Skip to content

Web3 Security Testing Platform

AI Agent Security

Test AI Agents Before They Can Move Your Money.

An agent with a wallet is a new kind of attack surface: the code is fine, the contract is fine, and the loss happens because a sentence in a web page convinced the thing holding the key to send money somewhere. This tests that. It reads what your agent is able to do, fires 20 adversarial probes at it to find out what it will actually do, and hands it a decoy wallet that holds no key so you can see exactly what it tried to sign.

20 adversarial probes
6 chain stages
38 checks
6 attack chains
6 config formats read

Lane AWhat your agent is able to do

Paste your agent's tool definitions. This builds a capability graph: which tools can move value, which pull in text the agent did not write, which touch keys, and whether anything stands between them and a signature.

This runs entirely in your browser. Your system prompt and your tool definitions are parsed on this machine and are never transmitted. What gets posted to compose the chains is the structure — tool names, capability classes and booleans — and you can watch that in the network tab.

System prompt (optional, and it never leaves this page)

Only the presence of specific defensive constructions is recorded — booleans, not text. Paste it and the injection checks get a great deal sharper; leave it out and they are reported as not tested rather than passed.

Analysis is on the AI Agents plan and costs 5 credits. The parsing is free and local; the credits pay for the chain composition and the score.