Skip to main content
Cardinal’s commercial model follows the protected transaction lifecycle. The same customer can use one product or combine payment checks, policy controls, settlement and reporting.
This page describes intended charging points. It does not publish a price list, guarantee revenue, or represent an exchange, wallet, custodian or enterprise contract. Pricing, network coverage and production scope are agreed during onboarding.

Revenue streams

Protection API and SafeReceive

A platform can call the Protection API from its trusted backend before it credits an incoming payment, releases a withdrawal or asks a wallet to sign. Commercial plans can combine:
  • a recurring platform subscription;
  • usage measured per completed protection check;
  • agreed volume tiers;
  • premium comprehensive reports;
  • enterprise policy, approval and reporting controls.
The API key must remain server-side. Usage and billing records must be attributable to the correct partner and tenant.

SafeSend fee flow

The SafeSend contract exposes its fee rate and fee recipient. The application reads the current contract configuration and shows the Cardinal fee before wallet approval.
Network gas is separate. The connected wallet pays gas to the blockchain. Cardinal must not describe network gas as company revenue. A cancelled SafeSend returns the transferred amount according to the contract rules. Network gas already spent is not refundable.

Escrow fee flow

The Escrow contract also exposes its fee rate and fee recipient. The application displays the expected fee and seller payout before the buyer approves the agreement.
The current interface states that a dispute resolved in the buyer’s favour refunds the credited amount without a Cardinal settlement fee. Always verify the deployed contract configuration and rules for the selected environment.

Exchange and wallet distribution

An exchange does not need to move custody to Cardinal. Its backend submits the final deposit or withdrawal intent, consumes the ALLOW, REVIEW or BLOCK decision, and records the result with the exchange transaction ID. A wallet or vault can place the same decision before signing. It retains control of keys and signatures while Cardinal supplies the evidence-led decision and protected-settlement options. Possible commercial structures include:
  • enterprise API subscription;
  • usage tiers;
  • embedded or white-labelled platform licence;
  • protected-settlement fees;
  • negotiated partner revenue share.
Do not describe any structure as agreed until both the technical integration and commercial contract are confirmed.

Treasury readiness

The configured contract fee recipient is the technical destination for SafeSend and Escrow fees. Before any production or mainnet launch, Cardinal must approve:
  • the production treasury wallet or multisig;
  • authorised signers and approval quorum;
  • fee-change authority and limits;
  • settlement reconciliation and accounting;
  • key recovery and incident procedures;
  • supported networks, tokens and contract addresses;
  • legal, tax, licensing and jurisdictional review.
Do not use a personal wallet or a demonstration wallet as the production treasury.

What investors can see today

The controlled demonstration can show:
  • SafeReceive ALLOW, REVIEW and BLOCK scenarios;
  • a comprehensive report charging point;
  • a white-labelled business payment request and portal;
  • SafeSend and Escrow fee previews on Arbitrum Sepolia;
  • the Protection API integration point for exchanges and wallets;
  • the technical contract fee-recipient model.
It must not claim unrestricted mainnet settlement, confirmed production provider coverage, signed partner integrations, approved pricing or realised recurring revenue.

Exchange integration

Review the pre-deposit and pre-withdrawal integration pattern.

Wallet integration

Review the pre-signature integration pattern.

SafeSend

Review the current protected-transfer fee path.

Escrow

Review the current settlement-fee path.