SCAN
Every approval decoded in plain English. What you grant, to whom, and how much of it can be pulled — never a wall of hex.
ROBINHOOD CHAIN · WALLET FIREWALL
Every approval scanned. Every transaction simulated. Drainers die at the gate.
Live demo · no wallet needed
Contract address · dApp URL · token you are about to approve. WAF3 decompiles it, cross-references the public Banlist, simulates the approve and probes sell logic before you sign one byte.
Protocol
The firewall runs silently in front of every signature request. You never see the drain — because it never reaches your wallet.
Every approval decoded in plain English. What you grant, to whom, and how much of it can be pulled — never a wall of hex.
See what the transaction really does before you sign. State diff, token movements, hidden callbacks — all replayed off-chain.
Honeypots, drainers and fake airdrop callbacks rejected at the gate. The signature prompt never appears. You keep your keys and your tokens.
Public good
Every confirmed drainer is written to an on-chain oracle any wallet, dApp or explorer can read for free. No API key, no permission, no kill switch. Once blocked, it stays blocked — verifiable by anyone, deletable by no one.
0xBAN1c0de7F3d9A2c4E55b8A1F0d6E3c92C0DE
Flag-to-Earn
Hunters stake reputation on real scam contracts. A flag that survives simulation and community review becomes a permanent Banlist entry — and the hunter behind it earns $WAF from the treasury. Leagues reset monthly.
$WAF
The token is not the product — it is the maintenance budget. Every fee that enters the system is routed in public.
Pro subscriptions and WAF SDK licensing feed the same pool. No private allocations move.
Treasury-held, transparent, withdrawable only by governance vote.
vault.balanceOf(0xWAF3Vau1t0F7d3b9A2c4E55b8A1F0d6E3c) // 4,213,882.19 $WAF
Vault address: 0xWAF3Vau1t0F7d3b9A2c4E55b8A1F0d6E3c
Shipped and shipping
No dates for the sake of dates. Statuses update when code lands.
Web scanner + Banlist seed. Manual scans, public oracle writes, hunter intake. Live on Robinhood Chain.
LIVEWallet extension with auto-revoke, in-line approval decoding and a local simulation engine — no round trip.
BUILDINGBanlist oracle v2 with dispute resolution, plus the WAF SDK so any dApp can pre-flight a transaction before signature.
NEXTMulti-chain Banlist mirroring, hunter grants and a public research fund for drainer forensics.
DARKQuestions
Yes, when the firewall is installed as an extension or via the WAF SDK. It intercepts the signature request, simulates it and returns a verdict before the wallet popup renders. In the web scanner you run it manually against any address you paste.
Every block is a signal, not a sentence. Blocked contracts can be disputed on-chain by their deployer, and a majority of hunter reviews can clear the flag. Until a dispute resolves, you can always override manually — the firewall warns loudly and then gets out of the way.
No. Base protection — scanning, simulation and Banlist lookups — is free forever. Staking $WAF only unlocks Pro: auto-revoke, custom rules, priority scan queue and real-time mempool simulation.
Three sources, all verifiable: community hunters who flag contracts and stake reputation on being right, the simulation engine that replays bytecode off-chain, and the on-chain Banlist oracle where confirmed entries are written permanently.
Never. WAF3 does not hold keys, request seed phrases or route transactions. It reads bytecode, simulates state changes and returns a verdict. If anything asks for your seed phrase, it is not us.