Blockchain Analytics & Crypto Forensics API

Yes — OnChainRisk is a REST API for crypto forensics and wallet risk scoring on supported networks. Use it to assess address risk, examine fund flows between counterparties, and screen wallets before deposits, payouts, or compliance review. Create a free sandbox key, test your integration, then upgrade to a paid key for production.

Integrate wallet risk scoring, fund-flow analysis, and compliance screening into your app, bot, or compliance workflow. Simple REST API with predictable per-request pricing. One endpoint, structured risk and forensics signals. Multi-chain coverage is in active rollout.

Sandbox-first: create a free sandbox key (prefixed ocr_test_), test your integration against real endpoints, then upgrade to a paid key for production. Prefer to browse first? Explore Swagger UI or download the OpenAPI YAML.

Developer quickstart

1

Create a sandbox API key

Sign up for a free account and create a sandbox key (prefixed ocr_test_) in the dashboard. No card required.

2

Test your integration

Call POST /api/v1/check with Authorization: Bearer <your sandbox key>. Sandbox returns the same JSON shape as paid tiers, so your client code drops in unchanged.

3

Upgrade for production

Once your integration is tested, swap in a paid key for production rate limits and full analysis — no code changes beyond the key.

API Capabilities

Address Risk Scoring

Pass an address, get a 0-100 risk score with risk level (LOW/MEDIUM/HIGH/CRITICAL), pattern flags, and detailed breakdown.

Fund Flow Tracing

Get inbound and outbound fund flows with labeled counterparties. Track exchange deposits, DeFi interactions, and bridge transfers.

Entity & Attribution Labels

Every response is enriched with labels from our database: exchange hot/cold wallets, known scammers, protocol contracts, and VASP entities.

Sanctions & Risk Signals

Where supported, addresses are checked against OFAC SDN entries and known exploiter, scam, and abuse lists. Matches surface as risk flags in the response — coverage varies by network.

Cross-Chain Detection

Automatic bridge-transfer detection on supported networks. Follow funds that hop between chains like Ethereum, Arbitrum, and Optimism.

Webhook Alerts

Monitor addresses via the watchlist API. Webhook alerts are available for supported watched-address events, with optional HMAC signing and automatic retries.

Crypto forensics API

Use the API for crypto forensics: examine inbound and outbound fund flows between counterparties, surface entity and attribution labels, and pull investigation-ready risk signals through documented fields like patternFlags and riskReasons — the same engine behind our forensics tools, exposed as a REST endpoint. Coverage varies by network; sanctions and abuse checks apply where supported.

Quick Start

The same call works with a sandbox (ocr_test_) or a paid key — start in the sandbox, then swap the key for production.

cURLREST API
curl -X POST https://api.onchainrisk.io/api/v1/check \
  -H "Authorization: Bearer ocr_test_your_sandbox_key" \
  -H "Content-Type: application/json" \
  -d '{"address": "0x722122dF12D4e14e13Cf261CbaE0587c9e5b6967"}'
Response (shortened)
{
  "address": "0x722122dF12D4e14e13Cf261CbaE0587c9e5b6967",
  "network": "eth",
  "riskScore": 95,
  "riskLevel": "critical",
  "riskConfidence": "high",
  "addressInfo": {
    "type": "contract",
    "balance": "0.42 ETH",
    "balanceUsd": 852.74,
    "txCount": 78642,
    "firstSeen": "2019-12-16T18:05:00Z",
    "lastSeen": "2026-05-30T11:42:10Z"
  },
  "patternFlags": [
    "OFAC/sanctions list match",
    "BULK COLLECTION pattern: 24 inbound TXs in 600s"
  ],
  "analysisTime": 4218,
  "timestamp": "2026-05-30T11:42:14Z"
}

Risk signals come through documented fields like patternFlags and riskReasons (with index-aligned detail in patternFlagDetails). Sanctions and abuse checks are applied where supported — coverage varies by network, and a clean result is not a guarantee.

Language Examples

Python
import requests

resp = requests.post(
    "https://api.onchainrisk.io/api/v1/check",
    headers={"Authorization": "Bearer ocr_test_your_sandbox_key"},
    json={"address": "TXyz..."}
)
data = resp.json()
print(f"Risk: {data['riskScore']}/100")
JavaScript / Node.js
const resp = await fetch(
  "https://api.onchainrisk.io/api/v1/check",
  {
    method: "POST",
    headers: {
      "Authorization": "Bearer ocr_test_your_sandbox_key",
      "Content-Type": "application/json",
    },
    body: JSON.stringify({
      address: "0x722122dF..."
    }),
  }
);
const data = await resp.json();
console.log(`Risk: ${data.riskScore}/100`);

API Features

Auto chain detection (just pass the address)
Full analysis in a single API call
JSON response with structured data
Multi-chain coverage across supported networks
Watchlist API for address monitoring
Webhook alerts with optional HMAC signing and automatic retries
Bulk analysis via CSV upload (Business tier)
Rate limiting with clear headers
API key management in dashboard
OpenAPI/Swagger documentation

API Pricing

Free

$0/mo

For testing and evaluation

  • 10 requests per 24 hours
  • Multi-chain coverage (supported networks)
  • Basic risk score
  • Sandbox API key for integration testing
Recommended

Pro

$49/mo

For developers and small teams

  • 1,000 requests/month
  • 1 API key
  • 10 req/sec rate limit
  • Full analysis response
  • Email alerts

Business

$249/mo

For companies and compliance teams

  • 5,000 requests/month
  • 10 API keys
  • 50 req/sec rate limit
  • Webhook alerts (HMAC)
  • Bulk CSV analysis

Pay with USDT (TRC-20 or ERC-20). No KYC, no bank account needed. Instant activation.

API Use Cases

WhoHow they use the API
Exchanges & walletsScreen deposits and withdrawals before accepting funds, and flag high-risk addresses for manual review.
OTC desks & P2P platformsCheck counterparty wallets before settlement to reduce exposure to funds linked to hacks, scams, or mixers.
Payment processors & gatewaysScreen a destination wallet before releasing a merchant payout, including USDT-TRC20 flows.
Compliance teamsAutomate wallet risk review and route elevated-risk addresses into your existing case workflow.
InvestigatorsTriage suspicious wallets, trace fund flows, and surface labeled counterparties during an investigation.
Crypto apps & paymentsAdd wallet risk scoring before payouts or withdrawals to reduce counterparty risk in your product.

Pre-Settlement / Pre-Payout Wallet Screening

Screening a destination or counterparty wallet's risk before a payout or settlement is a common use of the API for payment processors, OTC desks, and P2P platforms: payout/settlement request → screening API call → review the risk score and signals → approve, route to manual review, or escalate — before funds move. Sanctions checks apply where supported.

See the full payout / settlement screening workflow & use cases →

Docs, tools & developer surface

Everything you need to evaluate and integrate is public and inspectable — interactive docs, the full OpenAPI spec, ready-to-import Postman collections, and a sandbox you can call against real data.

Network coverage

Multi-chain coverage is in active rollout. Availability and historical completeness vary by network — see the live coverage matrix and methodology for current per-network status.

Start Building with the API

Create a free account, generate a sandbox key, and make your first call in minutes. Upgrade to a paid key when you're ready for production.