Demo mode — sample data, not live
Bunker mode · Calm, preventative, no deadline

Hide your
keys behind
a hash.

No need to scramble. An address that has never signed only reveals a hash of its public key. Once it signs, the key is public forever. If elliptic-curve signatures ever break, keys that are already public are the first targets. The fix is calm and preventative: check, migrate, keep it sealed.

Migration protocol

Read-only. Always. Bunker Check never connects your wallet, never asks for a signature, never asks for a seed phrase. Anyone who does is not us.

About to sign? Check the address first
Bunker Guard (extension) does this automatically.
Bunker Checkread-only · no wallet
AUTO ETH BTC SOL
ETH · BTC · Solana · ENS · multi-chain. Nothing is stored.
Checking…
Only on Bunker
01 / Bunker Bot

Your migration officer.

Paste every address you own. The bot checks them all, scores your bunker, writes a migration plan for your wallet, and keeps watch. It runs in your browser: no account, no wallet connection, nothing stored on a server.

Bunker Bot · terminalready
>
Bunker score
--%
sealed --exposed --
Score appears after an audit
Migration plan
    No addresses watched
    Batch audit25 addresses, ETH + BTC + ENS, one paste.
    Bunker scoreHow much of your money is still behind a hash.
    WatchlistAlerts you if a sealed address ever signs. Stored only in your browser.
    Share cardPost your score. Never your addresses.
    02 / Get Bunker Guard

    Before you sign.

    Bunker Guard is a browser extension that warns before a sealed address signs anything. If a dApp asks your sealed address to sign, the guard intercepts the request and shows a blocking modal so you can cancel.

    Bunker Guard seal warning modal

    What it can't see

    • WalletConnect / mobile signing — happens outside the browser.
    • A malicious site can bypass the guard. It's a seatbelt for honest dApps, not a firewall.

    Privacy

    Only nonce and code lookups to public RPCs. No analytics, no telemetry, no remote code. Storage is local only.

    Download & install manually

    Not on the Chrome Web Store yet — you install it manually.

    Version—
    SHA-256—
    Size—
    Download ZIP

    Brave

    1. Open brave://extensions
    2. Enable Developer mode (top-right toggle)
    3. Click Load unpacked → pick the unzipped folder

    Chrome

    1. Open chrome://extensions
    2. Enable Developer mode (top-right toggle)
    3. Click Load unpacked → pick the unzipped folder
    03 / Exit the bunker

    Keys with no curve.

    Hiding a key behind a hash buys time. The way out is signatures built only from hashes. The PQ Lab lets anyone verify a real hash-based signature on Ethereum — checked by a mainnet contract via read-only call. No wallet, no gas.

    ECDSA vs lattice vs hash-based

    SPHINCS+-style signatures rely only on the hash function (Keccak). There is no curve or lattice to attack. The trade-off is size. Structured math can hide shortcuts nobody has found yet; hashes are designed to have no structure. Where hash-based works, prefer it.

    ECDSALattice*SPHINCS+C
    Signature65 B2,420 B / ~666 Bloading...
    Public key64 B1,312 B / 897 B64 B
    On-chain check~3k gasN/Aloading...
    Key visible after signingyesyesharmless
    Rests oncurve structurelattice structurehash function only

    * ML-DSA-44 (FIPS 204) / Falcon-512. Sizes from the published standards. Hash-based column is measured live from the SPHINCS+C verifier on Ethereum mainnet.

    PQ Lab · runs in your browserVERIFY MODEready
    Bunker Vault — a smart account whose root key is hash-based (ERC-7579 validator for Kernel). Testnet first; mainnet only after an independent audit.
    TESTNET · SOON
    04 / Exposure

    Which addresses are already exposed?

    The address format and its history decide whether your public key is already on-chain. Bunker Check reads this from public chain data.

    AddressStatusWhy
    ETH account, never sent a txnonce = 0SEALEDOnly the hash of the key is known. Receiving funds doesn't reveal anything.
    ETH account, has sent a txnonce > 0EXPOSEDEvery signature lets anyone recover the public key. One outgoing transaction is enough.
    EIP-7702 delegated EOAcode starts 0xef0100EXPOSEDSigning the delegation revealed the public key.
    Smart wallet / Safecontract accountCHECK OWNERSThe contract holds no key, but its owner keys are exposed once they sign. Safety depends on the owners.
    Other contractcontract accountCONTRACTNo key of its own. Safety depends on whoever controls it.
    BTC P2PKH / P2WPKH, never spent1… / bc1q…SEALEDThe key stays behind a hash until the first spend.
    BTC address that has spentor was reused after spendingEXPOSEDSpending reveals the public key. Coins still at that address are exposed.
    BTC Taproot / P2PKbc1p… / early coinsEXPOSEDThe public key is in the address itself, so it's exposed from day one.
    Solana addressbase58 ed25519 public keyEXPOSEDA Solana address IS the public key. There is no hash in front of it — exposed from day one.
    ETH on any EVM chainnonce > 0 on Base, Arbitrum, etc.EXPOSEDThe same key controls the same address on every EVM chain. If it signed on any chain, the key is public everywhere.
    05 / Protocol

    Move in.
    Don't rush.

    Bunker rules

    • Never type a seed phrase into a website.
    • Never sign a "migration" for a stranger.
    • Send a small test first.
    • A rushed move is worse than no move.
    • Multisig signers: rotate after each operation.
    • Buy $BUNKER from a hot wallet, never from your vault: every swap is a signature and exposes that address.
    01

    Check every address you use

    Hot wallets, cold storage, multisig owners. Write down which are exposed.

    02

    Derive a fresh address

    In your own wallet, add the next account from the same seed. New wallets and new cryptography aren't needed.

    03

    Send a small test, then the bulk

    Confirm the test arrived. Then move the rest, including tokens and NFTs, in one calm session.

    04

    Keep it sealed

    Don't sign from the new address. Use it only to store funds.

    05

    Signed once? Rotate.

    When you do sign, move whatever is left to the next fresh address in the same session.

    06

    Multisig signers: rotate after each operation.

    Every Safe transaction exposes the signing keys. Replace exposed signers with fresh keys. Gather signatures off-chain and execute promptly. Type rotate <safe> in Bunker Bot to plan it.

    06 / Token

    The token

    Own Uniswap v4 pool on Ethereum mainnet, run by the Bunker hook. Plain ERC-20, no owner, no mint, no pause, no proxy. Liquidity is locked forever in the pool — no code path can remove it.

    $BUNKER
    Bunker Mode

    Fair launch: team holds 0 tokens at launch (unless a dev buy is announced). 1% of every trade in ETH goes to the treasury / Audit Fund. Exact-input swaps only. The tool stays free and read-only for everyone.

    CA  — announced at launch —
    Buy on Uniswap Etherscan
    ChainEthereum mainnet
    Supply1,000,000,000 · fixed
    Contractno owner · no mint · no pause · no proxy
    LiquidityUniswap v4 · locked forever by Bunker hook · can't be pulled
    PairETH / BUNKER
    Trade fee1% in ETH → treasury
    Fee useTreasury / Audit Fund (not holder rewards)
    SwapsExact-input only
    Team alloc0% — fair launch (unless a dev buy is announced)
    Opening FDV~$10,000
    AdminNone — no owner, immutable
    Treasury / Audit Fund
    Pending fees (hook)
    --
    Total swept
    --
    Treasury balance
    --
    Live at launch
    Audit Fund

    Treasury fees earmarked for independent audits of Bunker Box, Bunker Vault, and Bunker Guard. No promises of returns.

    -- --
    Goal announced at launch

    Fake token warning

    Only the contract address shown on this page is ours. Other projects use similar names — always check the address. Scammers may create tokens with the same name on any chain. Buy from a hot wallet, never your vault: every swap is a signature and exposes that address.

    How we're different

    • Read-only — never connects your wallet
    • Deep Scan finds gasless and off-chain signature exposure
    • Pre-Sign Check + Bunker Guard stop exposure before it happens
    • Migration Safety pre-flight checks the destination
    • Safe Rotation Planner for multisig key hygiene
    • Multi-chain scanner: 7 EVM chains + Solana + BTC
    • Fees fund independent audits