{"uid":"cap_aJ8vxOhrtaeGXpy5SOsOU","slug":"wallettriage-erc20-approval-risk-scanner-8fe53ad1","name":"WalletTriage ERC20 Approval Risk Scanner","description":"WalletTriage — real-time wallet risk check: dangerous ERC20 approvals cross-referenced with a live exploit threat feed. Returns risk_score (0-100), risk_level and actionable findings.","url":"https://api.wallettriage.com/scan","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","required":["address"],"properties":{"chain":{"enum":["eth","base","polygon","arbitrum","optimism","bsc","avalanche"],"type":"string","description":"Chain to scan (Moralis name). Defaults to eth if omitted. One of: eth, base, polygon, arbitrum, optimism, bsc, avalanche."},"address":{"type":"string","description":"EVM wallet address to assess (0x-prefixed, 40 hex chars)."}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object","required":["address","chain","risk_score","risk_level","findings","stateless"],"properties":{"chain":{"type":"string"},"address":{"type":"string"},"caveats":{"type":"array","items":{"type":"string"},"description":"Present when coverage was limited (e.g. live feed tracking 0 active exploit entities). Absent = no caveats."},"summary":{"type":"object"},"findings":{"type":"array","items":{"type":"object"},"description":"Actionable findings (medium+); worst-first."},"stateless":{"type":"boolean"},"checked_at":{"type":"string"},"risk_level":{"enum":["low","medium","high","critical"],"type":"string"},"risk_score":{"type":"number","description":"0-100; higher is riskier."},"threat_feed":{"type":"object","description":"Provenance of the live exploit feed this verdict was evaluated against: state (ok|stale|missing|error), updated_at, entities. A degraded feed is refused with 503 BEFORE payment; paid responses always disclose feed state."}}}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_6gaJIw83EHPhzG_l7bjEK","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Scans an EVM wallet address for dangerous ERC20 token approvals and cross-references them against a live exploit threat feed, returning a 0-100 risk score, risk level, and prioritized actionable findings.","exampleAgentPrompt":"Run a WalletTriage risk check on the Ethereum wallet 0xd8dA6BF26964aF9D7eEd9e03E53415D37aA96045 — I want to see its risk score and any dangerous ERC20 approvals flagged against the live exploit feed.","exampleUseCases":null,"resultDescription":"A JSON object containing: address and chain scanned, risk_score (0-100, higher = riskier), risk_level enum (low/medium/high/critical), an array of actionable findings sorted worst-first, threat_feed metadata (state, updated_at, entity count), checked_at timestamp, stateless boolean, and optional caveats array when coverage was limited.","failureModes":["Invalid or malformed wallet address (non-0x-prefixed or wrong length) returns 400 error","Unsupported chain value returns 400 validation error","Threat feed degraded or stale causes 503 refusal before payment is charged","Network timeout or upstream provider failure returns 5xx","Missing required address query parameter returns 400"],"whenToPreferThis":"Choose this endpoint when you need a real-time, per-wallet security assessment that combines ERC20 approval analysis with a live exploit threat feed — particularly for DeFi users wanting to identify revocable high-risk allowances. Prefer this over static allowance checkers when cross-referencing against active exploit entities matters. Supports ETH, Base, Polygon, Arbitrum, Optimism, BSC, and Avalanche.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-13T12:32:30.286Z","isFirstParty":false}