Address poisoning checker
NewFrom your own records, an invoice or the recipient directly, not from your transaction history.
Runs in your browser. Nothing you paste here is sent anywhere.
Scan a wallet’s history
Wardcrest reads the latest transactions of the address and flags counterparties that imitate it or each other.
Questions
What is address poisoning?
An attacker generates an address that starts and ends with the same characters as one you use, then sends you a tiny or zero-value transfer from it. The fake now sits in your history, and the next time you copy “your usual address” from there, you copy theirs. Millions have been lost this way.
How do I protect myself?
Never copy an address from your transaction history. Use your wallet’s address book, check every character (not just the ends) before sending, and send a small test amount first for anything large.
Does the checker see what I paste?
The comparison runs in your browser and nothing is sent. The optional history scan reads the public transactions of the address you enter, like any block explorer, and does not store it.
Which chains can be scanned?
Bitcoin, Ethereum, Base, Arbitrum, Optimism and Polygon, plus BNB Smart Chain where the server has an explorer key. The comparison works for any address format.