Verify a decision
Every moderation decision on AVOID.NET is anchored to the Solana blockchain. You don't have to trust us — you can verify cryptographically that we committed to a verdict at a specific moment and have not rewritten it.
How verification works
- We commit. When a moderator accepts/rejects a submission, we serialize the decision into deterministic UTF-8 bytes (
payload_canonical_string), hash it with SHA-256, encode the digest as base58, and write it to Solana inside an SPL Memo v2 transaction. - We store the bytes. The exact bytes we hashed are stored alongside the decision in our database. Anyone can read them and recompute the hash in any language.
- You compare three values. Database hash, your independently-recomputed hash, and the hash inside the on-chain memo. If all three match, the decision is authentic and timestamped.
The on-chain memo format is
AVOID.NET|v1|h:<b58-sha256>|d:<id>|t:<iso>Find a signature on any investigation page's decision log, or run python -m src.verify_decision --signature <sig> for a CLI check.
- Sequence
- #2
- Score
- 0 → 0 (0)
- Cluster
- mainnet-beta
- Slot
- 443517012
- Off-chain at
- 2026-08-25T19:47:12.800Z
- Anchored at
- —
- Block time
- —
Independent verification
- 1. Database (off-chain)
- H5rqGuuB5zVLPPqJ5dGMC74Db6BBZMvca61g6UTkH5nt
- 2. Recomputed (your browser)
- computing…
- 3. On-chain (Solana memo)
- fetching…
Canonical bytes hashed (1436 chars)
{"actor":"reviewer","decided_at":"2026-08-25T19:47:12.569Z","decision":"review","investigation_id":"8209129b-5275-4293-8467-0589f57906c8","new_score":0,"page_slug":"clickfix-macos-go-based-infostealer-crypto-wallet-drainer-august-2026","prev_score":0,"reason":"The page's core technical narrative (DRAIN function, targeted cryptocurrencies, credential theft capabilities, IOCs, and Aeza Group infrastructure attribution) is closely and accurately sourced to the primary Huntress report and corroborated by multiple independent outlets and the U.S. Treasury's own sanctions press release. The main weaknesses found are: the summary's claim that Monero is fully targeted by the DRAIN function overstates what the cited sources (and the page's own later section) actually establish; the November 2025 Aeza-related sanctions timeline entry mischaracterizes a trilateral US/UK/Australia action as an Australia-only round and gets the date wrong by roughly two and a half weeks; and the mitigation section, while accurate, omits wallet-specific remediation advice (moving funds/rotating seed phrases) that a source already cited elsewhere on the page recommends. No inverted or unsafe advice, no fabricated malware-family attribution, and no unsupported implication of a legitimate vendor were found.","score_delta":0,"sequence_num":2,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}