Claim an AgentLedger workspace. Pays once; returns a workspace_id and a workspace_key (shown once) bound to the paying wallet.