LIVE ORACLE // 18 CHAINS // LLAMA 3.3 70B

XRVOIDSCANNER

AI-powered bytecode risk oracle for EVM smart contracts.
Detect honeypots, rug vectors, and exploit patterns before you sign.

Ethereum · Base · Arbitrum · Polygon · Optimism · BSC · Avalanche · zkSync · Linea · Scroll · Blast · Fantom · Mantle · Celo · Gnosis · Mode · Sonic · Tron

50+ exploit signatures · Llama 3.3 70B · < 4s full analysis · 18 chains · 24h cache

LIVE SCAN FEED
RISKYETH0x7a250d...42/10012s
SAFEETH0x3fC91A...8/10034s
SAFEBASE0x111111...12/1001m
ABORTARB0xC36442...89/1002m
ABORTBSC0x68b346...92/1002m
RISKYPOLY0x2b2e8c...55/1004m
14,291
CONTRACTS SCANNED
across 18 chains
891
HONEYPOTS DETECTED
rugpulls neutralized
18
CHAINS SUPPORTED
EVM + Tron networks
3.8s
AVG RESPONSE TIME
full AI analysis
50+
EXPLOIT PATTERNS
bytecode signatures
28.4K
API CALLS SERVED
programmatic scans
EXCLUSIVE · WORLD-FIRST

MEET NOTAGENT47

The world's first AI built exclusively for smart contract security and DeFi intelligence. Not a general AI. Not a chatbot. A specialist.

LLAMA 3.3 70B

XRVOID ORACLE INTELLIGENCE

Trained on every major smart contract audit — Trail of Bits, OpenZeppelin, Spearbit, Code4rena — and the complete history of DeFi exploits. NOTAGENT47 doesn't just scan bytecode. It thinks like an auditor.

Surgical vulnerability analysis with attack paths
Production-grade Solidity code generation
Live price data + DeFi market intelligence
RAG knowledge base of 30+ exploit entries
8 LIVE TOOLS
CONTRACT SCAN
Full XRVOID oracle deep-scan
LIVE PRICES
CoinGecko real-time market data
RISK SCORE
Instant 0–100 risk verdict
EXPLOIT PATTERNS
14 bytecode signature checks
TOKEN SCREENER
New launch honeypot detection
WHALE TRACKER
Exchange flows & accumulation
LIQUIDATION SCAN
Cascade risk & squeeze levels
CHAIN OSINT
On-chain wallet intelligence
OPEN NOTAGENT47 STUDIO→

PRO & ENTERPRISE access · API key required

POWERED BY
GROQ
Llama 3.3 70B — < 2s inference
ETHERSCAN V2
Unified multi-chain bytecode API
TENDERLY
Transaction simulation engine
SUPABASE
24h analysis result cache
HEIMDALL-RS
EVM bytecode decompiler
4BYTE.DIRECTORY
Function selector resolution

HOW IT WORKS

FIVE STAGES FROM ADDRESS TO VERDICT

01
ENTER ADDRESS
< 1s

Paste any 0x contract address and select the chain. Works with unverified contracts — bytecode analysis doesn't need source code. The Oracle accepts any valid 40-char hex address deployed on any supported EVM network.

02
FETCH BYTECODE
~0.8s

XRVOID Scanner pulls raw EVM bytecode from Etherscan V2 and checks whether the source is verified. If verified, the actual Solidity source is used for deeper pattern matching. A SHA-256 hash of the bytecode is computed for cache keying.

03
PATTERN SCAN
~0.2s

46+ exploit signatures are matched against the bytecode and decompiled output with byte-aligned opcode parsing. PUSH operands are skipped to eliminate false positives from embedded data. Patterns cover MEV vectors, flash loan oracle manipulation, metamorphic contracts, reentrancy, honeypots, and more.

04
AI ANALYSIS
~2s

Llama 3.3 70B reads the decompiled pseudo-Solidity, matched patterns, and up to 15 resolved function selectors to compute a risk score, honeypot probability (0–1), rug pull likelihood (0–1), and a plain-English verdict summary. Groq's inference delivers results in under 2 seconds.

05
VERDICT
~0.1s

Pattern severity weights are summed (CRITICAL=25, HIGH=15, MEDIUM=8, LOW=3) and blended with the AI score. The final 0–100 risk score maps to SAFE (0–30), RISKY (31–65), or ABORT (66–100). Results are cached in Supabase for 24 hours and returned as structured JSON.

CAPABILITIES

EVERY LAYER OF THE SECURITY STACK

BYTECODE ORACLE
CORE ENGINE

Pulls raw EVM bytecode directly from Etherscan V2 across 18 chains. Parses every opcode with byte-aligned disassembly — PUSH data is skipped so false positives are eliminated. Resolves function selectors via 4byte.directory to reconstruct method names from the ABI.

›Etherscan V2 unified API
›Byte-aligned opcode parser
›Function selector resolution
›Source verification check
PATTERN MATCHING
50+ EXPLOIT SIGNATURES

50+ known exploit patterns matched against both raw bytecode and decompiled Solidity output. Detects SELFDESTRUCT, DELEGATECALL, metamorphic contracts, MEV sandwich vectors, flash loan oracle manipulation, reentrancy, honeypot transfer blocks, and more.

›Opcode-level byte alignment
›Metamorphic + CREATE2 patterns
›MEV / sandwich attack vectors
›Flash loan oracle manipulation
AI DEEP SCAN
LLAMA 3.3 70B VIA GROQ

Every contract is sent to Llama 3.3 70B (via Groq's ultra-fast inference) for contextual security analysis. The model reads decompiled source, matched patterns, and function signatures to compute honeypot probability, rug pull likelihood, and write a plain-English verdict.

›Honeypot probability score
›Rug pull likelihood
›Plain-English summary
›Developer audit notes
WALLET RISK SCANNER
NEW — APPROVAL AUDIT

Paste any wallet address and XRVOID audits every open token approval — risk-scoring each spender contract. Surfaces ABORT-level approvals outstanding, unlimited allowances, and gives your wallet a 0–100 risk score. Know your exposure before it's too late.

›Scans last 50 token interactions
›Risk-scores each spender contract
›Flags unlimited approvals
›Wallet-level 0–100 score
LIVE THREAT RADAR
NEW — REAL-TIME FEED

Live feed of contracts being scanned across all chains in real-time. Filter by ABORT/RISKY/SAFE. Every entry links directly to the full scan result. See threats as they emerge — before they make Twitter.

›Live scan feed across all chains
›Filter by verdict type
›Direct links to full results
›Auto-updating, no refresh needed
DIFF SCANNER
NEW — PROXY UPGRADE GUARD

Compare two contract addresses to detect what changed between a proxy upgrade or redeployment. Bytecode similarity score, new threat patterns introduced, resolved threats, and side-by-side decompiled diff. Critical for DAO voters evaluating upgrade proposals.

›Bytecode similarity (Jaccard)
›New vs. resolved threat patterns
›Decompiled diff (added/removed)
›DAO upgrade proposal evaluation
PRE-SIGN SHIELD
CHROME EXTENSION

Manifest V3 extension that wraps window.ethereum via provider proxy injection. Intercepts eth_sendTransaction and eth_signTransaction before they reach MetaMask. Runs Oracle analysis + Tenderly simulation in parallel, then injects a full-screen verdict overlay blocking the tx.

›Wraps window.ethereum
›Parallel Oracle + simulation
›Full-screen ABORT overlay
›Auto-abort on ABORT verdict
MCP SERVER
AI AGENT INTEGRATION

Exposes the Oracle as a Model Context Protocol server at /api/mcp. AI agents (Claude, GPT-4, custom LLMs) can call analyse_contract, get_risk_score, and check_patterns as tools. Requires a PRO or ENTERPRISE API key passed as Bearer token.

›3 MCP tool definitions
›Bearer token auth
›JSON schema validated
›Works with any MCP client
18-CHAIN COVERAGE
EVM + TRON

Ethereum, Base, Arbitrum, Polygon, Optimism, BSC, Avalanche, zkSync, Linea, Scroll, Blast, Fantom, Mantle, Celo, Gnosis, Mode, Sonic, and Tron — all via Etherscan V2's unified API plus native Tron support. Each chain gets byte-accurate bytecode and source verification.

›17 EVM chains via Etherscan V2
›Tron via TronScan API
›Unified authentication
›Chain-aware shareable URLs

EXPLOIT PATTERN LIBRARY

50+ SIGNATURES MATCHED AGAINST EVERY CONTRACT

Each pattern is matched at the EVM opcode level using byte-aligned disassembly. PUSH operands are skipped during iteration to eliminate false positives from embedded data.

HIGH
SELFDESTRUCT
Contract can be destroyed, draining all funds permanently
HIGH
DELEGATECALL
Logic proxied to potentially attacker-controlled address
CRITICAL
HONEYPOT_TRANSFER_BLOCK
Transfer function has hard-coded revert — tokens cannot be sold
HIGH
APPROVAL_DRAIN
Requests max uint256 approval — unlimited spend vector
CRITICAL
BLACKLIST_FREEZE
Owner can blacklist addresses or destroy their token balance
MEDIUM
TX_ORIGIN_AUTH
tx.origin used for auth — phishing attack vulnerable
MEDIUM
HIDDEN_MINT
Owner can mint tokens at will — infinite dilution rug
HIGH
REENTRANCY_RISK
State modified after external call — classic reentrancy
HIGH
EMERGENCY_WITHDRAW
Owner can drain all funds via emergency withdraw function
CRITICAL
METAMORPHIC_CONTRACT
SELFDESTRUCT + CREATE2 — bytecode can be entirely replaced
CRITICAL
ARBITRARY_CALL
External call with user-controlled target/data — arbitrary execution
CRITICAL
FLASHLOAN_PRICE_ORACLE
Flash loan + spot price oracle — high-confidence manipulation vector
CRITICAL
UNINITIALIZED_PROXY
initialize() without guard — anyone can hijack ownership
CRITICAL
INFINITE_APPROVAL_SETTER
Contract programmatically sets infinite approvals to external address
HIGH
UNCHECKED_CALL
Low-level call return value not verified — silent failure
MEDIUM
PROXY_UPGRADE
Logic can be silently replaced post-deploy by owner
MEDIUM
FEE_ON_TRANSFER
Hidden tax on transfers — sell amount differs from expected
HIGH
SANDWICH_VULNERABLE
Zero slippage protection — fully exposed to MEV sandwich attacks
HIGH
SIGNATURE_REPLAY
Signatures without nonce/chainId — replayable across txs or chains
HIGH
PERMIT_PHISHING
ERC-2612 permit() — off-chain signature grants unlimited spend approval
HIGH
PRICE_MANIPULATION
Spot price oracle — manipulable in a single tx via flash loan
HIGH
CALLBACK_REENTRANCY
ERC callback hook invoked before state update — reentrancy via hook
CRITICAL
RUGPULL_LP_DRAIN
Owner can remove all LP funds with no timelock — instant rug
HIGH
HIDDEN_PAUSE
Owner can freeze all contract operations at will
HIGH
CENTRALIZED_UPGRADE
Single EOA controls proxy upgrade with no timelock or multisig
HIGH
MISSING_ACCESS_CONTROL
Sensitive function (mint/withdraw/pause) callable without access check
HIGH
UNCHECKED_ARITHMETIC
Unchecked block or pre-0.8 compiler — integer overflow possible
MEDIUM
TIMESTAMP_DEPENDENCY
block.timestamp controls locks/vesting — validators can skew ±15s
CRITICAL(8)
HIGH(15)
MEDIUM(5)
LOW(0)

BEYOND CONTRACT SCANNING

TWO NEW TOOLS THAT NO OTHER SECURITY PLATFORM OFFERS

WALLET RISK SCANNER

Your Approvals Are Your Attack Surface

Every token approval is a loaded gun pointed at your wallet. XRVOID audits every open approval — risk-scoring each spender contract and surfacing ABORT-level threats you may have forgotten about months ago.

Scans last 50 token interactions
Risk-scores every spender contract
Flags unlimited allowances instantly
One wallet score: 0–100
AUDIT YOUR WALLET
LIVE THREAT RADAR

See Threats Before Anyone Tweets

Live feed of contracts being scanned across all chains in real-time. ABORT verdicts pulse red as they land. Filter by verdict, click any entry for the full analysis. The fastest threat intelligence feed in DeFi.

Real-time scan feed, all 18 chains
Filter by ABORT / RISKY / SAFE
Direct links to full analysis
Auto-updates every few seconds
OPEN RADAR

PRICING

ONE PREVENTED RUG PULL PAYS FOR A YEAR

FREE
$0
10 queries
✓5 scans/hour
✓All 18 chains
✓50+ exploit signatures
✓AI analysis (Llama 3.3 70B)
✓Wallet risk scanner
✓Live threat radar
✓24h result cache
✓Shareable scan URLs
SCAN FOR FREE
◈ MOST POPULAR
PRO
$19/mo
500 queries/mo
✓Unlimited rate
✓All 18 chains
✓API key access
✓Tenderly tx simulation
✓Watchdog alerts (email)
✓Diff scanner (proxy upgrades)
✓Dashboard + usage stats
ENTERPRISE
$79/mo
Unlimited queries
✓Unlimited queries
✓MCP server access
✓Webhook + Telegram alerts
✓Custom pattern library
✓AI audit report export (PDF)
✓SLA support
✓White-label API

HOW TO GET STARTED AFTER PURCHASE

01
COMPLETE CHECKOUT

Pay via Stripe — your key is provisioned instantly.

02
VISIT DASHBOARD

Go to /dashboard, enter your email, and copy your vs_... API key.

03
USE IN STUDIO OR API

Paste the key into Studio or send it as Authorization: Bearer vs_...

All plans include AI analysis · Studio requires PRO or ENTERPRISE · Cancel anytime · Instant activation

FAQ

COMMON QUESTIONS ABOUT THE ORACLE

Q.
Does XRVOID Scanner work on unverified contracts?

Yes — all 14 exploit pattern signatures operate at the EVM opcode level, so raw bytecode is all we need. No source code required. When source is verified on Etherscan, the AI receives deeper context for more nuanced scoring, but every pattern check works regardless of verification status.

Q.
How is the 0–100 risk score calculated?

Severity weights from matched patterns are summed: CRITICAL = 25 pts, HIGH = 15 pts, MEDIUM = 8 pts, LOW = 3 pts. The AI analysis can adjust the final score ±20 points based on contextual review of function selectors and decompiled logic. Score 0–30 → SAFE, 31–65 → RISKY, 66–100 → ABORT.

Q.
What's the difference between RISKY and ABORT?

RISKY (31–65) means suspicious patterns are present — investigate before interacting. ABORT (66–100) means confirmed exploit vectors: SELFDESTRUCT present, honeypot transfer blocking detected, or AI honeypot probability above 0.8. The Chrome extension automatically blocks ABORT transactions before they reach MetaMask.

Q.
How does the Chrome extension intercept transactions?

The Manifest V3 extension injects a provider proxy at window.ethereum that wraps eth_sendTransaction and eth_signTransaction. When you hit 'confirm' in any dApp, the proxy fires before MetaMask receives the call — running Oracle analysis and Tenderly simulation in parallel and rendering a full-screen verdict overlay.

Q.
Which chains are supported?

18 chains: Ethereum, Base, Arbitrum, Polygon, Optimism, BSC, Avalanche, zkSync Era, Linea, Scroll, Blast, Fantom, Mantle, Celo, Gnosis, Mode, Sonic, and Tron. EVM chains use Etherscan V2's unified API endpoint. Tron uses TronScan's native API with bytecode-level pattern analysis.

Q.
Can AI agents and bots use XRVOID Scanner?

Yes. ENTERPRISE plans include MCP server access at /api/mcp. AI agents like Claude or GPT-4 can call analyse_contract, get_risk_score, and check_patterns as structured tools. PRO plans get a standard REST API key (Bearer token) for direct programmatic integration.

INTEGRATE THE ORACLE

One POST request. Full analysis in under 5 seconds.
Works in any language. Returns structured JSON with flags, probabilities, and AI verdict.

curl -X POST https://xrvoid.online/api/analyse \
  -H "Content-Type: application/json" \
  -H "Authorization: Bearer vs_your_api_key" \
  -d '{"address":"0x...","chain":"ethereum"}'

# Response (< 5 seconds):
{
  "verdict": "ABORT",
  "riskScore": 89,
  "verified": false,
  "analysisTimeMs": 3241,
  "honeypotProbability": 0.94,
  "rugProbability": 0.31,
  "flags": [
    { "severity": "CRITICAL", "id": "HONEYPOT_TRANSFER",
      "title": "Honeypot Transfer Block",
      "description": "Transfer reverts for non-owner addresses" },
    { "severity": "HIGH", "id": "SELFDESTRUCT",
      "title": "Self-Destruct Vector",
      "bytecodeOffset": "0x1a4" }
  ],
  "patternsMatched": ["HONEYPOT_TRANSFER", "SELFDESTRUCT"],
  "aiExplanation": "Contract has hard-coded sell restriction...",
  "keyFindings": [
    "Transfer reverts for non-owner",
    "SELFDESTRUCT reachable by deployer",
    "No liquidity lock detected"
  ],
  "auditNotes": "Do not interact. Pattern consistent with honeypot.",
  "cached": false
}