# DeFi Protocol Security & Audit Profile

> DeFi Protocol Security & Audit Profile is a paid API for AI agents from api.vextorium.com, paid per call via x402, $0.005/call, status unknown (last checked 2026-10-01).

Returns the security profile of a DeFi protocol by name, including audit count and links, hacks suffered, TVL by chain, category, and market cap — sourced live from DefiLlama.

## Facts

- Endpoint: POST https://api.vextorium.com/protocolo-auditorias-pago?utm_source=zero.xyz
- Price: $0.005/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-01
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/defi-protocol-security-audit-profile-2bf6cb77
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_QrwK70pIsmnSBSEJLYvHz

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability defi-protocol-security-audit-profile-2bf6cb77 -d '<json body>'
```

Example prompt: Can you pull up the security profile for Aave — I want to know how many audits it has, links to those audits, whether it's ever been hacked, and its TVL broken down by chain?

## When to prefer this

Use this endpoint when you need a consolidated security and financial snapshot of a specific DeFi protocol by name — especially audit history and hack track record. Prefer it over generic blockchain explorers when you want audit links, hack counts, and TVL all in one call, sourced from DefiLlama's aggregated data.

## Known failure modes

- Protocol name not recognized by DefiLlama — returns null or empty fields
- Misspelled or ambiguous protocol name yields no results
- DefiLlama API unavailability causes upstream data failure
- Protocol exists but has no audit or hack data recorded — fields return null
- TVL or market cap data may be stale if DefiLlama cache is delayed

## How this service works

Security profile of a DeFi protocol by name (Aave, Curve, Pendle...): number of audits and their links, hacks suffered, TVL broken down by chain, category and market cap. More audits and zero hacks is a better signal. Live from DefiLlama.

## Output

Returns a JSON object with the protocol name, number of audits completed, URLs to each audit report, number of hacks suffered, total TVL in USD, TVL broken down by chain (chain name + TVL), protocol category, market capitalization in USD, website URL, Twitter handle, and any additional notes.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "$schema": "https://json-schema.org/draft/2020-12/schema",
 "required": [
  "input"
 ],
 "properties": {
  "input": {
   "type": "object",
   "required": [
    "type",
    "method",
    "bodyType",
    "body"
   ],
   "properties": {
    "body": {
     "required": [
      "nombre"
     ],
     "properties": {
      "nombre": {
       "type": "string",
       "description": "Protocol name, e.g. aave, curve, pendle, lido"
      }
     }
    },
    "type": {
     "type": "string",
     "const": "http"
    },
    "method": {
     "enum": [
      "POST"
     ],
     "type": "string"
    },
    "bodyType": {
     "enum": [
      "json",
      "form-data",
      "text"
     ],
     "type": "string"
    }
   },
   "additionalProperties": false
  },
  "output": {
   "type": "object",
   "required": [
    "type"
   ],
   "properties": {
    "type": {
     "type": "string"
    },
    "example": {
     "type": [
      "object",
      "null"
     ],
     "properties": {
      "web": {
       "type": [
        "string",
        "null"
       ]
      },
      "nota": {
       "type": [
        "string",
        "null"
       ]
      },
      "tvl_usd": {
       "type": [
        "number",
        "null"
       ]
      },
      "twitter": {
       "type": [
        "string",
        "null"
       ]
      },
      "categoria": {
       "type": [
        "string",
        "null"
       ]
      },
      "protocolo": {
       "type": [
        "string",
        "null"
       ]
      },
      "auditorias": {
       "type": [
        "number",
        "null"
       ]
      },
      "tvl_por_cadena": {
       "type": [
        "array",
        "null"
       ],
       "items": {
        "type": [
         "null",
         "object"
        ],
        "properties": {
         "cadena": {
          "type": [
           "null",
           "string"
          ]
         },
         "tvl_usd": {
          "type": [
           "null",
           "number"
          ]
         }
        }
       }
      },
      "hackeos_sufridos": {
       "type": [
        "number",
        "null"
       ]
      },
      "enlaces_auditoria": {
       "type": [
        "array",
        "null"
       ],
       "items": {
        "type": [
         "null",
         "string"
        ]
       }
      },
      "capitalizacion_usd": {}
     }
    }
   }
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "type": "json",
 "example": {
  "web": "https://aave.com",
  "nota": "Más auditorías y 0 hackeos = mejor señal, pero no garantiza seguridad. Fuente: DefiLlama.",
  "tvl_usd": 17974339415,
  "twitter": "https://x.com/aave",
  "categoria": "Lending",
  "protocolo": "Aave V3",
  "auditorias": 2,
  "tvl_por_cadena": [
   {
    "cadena": "Ethereum",
    "tvl_usd": 15143713141
   },
   {
    "cadena": "Base",
    "tvl_usd": 551285749
   },
   {
    "cadena": "Arbitrum",
    "tvl_usd": 521264325
   },
   {
    "cadena": "Plasma",
    "tvl_usd": 428683345
   },
   {
    "cadena": "Avalanche",
    "tvl_usd": 340738781
   },
   {
    "cadena": "Monad",
    "tvl_usd": 315999072
   }
  ],
  "hackeos_sufridos": 1,
  "enlaces_auditoria": [
   "https://aave.com/security"
  ],
  "capitalizacion_usd": null
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/defi-protocol-security-audit-profile-2bf6cb77/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from api.vextorium.com](https://www.zero.xyz/host/api.vextorium.com/llms.txt)
