/decodeDecode raw EVM calldata into a named function, signature and arguments, plus security risk flags (unlimited token approval, setApprovalForAll, ownership transfer, unknown selector, native value transfer). Keyless, deterministic, no simulation - the cheap way for an agent to understand and risk-screen a piece of calldata before signing.
{
"additionalProperties": false,
"properties": {
"data": {
"description": "Transaction calldata (hex, 4-byte selector + ABI args).",
"pattern": "^0x[a-fA-F0-9]*$",
"type": "string"
},
"to": {
"description": "Target address (optional, for context only).",
"pattern": "^0x[a-fA-F0-9]{40}$",
"type": "string"
}
},
"required": [
"data"
],
"type": "object"
}{
"decoded": {
"args": {
"amount": "115792089237316195423570985008687907853269984665640564039457584007913129639935",
"spender": "0xd8dA6BF26964aF9D7eEd9e03E53415D37aA96045"
},
"function": "approve",
"signature": "approve(address,uint256)"
},
"disclaimer": "Static decode + keyless eth_call preview only. This is not financial advice and not a guarantee: a call that would succeed now can still revert at broadcast time (state changes, slippage, MEV). Always verify before signing.",
"risk": {
"flags": [
{
"code": "unlimited_approval",
"detail": "approval amount is effectively unlimited",
"severity": "danger"
}
],
"level": "danger"
}
}