


The Problem
01
Irreversible loss
Once recorded, a transaction cannot be undone. Smart-contract hacks caused roughly $1.7B in losses in 2024 alone.
02
Code Is Law
03
The limits of testing and manual audits
04
No cross-institution vulnerability sharing
Track Record
SOOHO.IO's Reagent brings AI-based automation to blockchain security. Concentrating Sooho.io's expertise as a leader in smart-contract auditing since 2019, this system is a digital guardian that protects blockchain networks around the clock.

K+
security audit reports issued
01
+
02
K+
03
+
04
The Suite
Reagent consists of three products, each mapped to a stage of the smart-contract development lifecycle (SDLC): automated detection during development, mathematical proof before deployment, and vulnerability sharing after deployment — all in one continuous flow.
Smart Contract Development Lifecycle (SDLC)
Step 01
Analysis
Step 02
Design
Step 03
Development
Reagent Analyzer
Step 04
Testing
Reagent Verifier
Step 05
Release
Step 06
Operations
OpenReagent
Reagent products by stage
01 · Development stage
Reagent Analyzer
Automated vulnerability detection · static analysis
Automatically detects security vulnerabilities in smart contracts under development using 26 rules. Combining pattern-based static analysis with taint analysis, it catches reentrancy, access-control, integer-overflow, and other issues.
26 detection rules (based on SWC · EEA EthTrust)
Supports Solidity and Go (Chaincode)
~15 sec per 1,000 lines · SARIF/PDF reports · CI/CD integration
02 · Pre-deployment
Reagent Verifier
Formal verification · proving "bug-free" mathematically
Mathematically proves that a contract satisfies its defined security spec — even in areas testing cannot reach — providing reproducible, objective safety proofs that manual audits cannot guarantee.
Verifies upgrades, proxies, inheritance, and invariants
Auto-generates counterexample tests (.t.sol) on verification failure
ERC20 · ERC721 · access-control presets · CLI/CI integration
03 · Testing to operations
OpenReagent
Vulnerability-intelligence sharing · open source
Automatically extracts vulnerability signatures from audit reports and shares them safely across institutions without exposing sensitive information — keeping you continuously prepared for vulnerabilities discovered after deployment.
Bytecode matching — detection within seconds per contract
PSI-based privacy-preserving sharing
Linux Foundation Decentralized Trust standard · OSS
Spotlight · OpenReagent
Security that grows stronger over time
SOOHO.IO's Reagent brings AI automation to blockchain security, creating a system that never sleeps. Built on our expertise as security pioneers since 2019, Reagent monitors blockchain networks 24/7, detecting and responding to threats in real-time.

01
It doesn't end with a single audit. By continuously matching newly discovered vulnerability signatures, it checks risks even in already-deployed contracts.

02
As signatures accumulate and more institutions join, detection coverage widens. Network effects increase the solution's value over time.

03
Built to international standards in collaboration with Linux Foundation Decentralized Trust. Released as open source (OSS), so you can start with no adoption cost.
Why Reagent
Why Reagent is different

It augments manual audits, not replaces them.
By automating code analysis that takes people days, it frees auditors to focus on higher-value business-logic review — going beyond the limited rules and high false-positive rates of open-source tools.
01
It proves results reproducibly and objectively.
Where results once depended on auditor skill, formal verification mathematically proves the absence of bugs — leaving verification evidence suited to financial regulation.
02
It supports multiple languages and chains.
Supports both Solidity and Go (Chaincode), targeting EVM-compatible chains. SARIF-standard output integrates naturally into existing development pipelines.
03
It uses international-standard open source.
Built on the SWC Registry and CWE classifications, and transparently validated under Linux Foundation Decentralized Trust governance.
04
Application
Adoption Process






