XRVOIDSCANNER
AI-powered bytecode risk oracle for EVM smart contracts.
Detect honeypots, rug vectors, and exploit patterns before you sign.
Ethereum · Base · Arbitrum · Polygon · Optimism · BSC · Avalanche · zkSync · Linea · Scroll · Blast · Fantom · Mantle · Celo · Gnosis · Mode · Sonic · Tron
50+ exploit signatures · Llama 3.3 70B · < 4s full analysis · 18 chains · 24h cache
MEET NOTAGENT47
The world's first AI built exclusively for smart contract security and DeFi intelligence. Not a general AI. Not a chatbot. A specialist.
XRVOID ORACLE INTELLIGENCE
Trained on every major smart contract audit — Trail of Bits, OpenZeppelin, Spearbit, Code4rena — and the complete history of DeFi exploits. NOTAGENT47 doesn't just scan bytecode. It thinks like an auditor.
PRO & ENTERPRISE access · API key required
HOW IT WORKS
FIVE STAGES FROM ADDRESS TO VERDICT
Paste any 0x contract address and select the chain. Works with unverified contracts — bytecode analysis doesn't need source code. The Oracle accepts any valid 40-char hex address deployed on any supported EVM network.
XRVOID Scanner pulls raw EVM bytecode from Etherscan V2 and checks whether the source is verified. If verified, the actual Solidity source is used for deeper pattern matching. A SHA-256 hash of the bytecode is computed for cache keying.
46+ exploit signatures are matched against the bytecode and decompiled output with byte-aligned opcode parsing. PUSH operands are skipped to eliminate false positives from embedded data. Patterns cover MEV vectors, flash loan oracle manipulation, metamorphic contracts, reentrancy, honeypots, and more.
Llama 3.3 70B reads the decompiled pseudo-Solidity, matched patterns, and up to 15 resolved function selectors to compute a risk score, honeypot probability (0–1), rug pull likelihood (0–1), and a plain-English verdict summary. Groq's inference delivers results in under 2 seconds.
Pattern severity weights are summed (CRITICAL=25, HIGH=15, MEDIUM=8, LOW=3) and blended with the AI score. The final 0–100 risk score maps to SAFE (0–30), RISKY (31–65), or ABORT (66–100). Results are cached in Supabase for 24 hours and returned as structured JSON.
CAPABILITIES
EVERY LAYER OF THE SECURITY STACK
Pulls raw EVM bytecode directly from Etherscan V2 across 18 chains. Parses every opcode with byte-aligned disassembly — PUSH data is skipped so false positives are eliminated. Resolves function selectors via 4byte.directory to reconstruct method names from the ABI.
50+ known exploit patterns matched against both raw bytecode and decompiled Solidity output. Detects SELFDESTRUCT, DELEGATECALL, metamorphic contracts, MEV sandwich vectors, flash loan oracle manipulation, reentrancy, honeypot transfer blocks, and more.
Every contract is sent to Llama 3.3 70B (via Groq's ultra-fast inference) for contextual security analysis. The model reads decompiled source, matched patterns, and function signatures to compute honeypot probability, rug pull likelihood, and write a plain-English verdict.
Paste any wallet address and XRVOID audits every open token approval — risk-scoring each spender contract. Surfaces ABORT-level approvals outstanding, unlimited allowances, and gives your wallet a 0–100 risk score. Know your exposure before it's too late.
Live feed of contracts being scanned across all chains in real-time. Filter by ABORT/RISKY/SAFE. Every entry links directly to the full scan result. See threats as they emerge — before they make Twitter.
Compare two contract addresses to detect what changed between a proxy upgrade or redeployment. Bytecode similarity score, new threat patterns introduced, resolved threats, and side-by-side decompiled diff. Critical for DAO voters evaluating upgrade proposals.
Manifest V3 extension that wraps window.ethereum via provider proxy injection. Intercepts eth_sendTransaction and eth_signTransaction before they reach MetaMask. Runs Oracle analysis + Tenderly simulation in parallel, then injects a full-screen verdict overlay blocking the tx.
Exposes the Oracle as a Model Context Protocol server at /api/mcp. AI agents (Claude, GPT-4, custom LLMs) can call analyse_contract, get_risk_score, and check_patterns as tools. Requires a PRO or ENTERPRISE API key passed as Bearer token.
Ethereum, Base, Arbitrum, Polygon, Optimism, BSC, Avalanche, zkSync, Linea, Scroll, Blast, Fantom, Mantle, Celo, Gnosis, Mode, Sonic, and Tron — all via Etherscan V2's unified API plus native Tron support. Each chain gets byte-accurate bytecode and source verification.
EXPLOIT PATTERN LIBRARY
50+ SIGNATURES MATCHED AGAINST EVERY CONTRACT
Each pattern is matched at the EVM opcode level using byte-aligned disassembly. PUSH operands are skipped during iteration to eliminate false positives from embedded data.
BEYOND CONTRACT SCANNING
TWO NEW TOOLS THAT NO OTHER SECURITY PLATFORM OFFERS
Your Approvals Are Your Attack Surface
Every token approval is a loaded gun pointed at your wallet. XRVOID audits every open approval — risk-scoring each spender contract and surfacing ABORT-level threats you may have forgotten about months ago.
See Threats Before Anyone Tweets
Live feed of contracts being scanned across all chains in real-time. ABORT verdicts pulse red as they land. Filter by verdict, click any entry for the full analysis. The fastest threat intelligence feed in DeFi.
PRICING
ONE PREVENTED RUG PULL PAYS FOR A YEAR
HOW TO GET STARTED AFTER PURCHASE
Pay via Stripe — your key is provisioned instantly.
Go to /dashboard, enter your email, and copy your vs_... API key.
Paste the key into Studio or send it as Authorization: Bearer vs_...
All plans include AI analysis · Studio requires PRO or ENTERPRISE · Cancel anytime · Instant activation
FAQ
COMMON QUESTIONS ABOUT THE ORACLE
Yes — all 14 exploit pattern signatures operate at the EVM opcode level, so raw bytecode is all we need. No source code required. When source is verified on Etherscan, the AI receives deeper context for more nuanced scoring, but every pattern check works regardless of verification status.
Severity weights from matched patterns are summed: CRITICAL = 25 pts, HIGH = 15 pts, MEDIUM = 8 pts, LOW = 3 pts. The AI analysis can adjust the final score ±20 points based on contextual review of function selectors and decompiled logic. Score 0–30 → SAFE, 31–65 → RISKY, 66–100 → ABORT.
RISKY (31–65) means suspicious patterns are present — investigate before interacting. ABORT (66–100) means confirmed exploit vectors: SELFDESTRUCT present, honeypot transfer blocking detected, or AI honeypot probability above 0.8. The Chrome extension automatically blocks ABORT transactions before they reach MetaMask.
The Manifest V3 extension injects a provider proxy at window.ethereum that wraps eth_sendTransaction and eth_signTransaction. When you hit 'confirm' in any dApp, the proxy fires before MetaMask receives the call — running Oracle analysis and Tenderly simulation in parallel and rendering a full-screen verdict overlay.
18 chains: Ethereum, Base, Arbitrum, Polygon, Optimism, BSC, Avalanche, zkSync Era, Linea, Scroll, Blast, Fantom, Mantle, Celo, Gnosis, Mode, Sonic, and Tron. EVM chains use Etherscan V2's unified API endpoint. Tron uses TronScan's native API with bytecode-level pattern analysis.
Yes. ENTERPRISE plans include MCP server access at /api/mcp. AI agents like Claude or GPT-4 can call analyse_contract, get_risk_score, and check_patterns as structured tools. PRO plans get a standard REST API key (Bearer token) for direct programmatic integration.
INTEGRATE THE ORACLE
One POST request. Full analysis in under 5 seconds.
Works in any language. Returns structured JSON with flags, probabilities, and AI verdict.
curl -X POST https://xrvoid.online/api/analyse \
-H "Content-Type: application/json" \
-H "Authorization: Bearer vs_your_api_key" \
-d '{"address":"0x...","chain":"ethereum"}'
# Response (< 5 seconds):
{
"verdict": "ABORT",
"riskScore": 89,
"verified": false,
"analysisTimeMs": 3241,
"honeypotProbability": 0.94,
"rugProbability": 0.31,
"flags": [
{ "severity": "CRITICAL", "id": "HONEYPOT_TRANSFER",
"title": "Honeypot Transfer Block",
"description": "Transfer reverts for non-owner addresses" },
{ "severity": "HIGH", "id": "SELFDESTRUCT",
"title": "Self-Destruct Vector",
"bytecodeOffset": "0x1a4" }
],
"patternsMatched": ["HONEYPOT_TRANSFER", "SELFDESTRUCT"],
"aiExplanation": "Contract has hard-coded sell restriction...",
"keyFindings": [
"Transfer reverts for non-owner",
"SELFDESTRUCT reachable by deployer",
"No liquidity lock detected"
],
"auditNotes": "Do not interact. Pattern consistent with honeypot.",
"cached": false
}