ShieldForge — Web3 授权扫描器与 Permit 解码器 作者: R228
审计 88 条链 (EVM + Tron) 的代币授权。在签名前解码 EIP-712 类型化数据。检测钓鱼请求。从你自己的钱包撤销 — 无托管。
可在 Android™ 版 Firefox 上使用可在 Android™ 版 Firefox 上使用
扩展元数据
关于此扩展
ShieldForge brings the Web3 approval scanner and EIP-712 permit decoder into your browser toolbar. Self-custodial — no keys held, no custody, no relayer. Wallet signing always happens in your wallet's own UI.
What it does
Privacy
We never read wallet keys or send PII. The scanner API receives the wallet address you scan (a public on-chain identifier) along with standard HTTP request metadata. Full policy at https://shieldforge.xyz/privacy.
Why we built this
Most token-approval drains in 2026 happen via blind EIP-712 signatures. Standard wallet UIs show "Sign typed data?" without explaining what it means. ShieldForge fills that gap — decode before you sign, audit before you forget, revoke before it costs you.
Backed by the same scanner running at https://shieldforge.xyz across +100 chains.
What it does
- 🔍 Scan token approvals across 88 chains — Ethereum, Base, Arbitrum, Polygon, BNB Smart Chain, Optimism, Linea, Scroll, zkSync, Mantle, Sonic, Blast, Berachain, Cronos, Avalanche, Tron, Ronin, Etherlink, Hemi, BOB, ApeChain, Immutable zkEVM, Story, ZetaChain, Worldchain, Unichain, opBNB, Ink, and 60+ more. Risk-classified results sorted CRITICAL → LOW.
- ✍️ Decode EIP-712 typed-data signatures before you sign — Permit2, EIP-2612, OpenSea listings, Permit. Plain-text breakdown of domain, message, primary type. Warnings when value = 2^256-1 (unlimited allowance).
- 🛡️ Phishing watch on dApps — when a dApp asks for a typed-data signature with a permit-shaped payload, a non-blocking floating banner offers a one-click decode. Excludes banking domains, Google login, ShieldForge web app.
- 📊 Local scan history — past scans stored in
chrome.storage.local, never uploaded. - 🔔 Weekly hygiene reminder (opt-in) — browser notification if your last scan showed unrevoked CRITICAL approvals more than a week ago.
- 🌍 5 languages — English, Español, 日本語, Русский, 中文 — auto-detected from browser locale.
Privacy
We never read wallet keys or send PII. The scanner API receives the wallet address you scan (a public on-chain identifier) along with standard HTTP request metadata. Full policy at https://shieldforge.xyz/privacy.
Why we built this
Most token-approval drains in 2026 happen via blind EIP-712 signatures. Standard wallet UIs show "Sign typed data?" without explaining what it means. ShieldForge fills that gap — decode before you sign, audit before you forget, revoke before it costs you.
Backed by the same scanner running at https://shieldforge.xyz across +100 chains.
评分 0(1 位用户)
权限与数据
必要权限:
- 向您显示通知
- 访问您在所有网站的数据
可选权限:
- 访问您在 shieldforge.xyz 域名的数据
- 访问您在 shieldforge.xyz 的数据
收集的数据:
- 开发者称此扩展无需收集数据。
更多信息
- 版本
- 1.0.2
- 大小
- 37.59 KB
- 上次更新
- 19 天前 (2026年5月7日)
- 许可证
- 保留所有权利
- 隐私政策
- 阅读此附加组件的隐私政策
- 版本历史
- 添加到收藏集