Every layer of wallet safety, in one place
Check what's already exposed, get warned before you sign, and stay watched around the clock.
Scanner
Audit any address across 5 chains, get a wallet Security Score, and see how long each risky approval has been open. Free and read-only.
Token checker
Paste a token contract to spot honeypots, punishing taxes and rug traits, before you buy. Free, 35 chains including Tron.
Address checker
Check any wallet or contract against phishing, drainer and sanctions datasets before you send or trust it.
Bitcoin checker
Screen a Bitcoin address against the OFAC sanctions list and see its on-chain history: balance, age, activity. No approvals to revoke on Bitcoin; this is risk screening, not a safety guarantee.
Rug checker
A 0-100 Launch Safety Score for any new coin (honeypot, LP-lock, concentration, wash-volume), with the math shown.
New launches
A live radar of freshly-listed coins across EVM + Solana, each auto-scored for rug risk the moment it appears.
Farm checker
Reads a staking farm's on-chain reward math (self-rewarding emissions, impossible APR, malicious flags) before you stake.
Guardian
The browser extension that stops a draining signature (unlimited approvals, Permit phishing, and EIP-7702 account takeovers) before you sign it.
Monitor
A Telegram alert the moment a new risky approval appears, or a contract you already approved gets flagged malicious. Revoke link included.
Risk API
The same non-custodial engine as a REST API: approval-risk, token & launch-safety checks. Free instant key.
The live wallet-drainer blocklist
Known drainer and scam addresses aggregated from open-licensed sources plus our own scans. Every entry shows its receipts: source, license and when it was first seen.
addresses flagged · updated continuously
Put Veriql's risk engine in your product
The same non-custodial checks (wallet approval-risk, token security, and a transparent 0-100 launch-safety score) as a REST API. Prepaid credits in USDT, a free instant key, and every verdict shows its math. An MCP server lets AI agents call it too.
- ✓ 3 endpoints · OpenAPI + llms.txt · MCP server for AI agents
- ✓ 1 credit = 1 call · free instant key · top up in USDT
- ✓ The same engine behind the free scanner: show your users the math
Three steps to a wallet that can't be quietly drained
Paste a public address
The same 0x… anyone sees on Etherscan. No private key, no signature, no connection.
See every risky approval
We flag unlimited allowances, unverified spenders and known-malicious contracts across all 5 scanned chains.
Revoke, then stay guarded
Revoke in one click, and the Guardian warns you before you ever sign a drain again.
Protection is free. Pay to put it on autopilot.
Scanning, your Security Score and real-time Guardian are free forever. Paid plans watch more wallets, faster (billed in USDT). Pay monthly, save 2 months on annual, or grab a lifetime deal.
forever
- Real-time Guardian protection
- Security Score + approval age
- Unlimited scans · 5 chains
- 1 watched wallet, daily checks
in USDT · $80/yr · $149 lifetime
- Everything in Free
- 5 watched wallets
- Monitoring every 15 min
- Instant Telegram alerts
- Scam-token alerts soon
in USDT · $200/yr · $299 lifetime
- Everything in Core
- 25 watched wallets
- Fastest checks, every 5 min
- Exploit-exposure alerts soon
- Portfolio value-at-risk soon
🔥 Founder Lifetime: pay once in USDT, protected forever. $149 Core / $299 Pro, for early adopters. In the bot: /upgrade pro lifetime
of founder seats claimed
Questions worth asking a security tool
Is it safe to scan my wallet here?
Yes, it's non-custodial and read-only. You paste a public address (the same one on any block explorer). We never ask for a private key, seed phrase, or wallet connection, and there's nothing to sign. We cannot move your funds.
What is a token approval, and why is it risky?
It's a standing permission you grant a contract to move one of your tokens. Dapps often ask for an unlimited amount so you sign once, but it never expires. If the contract turns malicious or gets exploited, it can move that token with no new signature. Forgotten approvals are the most common way wallets get drained.
What is a “Permit” signature drain?
A Permit (EIP-2612 or Permit2) is an off-chain signature that approves a spender with no on-chain transaction. In 2024, 56.7% of drains used one the victim didn't understand. The Guardian browser extension warns you before you sign it.
What is an EIP-7702 delegation drain?
EIP-7702 lets your wallet hand its whole account over to a contract's code. Drainers trick you into signing a delegation to their “sweeper.” After Ethereum's Pectra upgrade, over 97% of these delegations were malicious. It's the newest one-signature drain, and revoking approvals won't undo it. The Guardian decodes the delegation and throws a full-screen STOP before you sign.
How do I revoke, and can I stop paying anytime?
Each finding links to revoke.cash, where you sign the revoke from your own wallet. Plans are billed in USDT with no silent auto-charge: you renew when you choose, and a plan simply lapses back to free if you don't.
Your approvals change every time you use a dapp.
Scan once to see today's exposure, then let Veriql catch the next risky signature before it reaches you.
Get protected on Telegram