How detection works
From a confirmed exploit to your inbox
Four stages. No magic, no full-chain promises — just curated intel, on-chain proof, and a match against your code.
- 1
Ingest
We monitor curated security-intelligence channels and pull in exploit reports the moment they surface — not hours later from the news cycle.
- 2
Verify on-chain
Each signal is enriched against the chain via Etherscan: the attack transaction, trace, and the vulnerable contract's verified source.
- 3
Classify
An LLM analyzes the attack tx and source together to pin the root-cause vulnerability class — reentrancy, oracle manipulation, access control, and more.
- 4
Match & alert
Your watched public repos are checked for the same pattern. If you look exposed, you get an email with the finding and the incident it maps to.
What we cover — and what we don't
- ✓EVM chains: Ethereum, BSC, Polygon, Arbitrum, Optimism, Base, Avalanche.
- ✓Confirmed, triaged exploits — each linked to its on-chain attack transaction.
- —We don't scan every transaction on every chain. We surface exploits that reach curated security intelligence, then verify them on-chain.
- —Coverage isn't a guarantee. Always verify independently before acting.