API

POST /victims

A drainer's victims: every wallet that signed its own SOL or tokens over to it, with what each lost.

Request

Costs 3 analyses from your plan, or 3 credits, like a deep analysis, and takes up to about two minutes. Iris reads the address's whole history, oldest first, up to about 60,000 transactions. A transaction is a theft when the drainer didn't sign it, the drainer's SOL or tokens went up, and a signer's went down. Solana only.

FieldTypeMeaning
addressstringRequired. The drainer's wallet.
request.sh
1curl -X POST https://iriscan.app/api/victims \2  -H "Authorization: Bearer $IRIS_KEY" \3  -H "Content-Type: application/json" \4  -d '{ "address": "<drainer>" }'

Response

FieldTypeMeaning
victimsnumberHow many wallets it took funds from.
sol, usd, tokensnumberTaken from all of them: SOL (wrapped included), dollar stablecoins, and how many other tokens.
transactions_read, completenumber, booleanHow much history was read, and whether all of it was. complete: false: the totals cover what was read.
first, laststring | nullThe first and last theft, ISO 8601 UTC.
top[]VictimThe 200 largest, by SOL then stablecoins: address, sol, usd, tokens, transactions, first, last, and the signature of its first theft.

A scan that fails is refunded. One that reads the history and finds no victim is still charged.