Powered by
NAFULOO
Scan Soroban
Smart Contracts
Deep vulnerability scanning and security analysis for Stellar's Soroban smart contracts. WASM bytecode inspection, static analysis, on-chain risk heuristics, and comprehensive scan reports β all powered by a nominal fee of 10,000 NAFU per scan (currently valued at a few cents in USD).
Soroban Smart Contract Security Analysis
Purpose-built security analysis engine for Soroban smart contracts on the Stellar blockchain. WASM bytecode inspection, on-chain risk heuristics, and vulnerability detection β all checks follow Stellar ecosystem best practices.
Static Analysis
10-category Soroban-specific checks: auth, upgradeability, mint/burn control, storage TTL, cross-contract risks, and more.
On-Chain Heuristics
Deployer age analysis, invocation patterns, admin centralization detection, and upgrade history tracking via Horizon.
Risk Scoring
0β100 score with letter grade (AβF), confidence level, and explainable deductions per finding severity.
Detailed Reports
Every finding includes severity, why it matters, how to fix it, code context, and Soroban best-practice references.
Payment Gated
A nominal fee of 10,000 NAFU per scan with on-chain payment verification, anti-replay invoice binding, and treasury routing.
Scan History
Full scan history of all your scans with filtering, downloadable reports, and invoice tracking.
10 Soroban Security Check Categories
Every smart contract scan runs through a comprehensive ruleset covering Soroban-specific vulnerabilities, Stellar on-chain risk patterns, and WASM bytecode analysis.
Smart Contract Risk Grading System
Clear, actionable security grades for Soroban contracts backed by explainable score deductions per vulnerability finding.
How It Works
Connect Wallet
Link your Stellar wallet via Freighter or paste your public key.
Enter Contract
Paste the Soroban contract ID and select mainnet or testnet.
Pay 10,000 NAFU
Send a nominal 10,000 NAFU (currently valued at a few cents in USD) to treasury with the scan invoice memo.
Get Report
Receive a full vulnerability report with score, findings, and fixes.