LearnRisk disclosureschain 4663

Security risks and 0xZAPS token disclosures.

OpenZaps narrows what an agent can do. It does not remove smart-contract, wallet, relayer, market, token, legal, or operational risk.

Transaction postureOwner-signed intents only

Primary risks

No external audit

The contracts and the interface have not been externally audited. They should not be treated as production-cleared for real funds. Depositing funds can result in total loss.

Onchain irreversibility

Transactions, approvals, swaps, and deposits cannot be reversed by OpenZaps once they are submitted onchain. Once an execution lands, nothing here can undo it.

Relayer and executor risk

A relayer, or any executor eligible to submit a recurring or triggered Zap, may fail, censor, delay, or submit at an unfavorable time inside the signed constraints. If no executor serves an intent, nothing runs. Each automated run also pays a fixed 1% of its measured output as a protocol fee.

Market risk

Slippage, liquidity, oracle movement, MEV, token volatility, and gas spikes can cause losses.

Token risk

0xZAPS is an ERC-20. It does not represent equity, revenue, yield, a redemption right, or a guarantee of protocol access. No return is implied.

User responsibility

Users must review wallet prompts, policy fields, amounts and spend limits, recipients, fees, and revocation paths before signing.

Request data and privacy

What the request desk stores

A Request a Zap submission stores the name and email you provide, project details, workflow, protocols or assets, trigger, safety limits, timeline, consent record, minimized campaign labels, and only the referring website's origin. OpenZaps derives a non-reversible abuse-control value from the request network address, but keeps it separately from lead records and never stores the raw address.

Why it is used

Authorized operators use this data only to assess the requested workflow, prevent form abuse, and reply about that request. A server-only email delivery provider forwards the submitted details to the designated OpenZaps operator mailbox so new requests can be reviewed promptly. That notification copy is separately processed and retained under the email delivery provider's and operator mailbox's policies; the database expiry below does not automatically delete an already-delivered email. Submission does not join a newsletter, authorize automated outreach, or grant any wallet or signing authority.

Privacy-minimized product analytics

OpenZaps uses Vercel Web Analytics to understand which public routes and product actions are useful. Query strings and URL fragments are removed before pageviews are sent, and EVM identifiers in route paths are replaced. Custom events contain at most two coarse labels. A controlled first-touch campaign label may remain in the current tab's session storage; raw campaign text, form contact fields, wallet addresses, transaction hashes, workflows, and project details are not sent as analytics event properties. Vercel receives limited standard request context needed to aggregate these events under its Web Analytics service.

How long it remains

Request-desk database records expire after 180 days. A human-reviewed active design conversation may be renewed only within a fixed one-year maximum, and a closed request expires within 30 days. A daily retention job removes expired database records and short-lived abuse controls. Operators should delete the corresponding mailbox notification when its request is deleted; email-provider service records follow that provider's retention terms.

No financial adviceNothing in OpenZaps is an offer, solicitation, investment recommendation, or guarantee.

The product is software for inspecting and constraining onchain execution. Users should get independent legal, tax, security, and financial advice before using any crypto protocol.