This app runs inside the BotSurf browser. Don't have it yet? Get the app or extension now!

Signature Request Origin Explainer

Scam Detection · All
0 installs · Verified BotGentz app
Launch App
Opens in BotSurf — try it free, no account needed.
CategoryScam Detection
PlatformAll
Pricing $4.99/mo
Installs0
Free 7-day trial, no card. Or hold 25,000 BOT instead.
Get BotSurf — free
The browser these apps run in. Free on every platform, no account needed to try an app.

About this app

WHAT IT DOES

Signature Request Origin Explainer reads signature request data from your wallet, whether it is a structured EIP-712 message or a plain text message, and analyzes who is requesting the signature, what they are asking you to sign, and what the signature will authorize. It takes the requesting page URL and title as context, identifies whether the request comes from a known dApp or an unknown domain, and generates an AI explanation of the risks you should consider before signing.

HOW TO USE

When your wallet prompts you to sign a message, copy the signature request data from your wallet or the requesting dApp. Open the Signature Request Origin Explainer, connect your EVM wallet, and paste the EIP-712 JSON or plain text message into the input area. Optionally, enter the requesting page URL for context. Click "Analyze signature request" to decode the message and generate an explanation. The tool will display the request type, domain, message content, and an origin badge indicating whether the request comes from a known, suspicious, or unknown source. Review the AI explanation to understand who is requesting the signature and what you are agreeing to, then verify the details in your wallet before approving.

TECHNICAL SECTION — SIGNATURE REQUEST ORIGIN ANALYSIS

The tool parses the input to determine the request type. If the input is valid JSON with EIP-712 structure (domain, types, message), it extracts the domain name, verifying contract address, and message fields. If the input is not JSON, it treats it as a plain text message. The tool also analyzes the requesting page URL if provided, comparing it against a list of known dApp domains to identify legitimate sources. Unknown domains are flagged as suspicious. The AI layer receives the decoded data and page context, generating a plain-language explanation of who is requesting the signature and what it authorizes. This approach helps you identify potentially malicious signature requests before you sign.

WHAT IT CANNOT SEE

This tool cannot read the actual intent behind a signature request. It cannot determine if the requesting domain is legitimate or a phishing site without external verification. It cannot detect if the signature will be used maliciously after it is signed. It cannot read the user's private key or session data. It cannot determine if the message content is authentic. The user must still verify the signature request details in their wallet before signing. The AI explanation is generated from the input data and does not constitute financial advice or a security guarantee.

PLEASE NOTE

EVM chains only. Explanations are AI-generated from the data the app reads—always review what you are actually signing in your wallet before approving it. The wallet's own signature prompt remains the final and only protection against unwanted signatures. This tool is read-only; it never sends transactions or signs anything on your behalf.

Similar Apps

Log in to BotGentz

Suggest an App

Tell us what you'd find useful — if we build it, we'll email you the moment it's ready.