Submit your Sui/Move, Solidity, or Rust contract. Our 8-phase engine — combining static analysis, multi-agent AI debate, and sandbox execution — delivers a confirmed vulnerability report in 24–48 hours.
Pattern DB includes the exact vulnerability class (u128 tick-math overflow) behind the May 2024 Cetus $223M exploit.
No upload to third-party servers. You send your code securely (zip or private GitHub). We run the scan on our local machine and deliver the full report.
confidence > 0.85 AND confirmed PoC execution pass through.#[test_only] (Move) or forge test (Solidity) exploit script. Runs locally. 7-loop auto-healer fixes syntax errors. EXECUTION_CONFIRMED = 100% True Positive. No execution = AI-only tier (clearly labelled).Score = D1(0.20) + D2(0.30) + D3(0.20) + PoC(0.30). Findings below threshold are suppressed entirely. Only high-confidence, multi-dimension-confirmed findings reach the report.We are honest about where the tool stands. We will not claim capabilities we cannot deliver.
| Language | Chain | Status | FP Rate | Sandbox | Notes |
|---|---|---|---|---|---|
| Sui Move | Sui | Production Ready | 10–20% | ✓ sui move test | 15 CLMM detectors, full AST, self-improving DB |
| Aptos Move | Aptos | Production Ready | 10–20% | ✓ aptos move test | Shared Move pattern base |
| Solidity | EVM chains | Beta | 35–50% | ⚡ forge test (partial) | Foundry sandbox in progress. Slither integration active. |
| Rust / Anchor | Solana | Alpha | 40–60% | ✕ No sandbox yet | AI debate only. Anchor-specific detectors coming Q3 2026. |
All tiers use the full 8-phase pipeline. Tiers differ by depth of report, PoC code, and turnaround time.
Fill in the details below. After payment, you'll receive an email with secure code submission instructions within minutes.
No tool can guarantee 100% secure code. Himaya is your first line of defense — catching known patterns, discovering novel attack paths, and validating with adversarial AI. We reduce your audit scope and cost. We complement, not replace, professional security review.