How detection works

From a confirmed exploit to your inbox

Four stages. No magic, no full-chain promises — just curated intel, on-chain proof, and a match against your code.

  1. 1

    Ingest

    We monitor curated security-intelligence channels and pull in exploit reports the moment they surface — not hours later from the news cycle.

  2. 2

    Verify on-chain

    Each signal is enriched against the chain via Etherscan: the attack transaction, trace, and the vulnerable contract's verified source.

  3. 3

    Classify

    An LLM analyzes the attack tx and source together to pin the root-cause vulnerability class — reentrancy, oracle manipulation, access control, and more.

  4. 4

    Match & alert

    Your watched public repos are checked for the same pattern. If you look exposed, you get an email with the finding and the incident it maps to.

What we cover — and what we don't

  • EVM chains: Ethereum, BSC, Polygon, Arbitrum, Optimism, Base, Avalanche.
  • Confirmed, triaged exploits — each linked to its on-chain attack transaction.
  • We don't scan every transaction on every chain. We surface exploits that reach curated security intelligence, then verify them on-chain.
  • Coverage isn't a guarantee. Always verify independently before acting.