Skip to content

Execute only what has been approved

Chainwall checks each onchain operation against approved people, contracts, tokens, and rules before executing it through a protected account.

Chainwall transaction execution pathOperators, interfaces, and automation prepare an action. Chainwall checks current approved settings, the exact action, allowed calls, and the protected account before the protocol call runs. Select any part for an explanation.PREPARECHECKED ONCHAINEXECUTEPERSONOperatorINTERFACEChainwallweb portalSDK / BOTAutomationAPPROVED CATALOGOnchain registryLIVE APPROVALExact action+ policyALLOWED CALLSApproved workflowBYPASS BLOCKEDProtected accountSMART ACCOUNTSafe orvaultTARGETProtocolall checks passed

Scroll to explore the diagram →

Approved catalog

Define precisely what is allowed

Create trusted, programmable onchain action templates for protocol calls, transfers, governance actions, and vault operations.
Chainwall transaction execution path. Helpful tools prepare an action. Contracts check the current approved catalog and policy before the protected account calls the protocol.

Supported by

Verify the operation behind every signature

Chainwall checks that the call matches what people reviewed, the contract is approved, and the current approval rules are met.

See what the contracts verify
Ink portrait of Bruce Schneier

Cryptography doesn’t exist in a vacuum.

A valid signature is only one part of the system. Interfaces, permissions, contract addresses, account paths, and admin changes can still turn it into the wrong operation.

Configure the rules, approve one action, then execute

Define approved people, contracts, and rules, then tie each approval to the exact action a protected account will run.

  1. Configure

    Register approved people, contracts, token records, rules, and accounts.

  2. Approve

    Bind approval to the exact action, deadline, operator, and account.

  3. Execute

    Recheck current state and run through a protected account.

See the complete operation flow

Enforce execution rules and review sensitive changes

Chainwall checks the current policy, exact request, allowed calls, and account path when an action runs. Teams can separately configure approvals and waiting periods for sensitive changes.

Explore the protection layers
Runtime checks and configured change controls protect one exact approved actionApproved dataCurrent policyExact requestAllowed workflowAccount pathChange controlONE FINGERPRINTExact action

For treasuries, protocols, vaults, and automation

Apply the same approved lists and approval rules to human operators, governance approvers, protocol admin tools, and bots.

Treasuries, protocols, vaults, and automation use the same approved operation pathTreasuryMove valueProtocolChange settingsVaultSeparate accountsAutomationLimit botsSAME RULESApproved action

Treasury operations

Run transfers, lending, staking, fee sweeps, and rebalances as repeatable actions, with stronger approvals for unusual requests.

Protocol administration

Require specific approvals for market listings, oracle rotations, supply caps, pauses, upgrades, and controller changes.

Multiple protected accounts

Use separate accounts for each strategy, desk, or customer while reviewing permissions and activity in one place.

Restricted automation

Limit bots and internal tools to named actions and approved contracts instead of letting them build arbitrary transactions.

List markets with approved tokens and price feeds

An approved market listing remains blocked until a separate token-catalog write containing the registered price feed receives operations and risk approval and completes its one-day wait.

See the tested sequence

Prepare operations locally and verify them onchain

The browser console builds transactions locally. Smart contracts check the submitted call, protected accounts block bypasses, and sensitive admin changes can be delayed. A compromised interface therefore has fewer ways to turn a lie into execution.

Block

Reject calls, operators, contracts, rules, or account paths that do not match the approved action.

Delay changes

Delay sensitive permission changes for separate approval and review before they become active.

Verify onchain

Read approved catalog, policy, pending changes, approvals, and execution records directly from the chain.

Read how Chainwall handles these risks
Vitalik Buterin presenting at Ethereum Community Conference
A more specialized and more focused way to secure onchain interactions.
Vitalik Buterin

Frequently asked questions

What Chainwall checks, how it works with existing accounts, and how teams deploy it.

What is Chainwall?

Chainwall is a smart-contract system for privileged onchain operations. It checks who is acting, which contracts and approved token records an operation may use, what approvals are required, and which exact action may run from an account holding funds.

Does Chainwall require a trusted backend?

No. The browser console can build requests locally, read contract state, and submit directly to the chain. Optional services may improve convenience, but smart contracts make the final decision.

Who is Chainwall for?

Chainwall is for protocol teams, treasuries, funds, DAOs, vault operators, and product teams that need repeatable actions, clear approvals, protected accounts, and slower changes to sensitive permissions.

Protect your next privileged onchain operation

We can help you define the checks and waiting periods for your accounts, contracts, and approval rules.

Request access