惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
F
Fortinet All Blogs
D
Docker
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
WordPress大学
WordPress大学
罗磊的独立博客
Y
Y Combinator Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
J
Java Code Geeks
T
The Blog of Author Tim Ferriss
U
Unit 42
N
Netflix TechBlog - Medium
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
V2EX
云风的 BLOG
云风的 BLOG
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
T
Tailwind CSS Blog
Hugging Face - Blog
Hugging Face - Blog
Stack Overflow Blog
Stack Overflow Blog
爱范儿
爱范儿
酷 壳 – CoolShell
酷 壳 – CoolShell
P
Proofpoint News Feed
G
Google Developers Blog
H
Help Net Security

Show HN

GitHub - astefanutti/shaderbang: Shebang for Shaders Show HN: Generate Claude Code Workflows using Spec Driven Development approach Show HN: AI agents for UK GDAD PCF roles and their skills The Two Pillars: Mixer Mode and Meta-Software in the Reorganization of Software Work After AI GitHub - JaiCode08/teleport-env What 1,000+ Harness Experiments Taught Me About Self-Improving Agents Show HN: Liiists, a Markdown-first, iOS and CLI list app SwiperTab – Get this Extension for 🦊 Firefox (en-US) GitHub - kouhxp/fftext: Summarize, explain, fact-check, or translate any text, URL, or file. No GPU. No cloud. One command GitHub - sweetpad-dev/sweetpad: Develop Swift/iOS projects using VSCode GitHub - dogmaticdev/IRON: IRON a.k.a. Intermediate Representation Object Notation is a Interpreter/Database that is used to create Programming Languages. GitHub - sjhalani7/vaen: Package your AI coding harness into a portable .agent file, and share it across repos, teams, & the community without ever having to copy-paste instructions, skills, MCP config, or secrets. Show HN: Gandalf the Grader Show HN: Citadeld – replay any CI failure locally from a single file GitHub - tdortman/cuSBF: High-Performance GPU Super Bloom Filter coral-ai/claude-code-token-xray at main · Coral-Bricks-AI/coral-ai GitHub - ulyssestenn/funes: Funes is a Git-based framework for LLM-managed knowledge work: an AI Librarian ingests raw sources, builds an interlinked Markdown knowledge base, and uses it to produce cited reports, analyses, and other outputs. GitHub - ThatXliner/gah: Git Add Hunk, built for agents to use GitHub - harmont-dev/harmont-cli: Command-line client for the Harmont CI platform GitHub - brooksmcmillin/mcp-authflow: OAuth 2.0 Authorization Server framework for MCP servers GitHub - javaid-codes/audit-supply-chain-agents GitHub - amorey/gochan: A small library of common channel architectures for Go, inspired by Rust GitHub - arifozgun/OpenGem: Free, Open-Source AI API Gateway with Gemini, OpenAI & Anthropic Compatibility in 1 file GitHub - Pranesh950/BioPetals: 🌸 Run BIOxAI models at home, BitTorrent-style. Fine-tuning and inference up to 10x faster than offloading GitHub - cnguyen14/bounty-doctor: Diagnose a GitHub bounty issue before you waste hours: detects honeypot scam repos, AI-bot attempt swarms, and stale contests. Show HN: CoreMCP – MCP Server for On-Prem DBs Show HN: KittyHTML – Render HTML/CSS as an inline image in your terminal GitHub - bingud/filemat: Web-based file manager Show HN: TruthLens – Free multi-signal deepfake image detector GitHub - apexlocal-jz/claude-usage-tray: Windows system-tray app showing your Claude Code rate-limit usage at a glance. Zero deps, ~300 lines of PowerShell. Cross-IDE (works regardless of VS Code, Cursor, plain terminal).
CredScore: Onchain Wallet Risk Intelligence
waxsway · 2026-06-17 · via Show HN

Deterministic wallet risk scoring built for crypto-native compliance teams. Your first analysis is free. Open the desk →

Explainable onchain risk briefings

Wallet risk you can actually defend in a review

CredScore turns raw wallet activity into a structured analyst briefing: risk tier, decision posture, key signals, and entity context in one view. Every score is traceable back to the behavior that drove it. No black box, no hand-waving.

First analysis is free. No credit card.

Deterministic scoring

Full audit trail

5 EVM chains

Free first analysis

Readable wallet briefings

Turn raw wallet activity into a usable briefing with clear risk framing and supporting context.

Clearer decisions

See the rationale, the flags that matter, and the context behind the outcome in one view.

Built for real review workflows

Analyze a wallet, understand what matters, and move forward without drowning in explorer tabs.

Sample analyst briefing

Live engine output

Risk tier

Wallet 0x4766...86e2, Lazarus-linked. Sanctions cap enforced.

High

Decision posture

Adverse pressure score 71/100. Multiple high-severity signals co-occurring.

Escalate

Key drivers

OFAC sanctions match, mixer interaction pattern, fan-out distribution.

3 flags

Real engine output on a publicly documented attacker wallet. Open the desk to run your own.

Case studyDPRK / Sanctions$1.5B loss

How CredScore flagged the Bybit / Lazarus flow

When Lazarus moved funds from the Bybit exploit, CredScore scored the receiving wallets high-risk with sanctions escalation in under 15 seconds, with the full rationale traceable to specific transaction patterns and entity exposure. Not after the fact. In real time.

Read the full case study →

Supported chainsEthereumBaseArbitrumOptimismPolygon

100%

Deterministic scoring

Built for

Compliance analystsAML investigatorsOn-chain investigatorsProtocol security teams

Real engine output, no marketing screenshots

The Bybit primary exploiter, scored by CredScore

Higher score means lower risk. The same verdict is live at /v/o6wr--NrABo.

0x4766…86e2eth-mainnet

High riskEscalate62% confidence

Escalate for deeper review

CredScore sees risk or sensitive exposure strong enough to justify escalation before proceeding.

Analyst briefing

Executive Risk Verdict

This address presents elevated counterparty risk based on generalized observable on-chain metrics. The current view contains enough adverse signal composition or sensitive exposure to justify escalation.

Decision Posture

Escalate for deeper review. A specific high-risk signal combination was detected (sanctions self). This pattern is materially more concerning than any individual flag in isolation and requires human context to resolve correctly.

Primary Risk Drivers

High-confidence sanctions attribution This wallet itself is on a sanctions watchlist (per the curated registry or OFAC SDN sync). Sanctions-sensitive attribution materially increases review urgency because legal and compliance context becomes critical.

History capped by fetch limit

Transfers observed: At least 1,201

History cap: observed count may be a lower bound (cap 1,200)

Incomplete transfer coverage reduces confidence because observed totals may be lower bounds.

Source return flow detected

Circular loop count: 1

Source return count: 5

Rapid round-trip count: 1

Observed sources later reappear as return destinations, which reduces legibility and suggests recirculating flow rather than clean one-direction settlement.

Offsetting Factors

Established history Wallet age: 1.3y (observed)

Recognizable protocol attribution

Observed protocol: LINK token contract

Structural Pattern Observations

Fan-out distribution (medium confidence) The observed flow pattern is consistent with fan-out distribution behavior and also carries additional review pressure from thin visibility, limited history, or sensitive exposure. This is not a misconduct finding, but it is not a routine pattern under current coverage.

Behavior Distribution

Exchange-related interactions: 1% of observed activity. Attributed interactions: 0% of observed activity. High-confidence attributed interactions: 0% of observed activity.

Observed Entity / Protocol Context

OFAC Sanctioned: Lazarus Group (Bybit 2025 exploiter) LINK token contract

Observed Protocol Attribution

LINK token contract

Confidence Statement

Overall assessment confidence is moderate (62%), reflecting partial coverage with usable but still incomplete behavioral signal.

For contrast: a legit, low-risk wallet

0xd8da…6045eth-mainnet

Low riskProceed54% confidence

Proceed with normal caution

CredScore sees a 10.7-year-old wallet holding 5.7 ETH with at least 1,201 transfers with observed context including Vitalik Buterin (Public), Null / Burn Address. No dominant adverse drivers under current coverage; this case can proceed with normal caution.

Wallet snapshot

Primary risk drivers

History capped by fetch limit

Transfers observed: At least 1,201 · History cap: observed count may be a lower bound (cap 1,200)

Incomplete transfer coverage reduces confidence because observed totals may be lower bounds.

Bursty activity pattern

Average observed activity: 34.2 tx/day

A compressed activity window can indicate non-routine behavior and deserves added caution.

High transfer activity

Transfers observed: At least 1,201 · History cap: observed count may be a lower bound (cap 1,200)

Higher activity increases interpretive complexity, but should not be treated as adverse on its own unless paired with suspicious concentration, rapid routing, or sensitive exposure.

Observed entity context

Labels

Vitalik Buterin (Public)Null / Burn AddressCoinbase Hot Wallet 2USDC contractUniswap V2 Router

Protocols

Null / Burn AddressUSDC contractUniswap V2 Router

Offsetting factors

Established history

Wallet age: 10.7y (observed)

Recognizable exchange or protocol context

Observed label: Vitalik Buterin (Public) · Observed label: Null / Burn Address · Observed label: Coinbase Hot Wallet 2

Recognizable protocol attribution

Observed protocol: Null / Burn Address · Observed protocol: USDC contract · Observed protocol: Uniswap V2 Router

Analyst briefing

Executive Risk Verdict

This 10.7-year-old address presents lower relative counterparty risk. The observable behavior is consistent with stable usage and no dominant adverse drivers were detected, though it should still be contextualized with broader exposure intelligence when available.

Decision Posture

Proceed with normal caution. No dominant adverse drivers were identified under the current coverage, and the signal quality is strong enough to support a lower-risk routine posture.

Primary Risk Drivers

History capped by fetch limit Transfers observed: At least 1,201 History cap: observed count may be a lower bound (cap 1,200) Incomplete transfer coverage reduces confidence because observed totals may be lower bounds.

Bursty activity pattern

Average observed activity: 34.2 tx/day

A compressed activity window can indicate non-routine behavior and deserves added caution.

High transfer activity

Transfers observed: At least 1,201

History cap: observed count may be a lower bound (cap 1,200)

Higher activity increases interpretive complexity, but should not be treated as adverse on its own unless paired with suspicious concentration, rapid routing, or sensitive exposure.

Offsetting Factors

Established history Wallet age: 10.7y (observed)

Recognizable exchange or protocol context

Observed label: Vitalik Buterin (Public)

Observed label: Null / Burn Address

Observed label: Coinbase Hot Wallet 2

Recognizable protocol attribution

Observed protocol: Null / Burn Address

Observed protocol: USDC contract

Observed protocol: Uniswap V2 Router

Behavior Distribution

Exchange-related interactions: 0% of observed activity. DEX-related interactions: 0% of observed activity. Attributed interactions: 11% of observed activity. High-confidence attributed interactions: 5% of observed activity.

Observed Entity / Protocol Context

Vitalik Buterin (Public) Null / Burn Address Coinbase Hot Wallet 2 USDC contract Uniswap V2 Router

Observed Protocol Attribution

Null / Burn Address USDC contract Uniswap V2 Router

Confidence Statement

Overall assessment confidence is moderate (54%), reflecting partial coverage with usable but still incomplete behavioral signal.

Sensitivity notes

Improved transaction coverage could materially change activity-based interpretation and increase confidence.

Stronger counterparty attribution coverage could materially improve interpretability and sharpen the current score.

How it works

CredScore is built for teams and operators who need a faster, clearer way to assess wallets. Instead of manually piecing together activity across explorers, you get a focused output designed for real review workflows.

1

Enter a wallet

Start an analysis from the Analyst Desk using a public wallet address.

2

Review the briefing

Read a structured summary with risk tier, decision posture, key drivers, and notable flags.

3

Use it in real decisions

Apply the output to onboarding, counterparty review, investigations, research, or internal risk checks.

Pricing

Your first wallet analysis is free, no credit card. Solo Analyst is $99 a month for unlimited wallet risk briefings across five EVM chains. Teams that need shared workspaces, higher throughput, or a tailored setup can talk with us directly.

FAQ

Straight answers to the questions people ask before relying on a wallet risk tool.

How does this compare to just using a block explorer

Block explorers show raw activity. CredScore is built to help you interpret that activity faster by turning it into a structured briefing with risk tier, posture, supporting rationale, and key flags.

Who is this for

CredScore is built for analysts, investigators, researchers, compliance teams, and operators who need a faster way to assess wallet risk and document what they are seeing.

How should I use the output

The output is meant to support review, prioritization, and internal decision-making. It is a decision-support layer, not a substitute for human judgment or a legal conclusion.

How accurate is it

CredScore is designed to be structured, explainable, and useful in practice, but no risk system is perfect. The point is to make wallet review faster and clearer, not to pretend uncertainty does not exist.

Do I need to provide identity or KYC data

No. CredScore evaluates public wallet activity and produces an explainable risk briefing without asking for identity data.

What chains are supported

Ethereum, Base, Arbitrum, Optimism, and Polygon are all fully supported. Chain selection is a dropdown in the desk. Support expands carefully so the quality of the signal stays strong on each chain we add.

Can my team use it

Yes. Business access is available for teams that need broader usage, more volume, or a setup that fits a larger workflow.

About us

Built in Denver. CredScore exists because analysts were tired of stitching together explorer tabs and getting handed black-box risk scores they couldn't defend in a review.

Get in touch →