Scam Sniffer Extension cover
Scam Sniffer Extension icon

Scam Sniffer Extension

Extensions

Scam Sniffer is a Chrome browser extension for Web3 scam defense. Two jobs: block or warn on phishing / drainer sites before you connect, and inspect signatures before you approve (Permit2, setApprovalForAll, NFT listings, blind eth_sign, balance-change simulation). Blocklist data is reused by big wallets and exchanges. Covers EVM plus Solana, Sui, BTC, TON, TRON drainers in marketing. Not a wallet. Never needs your seed. Premium is on by default (~0.25% on selected DEX trades); Free plan caps detections. Desktop Chrome-centric.

Features
TypeSecurity
PlatformsChrome
FeaturesReal-time phishing and drainer detection, malicious domain blocking

Description

Crypto phishing rarely looks like a random email anymore. It looks like a Google Ad for “Uniswap,” a reply-guy on X with the right PFP, a Telegram “support bot,” or a perfect clone of Blur that asks for one Seaport signature. Scam Sniffer sits in the browser to catch that path. Install from the official Chrome Web Store listing linked on scamsniffer.io. It is not custody. It does not hold keys. It watches domains and signing prompts next to MetaMask-class wallets.


Layer one is Web3 safe browsing. Real-time malicious site detection plus a blocklist database the project says is trusted or consumed by names like Binance, Rabby, Phantom, and Bybit. Open-source scam-database repos publish phishing domains and addresses (public dumps often lag live feeds by about a week so attackers cannot instantly reverse-engineer the full realtime set). Coverage messaging spans EVM drainers and Solana, Sui, Ripple, BTC, TON, TRON ecosystems. Frontend-compromise and supply-chain style site takeovers are part of the threat model: the URL can be “real” while the injected script is not.


Layer two is signature security. When a site asks you to sign, Scam Sniffer inspects the payload and tries to explain risk in plain language. Focus areas: Permit / Uniswap Permit2, unlimited token and NFT approvals, NFT listing and offer flows across Seaport, Blur, LooksRare, Blend-style protocols, swap-shaped drains, and dangerous blind signing (eth_sign / opaque EIP-712). Transaction simulation aims to show clear balance changes so “list my NFT” does not secretly become “give this contract everything.” That is the same problem class Pocket Universe and Rabby attack from different angles. Scam Sniffer leans harder on phishing intel + signature taxonomy; Rabby owns in-wallet simulation as the primary product.


Social and social-engineering add-ons matter because that is where clicks start. X (Twitter) phishing alerts for fake accounts and scam ads, Telegram fake-bot warnings, reminders about risky third-party app OAuth on social accounts, and malware / fake app-browser-game detection show up in the feature list. Useful if you live on Crypto Twitter. Not a full general-purpose antivirus for non-crypto phishing (password portals, bank clones outside Web3).


Pricing: Chrome Store copy states Premium enabled by default with a 0.25% fee on selected DEX trades, with an option to switch to Free with limited monthly detections. Official extension page mirrors Free (capped detections, browsing + Twitter warnings + signature security) vs Premium (unlimited detections, no ads, dedicated support). That default-on fee model drew community side-eye, same genre of complaint Pocket Universe gets for its 0.8% DEX cut. If you trade size on covered venues, open settings, pick Free deliberately, or accept the tax as the cost of unlimited alerts. Check the live plan UI; fee pairs and caps move.


What it does not do: recover stolen funds, protect mobile wallet apps, or replace approval hygiene (still revoke stale allowances on Revoke.cash). Chrome-first; Firefox/Edge are weak or absent versus multi-browser security tools. Simulation and blocklists miss zero-days. Clicking through a red warning voids the point. Fake “Scam Sniffer” extensions are themselves a phishing vector. Only use the official store ID / site.


Versus Pocket Universe: both pre-sign shields. Pocket leans hard on asset-movement simulation + optional coverage; Scam Sniffer leans phishing blocklists (including B2B reuse) + signature-type warnings + social alerts, with a lower published DEX fee (0.25% vs ~0.8%). Versus Revoke.cash: Revoke cleans existing approvals; Sniffer tries to stop the bad signature and bad site. Versus Rabby: use Rabby as wallet + Sniffer as extra browsing/signature intel, or skip Sniffer if Rabby’s simulation is enough and you hate another fee layer.


Who it’s for: desktop DeFi / NFT users who click links from X and Discord and want a second opinion before Connect and Sign. Who should skip it: mobile-only users, people who refuse any DEX fee and will not switch to Free, and users who need broad non-crypto phishing coverage more than Web3 signature depth.


STRENGTHS

- Strong phishing / drainer site detection with a blocklist used beyond the extension itself

- Deep signature checks for Permit2, approvals, NFT listings, and blind signing in plain language

- Multi-ecosystem drainer coverage (EVM plus Solana, BTC, TON, TRON, Sui in product claims)

- X / Telegram social phishing warnings match how most users actually get baited

- Transaction simulation and approval monitoring add a Confirm-time safety net

- Free plan exists; open scam-database culture helps the wider wallet ecosystem

- Lightweight add-on. No seed import, no forced wallet migration


WEAKNESSES

- Premium default with ~0.25% fee on selected DEX trades. Easy to pay without noticing

- Free plan rate-limits detections. Heavy users hit the wall or pay

- Chrome-centric. Weak or missing Firefox / Edge story versus multi-browser tools

- Not mobile. Signing in Phantom/MetaMask mobile apps gets no extension help

- Blocklists and signature rules lag brand-new drainers. Override risk remains

- Crypto-focused. Thin on general web phishing outside Web3

- Stacking with Pocket Universe / wallet-native alerts can mean popup noise and stacked fees

- Does not revoke old approvals or recover funds after a successful drain

Tags

Comments

Profile

1000

No comments yet.