Asset allowlisting
Each environment needs an allowlist keyed by network plus canonical asset identity. For classic Stellar assets, identity includes code and issuer. For token contracts, it includes the verified contract address and the underlying asset relationship. Symbols alone are never sufficient. Oynk must validate:- The configured Stellar network/passphrase
- Asset code, issuer, or token contract identity
- Decimal/scalar conversion and exact integer amount
- Trustline or authorization prerequisites
- Issuer controls such as authorization or clawback where applicable
- Recipient address and any contract-specific authorization requirements