Hexens
Hexens is a London-headquartered cybersecurity firm providing smart contract audits, ZK cryptography reviews, AI agent security, and the Glider platform of blockchain risk intelligence tools, serving Web3 protocols such as Polygon, Lido, EigenLayer, and ZKsync.
- Company typePrivate
- Founded2021
- HeadquartersLondon, United Kingdom
- Headcount51–100
- GTM typeB2B
- OfferingServices
What Hexens does
Hexens is a London-headquartered cybersecurity firm founded in 2021 that specializes in securing systems where risk tolerance is effectively zero — primarily blockchain and Web3 protocols, with expanding coverage of AI/agentic systems, zero-knowledge cryptography, and traditional application and network infrastructure. The company delivers professional smart contract audits across Solidity, Rust, Move, Vyper, and Cairo; L1/L2 blockchain, DeFi, bridge, and cross-chain security reviews; ZK circuit, FHE, and MPC cryptography audits; AI agent and MCP server security assessments; and full-stack penetration testing and consultancy. Engagement pricing ranges from $30,000 for focused smart contract reviews to $1,000,000+ for comprehensive platform assessments, with a Builder Support program offering roughly one third of standard rate to qualifying early-stage protocols.
The firm operates a two-team parallel audit methodology — two independent security teams run against the same target, with overlap providing confirmation and divergence surfacing blind spots — augmented by frontier AI models directed by senior engineers. Hexens has built proprietary tooling around this practice: the Glider platform comprising Glider IDE (smart contract querying across 32+ chains), Token Risks API (real-time token risk scoring), Glider Remedy (expert-triaged bug bounty with Engram zero-knowledge duplicate-proofs), and DeFi Risks (vault-level position analysis). The company is ISO 27001 certified, team members hold CRTL/OSCE3/OSCP/OSEP/OSWE/OSMR/OSED credentials, and the firm has completed 300+ engagements with zero post-audit exploits protecting $120B+ in digital assets while maintaining 91% client retention.
Commercially, Hexens runs a senior-led, quote-based direct enterprise sales motion targeting Web3 protocols (Polygon, Lido, 1inch, EigenLayer, ZKsync, LayerZero, RISC Zero, Mantle, Fuel, PancakeSwap, AvaLabs, TON, Nubank, and others), supplemented by API-first self-serve distribution for Token Risks API and Glider IDE and a Builder Support program for early-stage projects. The company has 40+ specialists across 13 countries, raised a $4.2M seed round led by IOSG Ventures in October 2022 (with Polygon, imToken, and others participating), and is incorporated in the British Virgin Islands with operations in the UK, US, and Armenia.
Hexens firmographics
Firmographics- Name
- Hexens
- Legal name
- Hexens Cyber Security Ltd.
- Website
- https://hexens.io
- Company type
- Private
- Founded year
- 2021
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Hexens is a London-headquartered cybersecurity firm providing smart contract audits, ZK cryptography reviews, AI agent security, and the Glider platform of blockchain risk intelligence tools, serving Web3 protocols such as Polygon, Lido, EigenLayer, and ZKsync.
- Ownership category
- akta.pro rank
Hexens industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Security Systems Services (except Locksmiths) (561621)
- SIC
- Services-Computer Programming Services (7371)
- akta.pro primary industry
- Security Testing Tooling (SAST/DAST for smart contracts, fuzzing) (FSAPAJAK)
- akta.pro secondary industries
- Digital Asset Risk, Security & Audit Tooling (Smart Contract Audit, Threat Monitoring) (FSAGAMAJ), Testing, Simulation & Local Dev Environments (testnets, forks, fuzzing, CI) (FSAPABAG)
Keywords
Where Hexens is headquartered
LocationHeadquarters
- HQ city
- London
- HQ country
- United Kingdom
- HQ region
- Europe
Offices1 record
Markets served
Hexens business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Security Audit Services: Professional security audit services for smart contracts, blockchain protocols, ZK circuits, and application security. Engagement-based pricing ranging from $30K for focused smart contract reviews to $1M+ for comprehensive platform-wide assessments. Includes dual-team methodology and post-remediation retesting.
- Glider IDE & Token Risks API: Product licensing and API access for Glider smart contract querying engine and Token Risks API. Provides compliance, security scanning, and on-chain intelligence capabilities.
- Bug Bounty Platform (Glider Remedy): Expert-triaged bug bounty platform with $5.5M+ in available rewards. Connects projects with top security researchers through managed program.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| One time/ perpetual license | Multi-year contract | Focused Smart Contract Review - Starting tier for targeted code review |
| One time/ perpetual license | Multi-year contract | Comprehensive Platform Assessment - Full-scope security review |
| Hybrid | Multi-year contract | Builder Support Program - Early-stage project grant rate |
Go-to-market motion2 records
Distribution channels4 records
Marketing channels5 records
Hexens product offering
Product offeringCore offering
Hexens provides professional cybersecurity audit services for blockchain protocols (smart contracts in Solidity, Rust, Move, Vyper, Cairo; L1/L2 networks; DeFi; bridges; centralized exchanges), zero-knowledge and cryptographic systems, AI/agentic applications, and traditional application/network infrastructure. These engagements are delivered through a dual-team parallel review methodology augmented by frontier AI tools and supported by the proprietary Glider platform (Glider IDE, Token Risks API, Glider Remedy, DeFi Risks).
Product overview
Hexens is a blockchain and AI cybersecurity firm offering a portfolio of security services and proprietary tooling. Core services include Blockchain Security, AI & Agentic Security, Cryptography Security, Application & Network Security, and Security Consultancy. These services are powered by Hexens' proprietary Glider platform, which encompasses Glider IDE (smart contract querying engine), Token Risks API (real-time token risk intelligence), Glider Remedy (expert-triaged bug bounty), and DeFi Risks (vault-level position analysis). The company operates with a dual-team parallel audit methodology augmented by frontier AI, achieving zero post-audit exploits across 300+ engagements protecting $120B+ in digital assets.
Differentiator
Problem solved
Functional benefit
Brands
- Glider: World's first scalable technology for tagging and querying logic in deployed smart contracts. Search on-chain code by function, pattern, or behavior. The intelligence layer for blockchain-scale contract analysis.
- Token Risks API
- Remedy
Products and services
- Blockchain Security Services Smart contract audits across Solidity, Rust, Move, Vyper, and Cairo; L1/L2 blockchain security reviews; centralized exchange security assessments; hardware and software wallet audits; DeFi protocol reviews; bridge and cross-chain security; and TEE application security. Sold to Web3 protocol teams, exchanges, and DeFi projects requiring pre-deployment security assurance.
- AI & Agentic Security Services Adversarial assessment of AI agents, MCP servers, and tool integrations including AI agent security audits, agentic commerce and payment protocol security, MCP server security, LLM application security, MLOps pipeline threat analysis, and AI red teaming. Sold to organizations deploying AI agents, LLM-powered applications, or autonomous systems in production or high-stakes environments.
- Cryptography Security Services Specialized security reviews of zero-knowledge circuits (Circom, Halo2, Gnark, Cairo, Noir), FHE implementations, MPC protocols, cryptographic primitives, proving systems, TEE security, and post-quantum cryptography assessments. Sold to projects implementing advanced cryptography for blockchain and security-critical applications.
- Application & Network Security Services Full-stack penetration testing including APT simulation and red teaming, web and mobile application security, API testing, cloud infrastructure audits, network penetration testing, and source code review. Sold to enterprises and Web3 projects needing traditional infrastructure and application-layer security testing.
- Security Consultancy Advisory services covering system architecture review, threat modeling, compliance advisory (SOC 2, ISO 27001, MiCA, DORA), DevSecOps integration, DDoS resilience assessment, and social engineering training. Sold to enterprise and protocol clients seeking strategic security guidance.
- Glider IDE Scalable technology for tagging and querying logic in deployed smart contracts; enables search by function, pattern, or behavior across on-chain code on 32+ chains. Available via web IDE at glide.r.xyz with Claude Skills integration. Used by security researchers, protocol developers, and integrated platforms.
- Token Risks API Real-time token risk scoring API powered by audit-grade data; assesses tokens for contract vulnerabilities, ownership risks, liquidity traps, and manipulation vectors. Delivered via API-first product with playground interface; integrated by CoinStats and GetBlock.
- Glider Remedy (Bug Bounty Platform) Expert-triaged bug bounty platform with senior security engineer review of every submission, powered by Engram (zero-knowledge proof of duplicates). $5.5M+ in rewards available; integrates with Slack and Jira. Sold to blockchain projects seeking managed vulnerability disclosure programs.
- DeFi Risks Vault-level position analysis engine that surfaces hidden risks inside DeFi vaults including derivative wrapping, liquidity concentration, governance exposure, depeg, liquidation risks, and fee structures. Used by DeFi users, risk teams, and integrated platforms to assess vault positions.
- Audit Reports Repository Public repository of Hexens' security audit reports covering DeFi, Infrastructure, CeFi, L1/L2, and other blockchain sectors, including reports for Polygon zkEVM, 1inch, Lido, EigenLayer, LayerZero, Fuel, and 80+ other protocols. Used as transparency artifacts for clients, investors, and the broader Web3 community.
Quantifiable outcome
- Zero post-audit exploits across 300+ engagements
- +4 more outcomes
Companies that use Hexens
Customer profileNamed customers15 records
Segments5 records
Ideal customer profiles4 records
Hexens technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration4 records
AI capability9 records
Feature5 records
Hexens partnerships and signals
Strategic signalPartnerships
Five partnerships are on record, tiered core and flagship.
- Glider Ecosystem PartnerscoreIntegration partnerships with 32+ blockchain networks enabling Glider's smart contract querying and token risk analysis across major ecosystems including Ethereum, Polygon, ZKsync, and others.
- GetBlockflagshipGetBlock integrated Token Risks API into their Wallet Audit stack. Hexens technology powers fast, reliable, and detailed risk audits through both API and interface for GetBlock users.
- CoinStatsflagshipCoinStats integrated Token Risks API to deliver reliable, real-time risk analysis of digital assets to their end users, surfacing token-level security data at the point of investment decision.
- Builder Support Program PartnerscoreEcosystem partners including Spredo, Blocksource, Chainstack, Quicknode, Infura, Layer3, Wonderland, Infrasingularity, Labrys, Remedy, CoinStats, GetBlock, MatchSystems, and Instanodes providing tooling discounts and ecosystem introductions for Builder Support program participants.
- R.xyz (Remedy)coreGlider Remedy bug bounty platform provides expert-triaged vulnerability disclosure program management with zero-knowledge proof of duplicates for transparency.
Scale indicators10 records
Recent moves6 records
Expansion highlights7 records
Hexens competitors and assessment
Company assessmentDirect peers
- CertiK: CertiK is a well-funded blockchain security firm offering smart contract audits, formal verification, and Skynet monitoring. It is one of the largest and most-recognized direct competitors to Hexens in Web3 audit services.
- OpenZeppelin: OpenZeppelin provides smart contract audits and security tooling, including Defender and formal verification services. It is one of the most established competitors in smart contract security and shares Hexens' premium audit positioning.
- Trail of Bits: Trail of Bits is a leading blockchain and software security firm offering smart contract audits, cryptographic reviews, and applied security research. It directly competes with Hexens for marquee Web3 and cryptography engagements.
- ChainSecurity: ChainSecurity (acquired by PwC) provides smart contract audits and formal verification for DeFi and blockchain protocols. It competes head-to-head with Hexens for high-end protocol audit engagements.
- Spearbit: Spearbit is a security auditing collective matching elite security researchers with Web3 projects. It competes with Hexens for top-tier audit talent and premium protocol engagements.
- Runtime Verification: Runtime Verification specializes in formal verification and security audits for smart contracts and consensus protocols. It is a direct competitor for high-assurance protocol audits, especially in the L1/L2 space.
- Quantstamp: Quantstamp is a smart contract security audit firm serving DeFi, L1s, and enterprise blockchain deployments. It is a direct competitor across audit services and security monitoring.
Emerging players
- Zellic: Zellic is an emerging Web3 security firm specializing in smart contract audits and cryptography research. It overlaps with Hexens on audit methodology and target customers but has a shorter track record.
- Cyfrin: Cyfrin offers smart contract audits, security tooling (Aderyn), and Web3 developer education. It targets a similar audit customer base and competes on tooling-led differentiation similar to Hexens' Glider.
Broad incumbents
- Consensys Diligence: Consensys Diligence is the audit arm of Consensys, providing smart contract security services within a broader Web3 product portfolio. It overlaps with Hexens on protocol audits while benefiting from broader ecosystem positioning.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks5 records
Key highlights7 records
Customer concentration
Hexens social profiles
Digital presenceHexens compliance and trust
Trust signalCompliance2 records
Hexens financial estimates
Financial estimateRevenue estimate
Valuation estimate
Hexens leadership team
Management profileNumber of profiles
Profiles13 records
Hexens funding detail
Funding detailFunding overview
Funding rounds1 record
Investors8 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Hexens M&A and investment
M&A and investmentM&A
Investments1 record
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Hexens
What does Hexens do?
Hexens provides professional cybersecurity audit services for blockchain protocols (smart contracts in Solidity, Rust, Move, Vyper, Cairo; L1/L2 networks; DeFi; bridges; centralized exchanges), zero-knowledge and cryptographic systems, AI/agentic applications, and traditional application/network infrastructure. These engagements are delivered through a dual-team parallel review methodology augmented by frontier AI tools and supported by the proprietary Glider platform (Glider IDE, Token Risks API, Glider Remedy, DeFi Risks).
Is Hexens a public or private company?
Hexens is a private company. It is classified as venture growth investor backed and is currently operating.
When was Hexens founded?
Hexens was founded in 2021. It employs 51 to 100 people.
Where is Hexens based?
Hexens is headquartered in London, United Kingdom, in the Europe region.
How does Hexens make money?
Three revenue lines are on record. Security Audit Services are the primary driver. The others are glider IDE & Token Risks API and bug Bounty Platform (Glider Remedy).
Who are Hexens's main competitors?
Direct peers on record are CertiK, OpenZeppelin, Trail of Bits, ChainSecurity, Spearbit, Runtime Verification and Quantstamp. Emerging players are Zellic and Cyfrin. Consensys Diligence is listed as a broad incumbent.
Does Hexens have an API?
Yes. Token Risks API provides real-time token risk scoring powered by audit-grade data. The API assesses tokens for contract vulnerabilities, ownership risks, liquidity traps, and manipulation vectors, delivering actionable ratings. Operates in strict SAST and Hybrid (AI + SAST) modes. Can integrate into platforms for real-time risk analysis at point of investment decision. Documentation available via GitBook at glide.gitbook.io/main/glider-api. Claude Skills enabled for Glider IDE integration. Developer documentation is at glide.gitbook.io/main/glider-api.
What industry is Hexens in?
Hexens's product category is Cybersecurity Services. Its primary akta.pro industry code is FSAPAJAK, Security Testing Tooling (SAST/DAST for smart contracts, fuzzing), with a secondary code of FSAGAMAJ, Digital Asset Risk, Security & Audit Tooling (Smart Contract Audit, Threat Monitoring). Its NAICS code is 561621 and its SIC code is 7371.