SolidityScan
- Company typePrivate
- Founded2021
- HeadquartersSingapore, Singapore
- Headcount1–10
- GTM typeB2B
- OfferingSoftware
SolidityScan firmographics
Firmographics- Name
- SolidityScan
- Legal name
- SolidityScan
- Website
- https://solidityscan.com
- Company type
- Private
- Founded year
- 2021
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Ownership category
- akta.pro rank
SolidityScan industry classification
Industry- Product category
- Smart Contract Security & Audit Software
- NAICS
- Computer Systems Design and Related Services (5415), Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (518210)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Security Testing Tooling (SAST/DAST for smart contracts, fuzzing) (FSAPAJAK)
- akta.pro secondary industries
- Smart Contract Auditing & Formal Verification (FSAPAJAA), Smart Contract Security Tooling (static/dynamic analysis, formal verification) (FSAPABAI)
Keywords
Where SolidityScan is headquartered
LocationHeadquarters
- HQ city
- Singapore
- HQ country
- Singapore
- HQ region
- Asia
Markets served
SolidityScan business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Infrastructure, Marketing or Sales, Operations
Revenue model
- Subscription Plans: Tiered subscription plans for automated vulnerability scanning, with varying levels of scans, team collaboration features, and report capabilities. Annual billing options available with discounts. Gnosis25 and Avalanche25 coupon codes mentioned for partnership discounts.
- Verified Audit Reports: Additional fee-based verification of self-generated audit reports, providing third-party validation for investor and community confidence
- Manual Audit Services: Request-based manual security audits by CredShields team for comprehensive smart contract review beyond automated scanning
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Monthly | Free Trial |
| Subscription | Annual | Paid Plans |
Go-to-market motion1 record
Distribution channels4 records
Marketing channels6 records
SolidityScan product offering
Product offeringCore offering
SolidityScan is an AI-powered, cloud-based smart contract vulnerability scanner that analyzes Solidity code to detect security risks, anti-patterns, and exploits across Ethereum, Polygon, Avalanche, BNB Chain, and 100+ EVM-compatible networks. The platform offers automated scanning via code upload or GitHub repository integration, free instant scanning through QuickScan/ThreatScan rug-pull detection, AI-driven code remediation suggestions, security scoring, and publishable audit reports. It is complemented by manual audit services delivered through its parent company CredShields.
Product overview
SolidityScan is a cloud-based smart contract vulnerability scanner built by CredShields. The core product uses AI-powered static analysis to scan Solidity code for security vulnerabilities across multiple blockchain networks. It is offered as a unified platform that combines automated scanning (via QuickScan/ThreatScan), audit report generation, and a library of 700+ vulnerability detectors. Users can scan contracts via code upload, GitHub repository integration, or directly through integrated blockchain explorers like Blockscout, Etherscan, and ReefScan. The platform supports CI/CD integration with GitHub Actions and Slack for automated security workflows. CredShields, the parent company, provides complementary manual audit services alongside the automated SolidityScan tool. RustScan extends the company's security offerings to Rust-based smart contracts.
Differentiator
Problem solved
Functional benefit
Brands
- ThreatScan: A rug pull detector feature that parses smart contract code to provide detailed threat summaries explaining admin privileges associated with tokens, helping users make better decisions.
- QuickScan
Products and services
- SolidityScan Platform AI-powered smart contract vulnerability scanner that analyzes Solidity code to identify security risks, anti-patterns, and vulnerabilities. Supports scanning via code upload, GitHub repository integration, or verified contracts on blockchain explorers, and generates security scores, detailed vulnerability reports, and audit reports. Built for Web3 developers, DeFi protocols, NFT projects, and blockchain-based applications across Ethereum, Polygon, Avalanche, and 100+ EVM-compatible networks.
- QuickScan / ThreatScan Free instant smart contract scanner that analyzes deployed contract addresses for rug pull indicators and security risks, providing a ThreatSummary that explains admin privileges and potential red flags in plain language. Available without signup so any user can make informed decisions about a contract before interacting with it.
- Audit Reports Service Audit report generation, customization, and publishing service with three report types: Self-Published, Verified, and Manual Audit. Users can generate, customize, and publish security audit reports after scanning, with reports going through a review and approval process before public publication to support community transparency and investor confidence.
- RustScan Automated vulnerability scanner for Rust-based smart contracts and blockchain systems that complements SolidityScan by extending automated security scanning to contracts written in the Rust programming language.
- Web3 HackHub Knowledge base and repository of Web3 hack analyses documenting past security exploits, vulnerabilities, and attack patterns in the blockchain ecosystem for educational and preventive purposes.
Quantifiable outcome
- Saved projects from $730K exploit by detecting critical access control vulnerability in SuperRare RareStakingV1 contract
- +3 more outcomes
Companies that use SolidityScan
Customer profileNamed customers6 records
Segments3 records
Ideal customer profiles3 records
SolidityScan technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration9 records
AI capability6 records
Feature9 records
SolidityScan partnerships and signals
Strategic signalPartnerships
Eight partnerships are on record, tiered core.
- GnosiscoreStrategic partnership providing Gnosis projects with 15-20% discounts on smart contract audits, dApp audits, node audits, and 25% discount on SolidityScan plans. Gnosis Chain is one of the first Ethereum sidechains secured by 170,000+ validators.
- AvalanchecoreEcosystem partnership offering Avalanche projects priority support, 15% discounts on smart contract and dApp audits, 20% discounts on node and SDK audits, and 25% off SolidityScan plans (code: Avalanche25).
- RootstockcorePartnership enabling developers to build secure dApps on Rootstock with exclusive discounts up to 20% on smart contract audits and 25% on SolidityScan plans.
- IoTeXcorePartnership providing IoTeX developers with 15-20% off on smart contract and blockchain audits, plus 25% off SolidityScan plans for automated vulnerability analysis.
- Dojima NetworkcorePartnership offering Dojima Network builders 15% off on manual audits and 25% off SolidityScan plans to secure Web3 applications.
- BlockscoutcoreIntegration into Blockscout explorer across 600+ networks (Ethereum, Optimism, Base, Gnosis, zkSync, etc.) providing real-time security scores and vulnerability reports accessible directly from contract pages.
- Reef ChaincoreIntegration into ReefScan blockchain explorer enabling developers to access SolidityScan vulnerability scanning directly from the platform for seamless smart contract auditing.
- Airchains / BlockHubblecorePartnership providing robust smart contract audit reports for all verified contracts on BlockHubble blockchain explorer, generating detailed reports highlighting vulnerabilities with actionable recommendations.
Scale indicators6 records
Recent moves6 records
Expansion highlights5 records
SolidityScan competitors and assessment
Company assessmentDirect peers
- Trail of Bits: Trail of Bits is a cybersecurity firm with a dedicated blockchain security practice offering manual audits and security tooling (Slither, Echidna). It competes directly with SolidityScan for protocol-level smart contract security work and contributes widely used open-source analysis tools.
- ChainSecurity: ChainSecurity is a smart contract audit firm (acquired by PwC) specializing in formal verification and security audits for DeFi protocols. It directly competes with SolidityScan for high-value protocol audit engagements and formal-verification tooling customers.
- OpenZeppelin: OpenZeppelin provides smart contract security tools (defender, code review) and runs one of the largest smart contract audit practices. It competes directly with SolidityScan across both automated tooling and manual audit services for the same Web3 developer audience.
- PeckShield: PeckShield is a blockchain security company offering smart contract auditing and on-chain monitoring. It is a direct peer in the smart contract security market, serving many of the same DeFi and protocol clients as SolidityScan.
- SlowMist: SlowMist is a blockchain security firm offering smart contract audits, threat monitoring, and AML analytics. It competes directly with SolidityScan in serving DeFi and Web3 protocol customers across audit and continuous monitoring needs.
- Quantstamp: Quantstamp is a well-established blockchain security firm offering smart contract audits and automated security analysis. It targets the same DeFi and protocol customer base as SolidityScan with a similar mix of automated scanning and manual audit services.
- Certora: Certora is a leading smart contract security platform offering formal verification and automated analysis tools for EVM contracts. It is the closest direct peer to SolidityScan in the automated smart contract security tooling category, serving similar Web3 developer and protocol customers.
- Mythril: Mythril is a popular open-source security analysis tool for EVM smart contracts developed by ConsenSys Diligence. It is a direct peer to SolidityScan's automated scanning offering, though distributed as free open-source software rather than a paid SaaS.
Broad incumbents
- Consensys Diligence: Consensys Diligence is the audit and security arm of Consensys (MetaMask, Infura, Truffle). As a broad incumbent in Web3 infrastructure, it offers smart contract audits that directly overlap with SolidityScan while bundling access to the broader Consensys developer stack.
Emerging players
- Immunefi: Immunefi is the leading bug bounty platform for Web3 and is shown as a partner on SolidityScan's website. While not a direct scanner competitor, it overlaps in the smart contract security ecosystem and is a complementary/competing channel for project security spending.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
SolidityScan social profiles
Digital presenceSolidityScan compliance and trust
Trust signalCompliance2 records
SolidityScan financial estimates
Financial estimateRevenue estimate
Valuation estimate
SolidityScan leadership team
Management profileNumber of profiles
Profiles2 records
SolidityScan funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SolidityScan M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SolidityScan
What does SolidityScan do?
SolidityScan is an AI-powered, cloud-based smart contract vulnerability scanner that analyzes Solidity code to detect security risks, anti-patterns, and exploits across Ethereum, Polygon, Avalanche, BNB Chain, and 100+ EVM-compatible networks. The platform offers automated scanning via code upload or GitHub repository integration, free instant scanning through QuickScan/ThreatScan rug-pull detection, AI-driven code remediation suggestions, security scoring, and publishable audit reports. It is complemented by manual audit services delivered through its parent company CredShields.
Is SolidityScan a public or private company?
SolidityScan is a private company. It is classified as venture growth investor backed and is currently operating.
When was SolidityScan founded?
SolidityScan was founded in 2021. It employs 1 to 10 people.
Where is SolidityScan based?
SolidityScan is headquartered in Singapore, Singapore, in the Asia region.
How does SolidityScan make money?
Three revenue lines are on record. Subscription Plans are the primary driver. The others are verified Audit Reports and manual Audit Services.
Who are SolidityScan's main competitors?
Direct peers on record are Trail of Bits, ChainSecurity, OpenZeppelin, PeckShield, SlowMist, Quantstamp, Certora and Mythril. Consensys Diligence is listed as a broad incumbent. Immunefi is listed as an emerging player.
Does SolidityScan have an API?
Yes. SolidityScan provides a public REST API for automated smart contract vulnerability scanning. The API allows developers to programmatically initiate scans, retrieve vulnerability reports, and access security scores for contracts. Documentation is available at https://apidoc.solidityscan.com/. Webhooks are supported for real-time alerts. Developer documentation is at apidoc.solidityscan.com.
What industry is SolidityScan in?
SolidityScan's product category is Smart Contract Security & Audit Software. Its primary akta.pro industry code is FSAPAJAK, Security Testing Tooling (SAST/DAST for smart contracts, fuzzing), with a secondary code of FSAPAJAA, Smart Contract Auditing & Formal Verification. Its NAICS code is 5415 and its SIC code is 7372.