant-scoped spend, marketplace agents, whatever else) let us know and we’ll build the permission templates around those rather than guess.

2 Likes

@SimbadMarino Hey there! any feedback for my previous message?

hi @ashish , sorry for the late reply, would you please add these updates to the proposal in your original TBL post so the team can take another look and its included in the next review iteration.

Thank you :slight_smile:

1 Like

Sweet! We updated the proposal and added a 4th Milestone entirely focused on the Agentic elements.

Looking forward to building on TRON.

1 Like

we will take a look, thanks!

1 Like

Hi,

We’ve updated the proposal with more details around the agentic payments integration and why AirGap is the right wallet to build it. The proposal now better explains how we can enable AI-powered payments without compromising the security of a true cold wallet.

We believe this makes the proposal much stronger and hope we get the opportunity to build this together.