Directory of blockchain security audit and onchain monitoring vendors
The AI FinTech Index holds 2 of them, each graded on the same 15 capability axes from public sources, with the artifact every grade was read from attached to the record.
No vendor pays for inclusion, placement or rating. Counts generated 2026-08-24 across 490 indexed vendors. What moved is in the change log.
An audit is a point in time opinion on code that changes, so the useful questions are what was in scope, what was excluded, and whether monitoring continues after the report is published.
What is in this directory. Screened to code audit and security monitoring. Financial crime attribution sits in the blockchain analytics directory.
What the public record shows in this directory
The share of the 2 indexed vendors here whose public record answers each of the nine regulatory questions a financial institution diligence process works through, and where this directory ranks against the other 50 directories in the index on the same question, highest share first. A thin share means the public record is thin, not that a control is absent.
The AI FinTech Index lists 2 blockchain security audit and onchain monitoring vendors, graded on 15 capability axes from public sources with no paid placement and no aggregate score. Across this directory the best documented part of the public record is how the model works and how it is validated at 100 percent, and the thinnest is liability and customer recourse at 0 percent, which is 50 highest of 50 directories in the index on that question. Across the whole index of 490 vendors, none documents all nine regulatory axes in public and the average documents 2.94.
Source: AI FinTech Index, August 2026
| Vendor | Category | AI Centrality | Website |
|---|---|---|---|
|
C
CertiK
CertiK is a blockchain security and on chain risk intelligence firm running three connected businesses. Its audit practice combines manual review by security engineers with formal verification and proprietary tooling that automates vulnerability detection, with more than 5,500 audits completed. Skynet is a continuous scoring system covering more than 17,000 projects, exchanges and wallets, publishing a security score built from six named categories spanning code security, fundamental health, operational resilience, governance strength, market stability and community trust, with sub methods that include audit coverage measured by source lines of code, token behaviour scanning for privilege misuse and mint or burn risk, repository activity metrics and website vulnerability scanning. SkyInsights is its on chain intelligence and risk analytics platform, providing entity attribution, behavioural classification and address and transaction risk scoring through a real time application programming interface, sold to exchanges, financial institutions and crypto custodians for anti money laundering and counter terrorist financing screening and integration with transaction monitoring engines. Founded in 2017 by professors from Yale University and Columbia University, the firm holds ISO 27001 and SOC 2 Type 1 and Type 2 examinations scoped to the platform hosting its services, and publishes both its scoring methodology and that methodology's stated limitations.
|
crypto-and-digital-assets | B | certik.com |
|
S
Scorechain
Scorechain is a Luxembourg blockchain analytics and compliance provider working with banks, brokers, hedge funds, OTC desks, asset managers, payment providers, exchanges, regulators and law enforcement across more than 45 countries. It monitors transactions across over 100 blockchains, manages more than 500 million addresses, has attributed over 1,800 virtual asset service providers, and runs a library of more than 300 money laundering risk scenarios with sanctions screening against the major lists. Its defining position is methodological transparency: risk analytics are configurable and inspectable rather than proprietary scores, on the argument that institutions must understand how risk is assessed and retain control over analytical decisions. Risk rules, sanctions lists and reporting templates are tailored to whichever regime a customer operates under, and the platform runs on a private cloud hosted in the European Union.
|
crypto-and-digital-assets | C | scorechain.com |
Common questions
Is there a directory of blockchain security audit and onchain monitoring vendors?
Yes. The AI FinTech Index lists 2 blockchain security audit and onchain monitoring vendors, each graded on the same 15 capability axes from public sources, with the artifact every grade was read from attached to the record. No vendor pays for inclusion, placement or rating, no vendor is contacted before it is listed, and nothing sits behind a form. Counts generated 2026-08-24.
What counts as onchain security and audit in this directory?
Screened to code audit and security monitoring. Financial crime attribution sits in the blockchain analytics directory. The index holds 2 vendors meeting that screen, drawn from a wider crypto-and-digital-assets category and from adjacent categories where the vendor belongs on the same shortlist. A vendor filed under a different category can still appear here, because a buyer building this shortlist does not sort by our filing.
What should a buyer check before shortlisting onchain security and audit vendors?
Start with what this segment does not publish. Across the 2 indexed vendors, the thinnest parts of the public record are liability and customer recourse at 0 percent, deployment model and data residency at 50 percent, and which models sit underneath at 50 percent. A thin public record predicts the length of a diligence process rather than the absence of a control, so these are the questions to put in writing early. An audit is a point in time opinion on code that changes, so the useful questions are what was in scope, what was excluded, and whether monitoring continues after the report is published.
Other directories in Crypto & Digital Assets
One category is several buying decisions sharing a label. Each of these narrows the same market to a different one.