Skip to main content

Trust & Risk Providers

Conto integrates with external providers to enrich trust scores, screen for sanctions, and assess wallet reputation. These providers feed into the trust score calculation (via the Verification factor, weighted at 20%) and the policy rule engine. Reputation data supplements Conto’s existing trust signals. Sanctions screening remains a separate compliance control and can block a payment regardless of the reputation result.

Fairscale (Solana Reputation)

Fairscale provides composable reputation scoring for Solana wallets. It analyzes onchain behavioral signals, token holdings, transaction patterns, staking activity, and social connections, to produce a 0-100 reputation score.

What it provides

How Conto uses it

  • Trust score enrichment: For Solana counterparties with no existing network data, Fairscale scores are normalized (0-100 to 0.0-1.0) and used as the network trust score
  • Cold-start enrichment: Unknown Solana addresses get real trust scores instead of blank UNKNOWN defaults
  • Policy rules: Use TRUST_SCORE with the normalized 0.0-1.0 trust score to gate payments

Policy rule

Require a normalized trust score before allowing payments:
Use TRUST_SCORE for policy gates. Fairscale enrichment contributes through the normalized trust score path for unknown Solana counterparties.

Availability

Fairscale enrichment is available for eligible Solana addresses when it is enabled for your organization. Contact support@conto.finance for availability.
Fairscale is Solana-only. It is automatically skipped for EVM addresses, and Conto also skips it when no enrichment result is available.

SDK trust result

GET /api/sdk/network/trust/{address} returns a normalized trust summary for the requested address. It includes the global score, verification state, risk level, network relationship count, active risk-signal count, aggregate transaction history, and the authenticated agent’s relationship summary when one exists.

Counterparty lifecycle fields

SDK counterparty list, create, and detail responses include a canonical lifecycleStatus in addition to the compatibility fields used by older policies:
  • lifecycleStatus: one of DISCOVERED, PENDING_REVIEW, APPROVED, TRUSTED, MONITORED, QUARANTINED, or BLOCKED
  • approvalStatus: PENDING, APPROVED, or BLOCKED
  • trustLevel: the policy-compatible trust posture, including SUSPICIOUS for quarantined counterparties
Use lifecycleStatus for operator workflow state and trustLevel / approvalStatus for existing policy rules and SDK clients that have not moved to lifecycle-aware controls yet.

Sanctions Screening

Conto screens wallet addresses against sanctions lists to support compliance requirements. Screening checks known sanctioned addresses (Tornado Cash, Lazarus Group, Garantex, etc.) and can be extended with enterprise providers for deeper risk analysis.

Providers

Availability

Local OFAC screening is built into Conto, no configuration needed. All organizations on conto.finance automatically get OFAC sanctions screening against known sanctioned addresses. For enterprise compliance needs, Chainalysis and TRM Labs provide deeper risk analysis. Contact support to enable enterprise sanctions screening for your organization.
Sanctions screening is fail-closed for enterprise providers: if Chainalysis or TRM Labs is unavailable, the address is treated as sanctioned to prevent compliance gaps. Local OFAC screening is always available since it uses a built-in address list.

Policy rules

Block transactions to sanctioned countries using GEOGRAPHIC_RESTRICTION:
See Geographic Restrictions OFAC for the rule shape and country-code format.
Always consult legal counsel for compliance requirements. This is not legal advice.

Network Intelligence

In addition to external providers, Conto’s built-in Network Intelligence aggregates anonymized trust signals across all organizations on the platform:
  • Cross-organization address flagging
  • Collective fraud detection
  • Automatic trust score adjustments based on network-wide behavior
Network Intelligence data is anonymized. Organizations share aggregate trust signals, not transaction details.

How Scores Are Selected

Conto uses two complementary trust views:
  • Organization trust, your organization’s view of a counterparty based on its own transaction history.
  • Network trust, an aggregate view based on shared Conto Network Intelligence signals.
Policies that reference a TRUST_SCORE rule use organization trust when it is available and fall back to the network score for an unknown address. See Trust Scoring for the full data model.