API
POST /victims
A drainer's victims: every wallet that signed its own SOL or tokens over to it, with what each lost.
Request
Costs 3 analyses from your plan, or 3 credits, like a deep analysis, and takes up to about two minutes. Iris reads the address's whole history, oldest first, up to about 60,000 transactions. A transaction is a theft when the drainer didn't sign it, the drainer's SOL or tokens went up, and a signer's went down. Solana only.
| Field | Type | Meaning |
|---|---|---|
address | string | Required. The drainer's wallet. |
request.sh
1curl -X POST https://iriscan.app/api/victims \2 -H "Authorization: Bearer $IRIS_KEY" \3 -H "Content-Type: application/json" \4 -d '{ "address": "<drainer>" }'Response
| Field | Type | Meaning |
|---|---|---|
victims | number | How many wallets it took funds from. |
sol, usd, tokens | number | Taken from all of them: SOL (wrapped included), dollar stablecoins, and how many other tokens. |
transactions_read, complete | number, boolean | How much history was read, and whether all of it was. complete: false: the totals cover what was read. |
first, last | string | null | The first and last theft, ISO 8601 UTC. |
top[] | Victim | The 200 largest, by SOL then stablecoins: address, sol, usd, tokens, transactions, first, last, and the signature of its first theft. |
A scan that fails is refunded. One that reads the history and finds no victim is still charged.