SolidityScan logo

SolidityScan

Claim

SolidityScan is a web-based smart contract security platform for scanning Solidity code, repositories, and contract references. Generate audit reports and share results with collaborators.

SolidityScan preview

Overview

SolidityScan is a smart contract vulnerability scanner and auditing tool built for Web3 projects. It scans Solidity code, repositories, and deployed contract references to identify security issues, generate audit reports, and surface remediation guidance.

The product is aimed at developers, security teams, and organizations that need automated contract checks alongside report publishing and team collaboration. Its public pages emphasize multi-chain support, broad detector coverage, and integrations for GitHub, Slack, GitHub Actions, and other blockchain tooling.

Features

Repository and file-based scanning

Upload code or connect a repository link, then run automated scans when code updates. This supports ongoing security checks instead of one-off reviews.

Multi-chain and protocol coverage

The product says it supports Ethereum, Polygon, Avalanche, Binance, and more EVM chains, with QuickScan extending to a wide range of supported protocols.

Broad vulnerability detection

SolidityScan says it can identify more than 700 vulnerability detectors across 84 attack categories, including SCWE coverage, logical flaws, misconfigurations, and gas optimization issues.

Multiple report workflows

The tool generates audit reports, including self-published, verified, KYC, and manual audit flows, and the pricing page mentions PDF export and report history.

Remediation guidance

Sources describe AI-powered remediation suggestions, including tailored code suggestions and issue prompts to help users interpret and fix findings.

Team collaboration and workflow integrations

Users can invite teammates, collaborate on projects, and connect GitHub and Slack for scan triggers and alerts. The pricing page also lists GitHub Actions and private API access on paid plans.

Use Cases

  • Pre-deployment contract review

    Scan a Solidity file or repository before deployment to catch vulnerabilities, gas issues, and other weaknesses early in the release process.

  • Rapid contract triage

    Use QuickScan to get a simple threat scan and rug-pull check on a contract address, Git repository, or uploaded file when you need a fast first pass.

  • Audit reporting and publication

    Publish a self-published, verified, KYC, or manual audit report when you need a shareable record for stakeholders, partners, or investors.

  • Ongoing team monitoring

    Connect GitHub and Slack so scans can run when repositories change and alerts reach the team in real time.

  • Security research support

    Use the vulnerability coverage and score outputs as a research or support layer for security teams that want a structured view of issues before a deeper manual audit.

Pros and Cons

Pros

  • Supports automated scans from uploaded files or repository links.
  • Covers a wide set of detectors and attack categories, including SCWE coverage.
  • Offers multiple reporting workflows, including self-published and verified reports.
  • Includes team collaboration features and workflow integrations.
  • Provides remediation guidance alongside scan results.

Cons

  • Some workflows and integrations are plan-dependent, based on the pricing page.
  • The source does not provide full technical documentation for every detector or report type on the pages reviewed.

FAQ

What does SolidityScan do?

SolidityScan is positioned as a smart contract vulnerability scanner and auditing tool. It supports automated scans, detailed audit reports, and report publishing flows for different review needs.

How do I run a scan?

The source shows a quick scan flow that can start from a blockchain address, Git repository, or uploaded Solidity file, then return a concise analysis report within seconds.

Is SolidityScan free to use?

The pricing page shows paid plans plus a trial option with two free scans on signup. Plans include on-demand, monthly, yearly, and enterprise options.

Can teams use SolidityScan together?

Yes. The homepage says users can invite team members to view or edit projects, and the pricing page includes team-oriented plans and support options.

What chains and integrations are supported?

The source shows support for Ethereum, Polygon, Avalanche, Binance, and additional EVM chains, plus integrations such as GitHub, Slack, GitHub Actions, Remix, Blockscout, and others.

Quick Facts

Category
Smart contract security
Platform
Web-based SaaS
Primary users
Developers, security teams, and Web3 organizations
Supported ecosystems
Ethereum, Polygon, Avalanche, Binance, and other EVM chains
Integrations
GitHub, Slack, GitHub Actions, Remix, Blockscout, and more
Pricing model
Paid plans with trial and enterprise contact flow