PennyMuse / OPERATING NOTES / V1.0

The little details.
All accounted for.

What Penny does, where the money comes from, and what needs to happen before a real payday.

You are exploring a working simulation. The interface, allocation rules, receipts and local saving work. Agents, earnings and distributions are samples. This version can connect a browser wallet address, but does not run paid AI tasks or execute investments.

01 / A payday for your agents

PennyMuse is a pay office for people who own revenue-generating agents. The proposed live flow is simple: recognize paid work, subtract operating costs, allocate a chosen share of available earnings to supported tokenized stocks, and record every movement.

The remaining earnings stay available. Penny is the companion that explains the process and keeps the records readable. She does not promise trading profits or choose investments on your behalf.

FeatureThis version
Agent earnings and operating costsSample data with working accounting
Stock selection and allocation percentageInteractive, saved locally
Cash distribution reinvestmentWorking simulation
Receipt history and CSV exportWorking, saved locally
Authenticated revenue webhookImplemented server endpoint; requires secrets and durable storage
Browser walletReal address connection, no spending permission
Agent setupLocal sample association by wallet address
Live agent tasks and stock ordersNot connected

02 / Your first sample payday

  1. Open the workspace. Your sample account starts with $128.40 in available net earnings, plus an illustrative opening portfolio of $7,148.55 across seven stocks.
  2. Choose the percentage to allocate. The default is 50%.
  3. Select one or more tokenized stocks. The allocation is equally divided between your selections.
  4. Click Run a sample payday. The pending balance is consumed once and a numbered receipt is created.
  5. Open Agents and run a sample task to create another earnings event.
  6. Use the opening sample portfolio or a new nonzero allocation to simulate a cash distribution to explore reinvestment.
  7. Review receipts and export the ledger as CSV.

Agent tasks are deterministic demonstrations. No model runs or external fees are incurred. Pausing an agent disables its sample task button.

03 / Where every cent goes

Available earnings = collected revenue minus operating costs. Operating costs are already deducted from the opening $128.40. The sample task cards show the revenue and cost of each new example.

Available net earnings        $128.40
Stock allocation rule             50%
To tokenized stocks            $64.20
Kept available                 $64.20

Three selected stocks:
NVDA allocation                $21.40
AAPL allocation                $21.40
MSFT allocation                $21.40

All arithmetic uses integer cents. The earnings allocation rounds down to the nearest cent. If a basket cannot be split evenly, the remaining cents go to selected stocks in selection order. The sum of stock allocations and the reserve always equals the pending cash consumed.

Setting the allocation to 0% keeps all new agent earnings available. Setting it to 100% allocates all net earnings. An enabled distribution reinvestment rule is separate and can still allocate distributions when the earnings rule is 0%.

If no stocks are selected, the payday button is disabled. After a payday, the pending balances become zero. Running the same payday again cannot allocate the same funds twice.

The illustrative opening ledger

The equity register starts with seven fictional allocations: TSLA $2,048.75, NVDA $1,248.60, AAPL $864.20, MSFT $1,086.40, GOOGL $642.80, AMZN $736.50 and META $521.30. Each has a matching sample receipt, numbered PD-1001 through PD-1007, and an equal amount kept available under a 50% allocation rule. These are demonstration records, not platform volume, user adoption or actual investments.

This opening history is added once to existing sample accounts without replacing their preferences or prior activity. Existing six-stock sample accounts receive only the new Tesla opening record. Tesla is featured visually, not recommended as an investment; it is included in the default basket for new or reset sample accounts. New sample paydays increase the same stock totals. Reset restores the opening sample ledger.

What portfolio totals mean

The sample displays cumulative dollar allocations at cost. These are not market values, share quantities, executed orders or investment performance. It does not use live prices. The small daily chart is illustrative, not a chart of your activity.

What a live order would add

A production execution provider must supply an actual quote, eligible token contract, fees, execution price, token quantity and settlement reference. A price lookup alone is not an executable order. Minimum order sizes, slippage, fees and failed orders must be accounted for before a receipt can be marked settled.

04 / Make the loop explicit

There are three different things people often call a gain:

  • Agent earnings: money received for paid work, after costs.
  • Cash distributions: an amount actually received under the rights and rules of an eligible asset.
  • Unrealized price gains: a change in market value. These are not cash and cannot be reinvested without a sale.

PennyMuse’s reinvestment switch only applies to cash distributions. When enabled, pending distributions are fully added to the next stock allocation. When disabled, they are transferred to the available reserve at the next payday.

New net agent earnings          $10.00
Earnings allocation                50%
Eligible cash distribution       $2.15
Reinvestment enabled              yes

To selected stocks               $7.15
Kept available                   $5.00

The $2.15 distribution button is a fixed illustrative test event. It does not represent a dividend rate, an APY, a promised payment or a distribution from any specific company. Some tokenized instruments adjust their token economics instead of paying cash. Live support must follow the actual issuer’s terms.

This version does not lend stocks, borrow against assets, add leverage or route capital into a yield vault. Those are separate products with separate risks and integrations.

05 / A companion with good habits

Penny is a cream plush companion with a blue accountant’s visor, a payroll slip and a small coin. Her personality is warm, orderly and quietly ambitious. She uses short, plain sentences.

Open Meet Penny to choose a name and a tone: thoughtful, cheerful or precise. These preferences stay in your browser. Her messages are curated interface copy, not responses from a connected AI model. Penny has a subtle floating animation and reacts to messages and sample paydays. Her original artwork and proportions remain unchanged. Use Pause above her portrait to stop motion. Reduced-motion preferences are respected by default.

The character artwork is based on the supplied plush reference. PennyMuse is an independent concept and claims no relationship with Meta, Muse, Robinhood or the displayed companies. Company marks identify the proposed underlying assets; they do not imply endorsement.

Meta, Muse and PennyMuse

Meta describes Muse as a personal AI agent that can take actions across the web and connected apps and work through multi-step tasks. That shift toward agents doing work is the context for PennyMuse’s pay-office concept.

PennyMuse explores a separate idea: allocating a share of verified, paid agent earnings to eligible tokenized stocks. META appears in the sample asset universe alongside the other companies. You can select it in your allocation settings; its displayed amount comes from the same simulated ledger as every other stock.

These are three distinct things: Muse is Meta’s agent, META identifies the company in the asset register, and Penny is PennyMuse’s own visual companion. PennyMuse is independent, is not endorsed by Meta, and has no active connection to Muse. Mentioning an agent does not mean it generates revenue or is integrated here.

Connect your wallet and set up an agent

Choose Connect your wallet, select a detected Ethereum-compatible browser wallet and approve its account-access request. PennyMuse reads your public address and network. It does not request a signature, token approval, transaction, private key or recovery phrase. This is an address connection, not verified sign-in.

Wallet discovery uses EIP-6963, with a legacy injected-provider fallback. Account and network updates use EIP-1193. Connect again after reloading. Changing the selected account updates the visible address and its saved sample setup.

On mobile, open this URL in a compatible wallet app’s built-in browser. Ordinary Safari and Chrome mobile tabs may not expose a wallet. QR pairing and WalletConnect are not configured. On desktop, install a compatible wallet extension if none is detected.

Then choose Connect your agent and save a sample agent. This records only the chosen sample agent and date locally for your address. It does not integrate a live agent, create a revenue webhook or verify ownership of an external agent. The existing sample ledger remains shared on the device, not imported from your wallet.

Disconnect from site clears the in-page session. Revoke PennyMuse’s account access in your wallet settings if you also want to remove the wallet’s saved permission. You can remove the local agent setup separately. No wallet balance is fetched and no account is sent to PennyMuse’s server.

06 / What connects to what

Revenue source

A revenue provider sends a signed event after an agent’s revenue has been collected and costs are known. A task completion alone is not proof that a customer has paid. The server endpoint validates the payload, checks the signature and timestamp, and stores unique events in a durable ledger.

Money custody

The revenue ledger records money; it does not hold money. Before live operation, the owner needs a supported custody or wallet flow, explicit user permissions and a reconciled funding source. No seed phrase or private key belongs in this interface.

Stock execution

A provider must confirm which stock tokens, jurisdictions, networks and account types it supports. A production implementation must enforce those constraints, show quotes and obtain the required user authorization. The order endpoint currently fails closed and moves no funds.

Source of distributions

Only verified, actually credited cash distributions should be ingested in a live reinvestment ledger. Token balance multipliers and other corporate actions need separate accounting. The prepared revenue endpoint does not ingest real distributions.

References

Robinhood publishes read-only Stock Token APIs and chain documentation. These are integration research sources, not a claim that PennyMuse has a commercial connection or trading permission.

07 / Prepared revenue API

The repository includes a Vercel-compatible signed revenue endpoint at POST /api/revenue. It is disabled until server secrets and an Upstash-compatible Redis database are configured. It is a single-account integration foundation, not a multi-user financial backend.

{
  "eventId": "evt_example_001",
  "accountId": "your-configured-account",
  "agentId": "brief",
  "currency": "USD",
  "revenueCents": 500,
  "costCents": 100,
  "occurredAt": "2026-09-23T12:00:00.000Z"
}

Required headers: x-payday-timestamp as Unix seconds and x-payday-signature as a hex HMAC-SHA256 over timestamp.raw_body. The signing timestamp must be within five minutes of the server clock. Event IDs are stored without an automatic expiry so retries cannot silently become new revenue later.

An atomic database operation rejects a reused event ID with a different payload, accepts an identical retry without adding funds again, and credits the net amount exactly once. Negative-net events, unsupported currencies and unknown accounts are rejected. Refunds and corrections need a separate reversal workflow before production.

GET /api/account requires a server-issued operator bearer token and returns the staging ledger balance. GET /api/status reports coarse integration readiness without exposing secrets. These server records are intentionally separate from the browser’s sample balance.

See README.md, .env.example and scripts/send-event.mjs in the repository for configuration and a signed test request. Do not paste secrets into the site or commit them.

08 / From preview to production

Required decision or accessWhat it unlocks
A verified agent revenue providerReal paid-work events instead of sample tasks
Durable Redis and webhook secretsAuthenticated, idempotent revenue ingestion
User identity and account ownershipPrivate, separated user ledgers and permissions
A supported custody and execution providerFunding, quotes, eligible assets and authorized orders
Issuer terms and distribution handlingCorrect cash reinvestment and corporate actions
Production reconciliation and operational reviewRefunds, failures, monitoring and accurate settled balances

Before enabling real funds, run end-to-end tests in the chosen provider’s sandbox, validate account and regional eligibility, confirm the applicable product and legal requirements, and reconcile each execution against cash and token movements. Do not relabel simulated counters as live activity.

The current site is safe to evaluate as a product sample. No payment collection, recurring job, live stock order or wallet authorization is active.

09 / Your data

The sample stores your companion preferences, sample balances, selections and receipts in this browser’s local storage. It does not create an account or synchronize across devices. Anyone using the same browser profile can see that sample state.

Export receipts as CSV before resetting if you want to keep them. Reset restores this app’s opening sample ledger and removes your additional sample activity and preferences. Browser storage can be disabled or cleared by your browser; the interface will report when it cannot save.

The site does not request payment information, private keys, wallet seed phrases or personal financial records. Fonts are loaded from Google Fonts; the hosting provider processes normal web requests. Brand images and the plush artwork are served with the site.

If the optional server integration is activated, incoming revenue events live in the configured database and require a separate retention and access policy. Preview reset does not delete server records.

10 / A few good questions

Am I buying actual shares?

No purchases happen in this version. In a live product, the legal and economic rights of tokenized stocks depend on the issuer. A token is not automatically equivalent to direct share ownership.

Does Penny promise a return?

No. Penny applies allocation rules. Asset values can fall, and distributions are not guaranteed. The sample does not forecast performance.

What does connecting a wallet enable?

It shares your public address and network with this page and lets you save a local sample agent setup. It does not authorize spending, execute trades or activate live agent revenue.

Can I change the personality without changing my investments?

Yes. Name and tone only affect presentation. Allocation percentage, asset selections and reinvestment are separate controls.

Does anything run while the page is closed?

No. This version runs sample tasks when you click and stores their results locally. A production schedule needs an authenticated server-side scheduler and execution safeguards.

Are the logos and plush an official partnership?

No. PennyMuse is an independent concept. Company logos label underlying assets, and the character has no claimed affiliation with Meta or Robinhood.

Motion and sample activity

Stock counters start at zero when they first enter the viewport, then settle on the amounts recorded in your local sample ledger. They show allocated cost, not market prices or investment returns.

The accumulation section can play up to six sample task settlements, one every ten seconds while its activity panel is visible and the tab is active. Each cycle deducts the agent's sample operating cost, applies your allocation rules and creates a receipt. Existing pending earnings and distributions are left untouched. Pause or resume with the activity button. Nothing runs after the page is closed.

Reduced motion preferences disable entrance effects and count-up animations, and pause sample playback by default. Penny keeps her separate animation control.

The six-card register shows Nvidia, Apple, Microsoft, Amazon, Meta and Tesla. Alphabet remains available in allocation settings and historical holdings. The register total covers its six cards; the accumulation total includes every holding.