PermissionlessRiskOracle

A
ArbCFO
Live on Arbitrum Sepolia · 5 contracts deployed

4D anomaly detection in Rust/WASM · Any protocol or agent wallet can query real-time risk scores on-chain — no trust required

12
EMA
8
MAD
5
Velocity
15
Volume
OPEN
Circuit
5Contracts Live
4DRisk Dimensions
RustEngine Language
WASMStylus Runtime
GPT-4.1Invoice Agent
ARCHITECTURE

Three layers. One oracle.

Each layer is independently callable. Any protocol can compose ArbCFO into their own risk pipeline — no permission required.

Rust Risk Engine

EMA · MAD · Velocity · Volume on-chain

wasm32 · Stylus · native speed

🛡️

Policy Engine

Spend limits enforced at contract level

Solidity · Composable · Permissionless

🤖

AI Invoice Agent

GPT-4.1 multi-step structured pipeline

Parse · Validate · Approve · Release

DASHBOARD

Full treasury visibility.

Payables inbox · Approvals · Treasury vault · Risk oracle
All connected to live on-chain state on Arbitrum Sepolia

arbcfo.app/inboxAArbCFOARBITRUM TREASURYPayables InboxApprovalsTreasuryRisk OracleReceiptsPoliciesSettingsCFO AgentAgent can propose paymentintents but never executePayables Inbox9 intents+ New IntentSearch vendors, invoices...AllAwaitingExecutedRejectedUnknown Vendor LLCUNK-001$45,000.00Rejected35General🕐 2d agoConsulting engagement — Q1 2025AWS BillingINV-2025-003$12,000.00Awaiting Approvals100General🕐 3d agoAWS infrastructure - Feb 2025 (SPIKE — new GPU cluster)Acme Cloud ServicesINV-2025-001$2,500.00Awaiting Approvals0Engineering🕐 4d agoMonthly cloud hosting - January 2025
USE CASES

Who uses the oracle?

  • Agent Wallet Guardrails
    USE CASE

    Agent Wallet Guardrails

    Autonomous agents query the oracle before every tx. Risk score above threshold blocks it on-chain.

  • DAO Treasury Protection
  • Invoice-to-Payment Flow
ARBITRUM STYLUS

The first risk oracle
written in Rust on Arbitrum.

Stylus runs Rust compiled to WASM with full EVM compatibility. ~10x cheaper compute makes statistical risk scoring viable as a primitive any protocol can call permissionlessly.

Rust
Risk engine source
WASM
Execution target
Stylus SDK
ABI compatible
alloy-sol-types
Type-safe ABI

Composable by default.

Query the oracle · Enforce policies · Release payments
All on-chain · All auditable · All open