PRODUCT & SAFETY DOCUMENTATION

Know what WalletSanity sees

WalletSanity is a defensive Solana wallet auditor and cleanup tool. It reads public on-chain state without a signature, explains permissions and token rules, and only prepares a transaction after the user chooses a specific action.

Safety model

Scanning is read-only. Connecting exposes only the selected public address.

No seed phrase or private key is requested, stored, or transmitted.

Every on-chain action has a review step and requires an explicit wallet signature.

Transactions are revalidated and simulated against recent mainnet state before the wallet opens.

The browser reconstructs the expected transaction and rejects changed destinations, amounts, programs, or extra instructions.

WalletSanity never automatically retries a transaction after an ambiguous timeout.

Local exclusions and dismissed alerts are browser-only preferences. They never change on-chain state.

What the scan covers

Security

Active token delegates, external close authorities, and dangerous Token-2022 permanent delegates. Revocable delegates can be removed with one explicit Revoke instruction. Dismissing an alert only hides it in the current browser; it does not resolve the on-chain authority.

Empty accounts

Zero-balance SPL Token and Token-2022 accounts that the connected wallet can close. Ownership and the zero balance are checked again immediately before preparing the transaction.

Gasless recovery: eligible empty accounts can recover their rent even when the wallet does not have enough SOL to pay the network fee. WalletSanity pays the fee first and receives only that exact quoted cost from the recovered rent. Sponsored actions are limited to three attempts per wallet per UTC day and 20 attempts per IP address per UTC day.

Tokens

Nonzero token accounts remain visible even when their name, image, verification status, or market price is unavailable. WalletSanity shows balance, program, account rent and rules such as freeze authority, frozen state, transfer fees, transfer hooks, default-frozen state and non-transferability. Recognized assets are matched by exact mainnet mint, never by ticker alone.

When the token account is owned by the connected wallet, is not frozen, has no active delegate, and can be closed by that wallet, WalletSanity can burn its complete balance and close the account to recover its rent. The action is unavailable when those safety conditions fail. Token-2022 burns are also checked against their account and mint extensions.

Gasless token burning: eligible classic SPL tokens and a conservative subset of Token-2022 tokens can be burned and their token-account rent recovered even when the wallet does not have enough SOL to pay the network fee. Token-2022 sponsorship permits only accounts with no extensions other than immutable ownership and mints with no extensions other than metadata pointer and token metadata. WalletSanity sponsors the fee and receives only the exact quoted reimbursement from the recovered rent. Sponsored actions are limited to three attempts per wallet per UTC day and 20 attempts per IP address per UTC day.

NFTs and collectibles

WalletSanity can burn supported standard Metaplex NFTs, programmable NFTs, compatible SPL collectibles, and Metaplex Core assets after revalidating ownership and the standard-specific accounts. Rent is recovered only when the asset has an individual token or asset account that the burn closes. Compressed NFTs do not have an individual rent account, so burning one recovers no rent. NFT and collectible burns are not gasless in this version.

DeFi and protected positions

Jupiter Portfolio positions and Kamino lending deposits or borrows are shown as read-only and excluded from cleanup. This coverage is not exhaustive: a missing position does not prove that no funds are deployed in another protocol.

What other interfaces may omit

Wallet tools use different RPC providers, indexers, metadata registries and filtering rules. WalletSanity deliberately keeps unknown and unpriced token accounts in the inventory instead of assuming they are worthless or hiding them because metadata is missing.

That means an account omitted by another interface may still appear here with a recoverable rent path. It does not mean WalletSanity can guarantee perfect coverage: stale RPC or DAS indexes, unsupported protocols and unavailable metadata remain explicitly identified.

Actions and fees

  • Revoke delegate: one Revoke instruction; no service fee.
  • Close empty account: closes only a revalidated zero-balance account. Fee: 1.5% of recovered rent, plus the exact Solana network fee. Eligible accounts can use gasless recovery when the connected wallet does not have enough SOL to pay that fee: WalletSanity pays it first and receives only its quoted reimbursement from the recovered rent. Sponsored actions are limited to three attempts per wallet per UTC day and 20 attempts per IP address per UTC day.
  • Exclude from cleanup: saves a local browser preference. No on-chain action and no signature.
  • Dismiss alert: hides an acknowledged row locally; the authority remains on-chain.
  • Burn fungible token: permanently burns the complete revalidated balance and closes the account. Available for classic SPL and compatible Token-2022 accounts. Fee: 1.5% of recovered account rent. Eligible classic SPL burns and a conservative subset of Token-2022 burns can be gasless when the wallet cannot pay the network fee. Sponsored actions are limited to three attempts per wallet per UTC day and 20 attempts per IP address per UTC day.
  • Burn NFT or pNFT: uses the Metaplex Token Metadata burn instruction after verifying ownership and standard. Fee: 1.5% of recovered rent.
  • Burn compressed NFT: uses fresh DAS ownership and Merkle proof data. A cNFT has no separate rent account, so WalletSanity charges no service fee; network fees still apply.
  • Burn Metaplex Core asset: verifies the asset and collection plugins before preparing a burn. Fee: 1.5% of recovered asset-account rent.

Every burn is permanent. WalletSanity does not offer ordinary token transfers and never treats a missing market price as zero value.

Data sources, privacy and known limits

The selected public wallet address and public asset identifiers are sent to configured Solana RPC providers and, when applicable, to Helius or another DAS endpoint, Jupiter APIs and Kamino's public portfolio endpoint. These services may receive ordinary request metadata such as IP address and user agent. WalletSanity never sends a seed phrase or private key.

  • Standard RPC reads try configured providers in order and fall back to Solana's public mainnet RPC. DAS-only data cannot be recovered from an endpoint that does not implement DAS.
  • Large compressed-NFT proofs that require an Address Lookup Table are shown as unavailable until ALT support is implemented.
  • DAS may briefly continue listing a recently burned asset. Locally confirmed burn IDs prevent a known stale result from being presented as a new discovery.
  • Frozen token accounts cannot burn until their freeze authority thaws them.
  • Jupiter prices are estimates, not guarantees of liquidity or executable sale value. Unavailable prices are never displayed as zero.
  • The connected wallet needs enough SOL to pay network fees for ordinary actions. Eligible empty-account closures, classic SPL token burns and conservatively compatible Token-2022 burns can instead use their limited gasless flows. NFT, pNFT, Core and compressed-NFT burns are not sponsored in this version. Sponsored actions are limited to three attempts per wallet per UTC day and 20 attempts per IP address per UTC day. The service-fee recipient must already exist on-chain; a fresh recipient should first receive enough SOL to satisfy Solana's current rent-exempt minimum.

WalletSanity vs. other tools

This comparison reflects only official public product pages and documentation reviewed on August 20, 2026; app-sponsored recovery was rechecked on September 2, 2026. “Not documented” means those sources did not describe the function; it is not proof that no private, undocumented, or newer implementation exists. “Not disclosed” means no precise rate was stated on the reviewed page.

FeatureSol-IncineratorDustBusterSolWipeFamous Foxes RevokeWalletSanity
Service fee on reclaimed account rentTypically 39,280 lamports per standard account (~1.93% at 2,039,280 lamports rent)Not disclosed“Small fee”; rate not disclosedNot applicable1.5%
Read-only inventory or preview✓✓✓✓✓
Close empty token accounts✓✓✓Not documented✓
App-sponsored recovery when wallet cannot pay the network feeNot documentedNot documentedNot documentedNot documented✓ Eligible empty accounts, classic SPL and compatible Token-2022 token burns
3 attempts/wallet/day · 20 attempts/IP/day
Burn fungible tokens✓✓Not documentedNot documented✓
Burn NFTs and pNFTs✓Not documentedNot documentedNot documented✓
Burn compressed NFTs✓Not documentedNot documentedNot documentedLimited
Token-2022 burn or close support✓Not documentedNot documentedNot documentedLimited
Revoke active delegatesNot documentedNot documentedNot documented✓✓
Token-rule and authority auditNot documentedNot documentedNot documentedLimited✓
External close-authority detectionNot documentedNot documentedNot documentedNot documented✓
DeFi visibility and cleanup protectionNot documentedNot documentedNot documentedNot documentedLimited
Unknown or unpriced accounts remain visibleLimitedLimitedNot documentedNot documented✓
Exact transaction review before wallet promptNot documentedNot documentedNot documentedNot documented✓

Sources: Sol-Incinerator product docs ↗, Sol-Incinerator API docs ↗, DustBuster ↗, SolWipe FAQ ↗, and Phantom's Famous Foxes guidance ↗. Competitor features and fees can change; verify them before relying on this table.

Terminology

Mint vs. contract address

On Solana, a token is identified by its mint account. This is more precise than the EVM phrase “contract address,” because many tokens share the same SPL Token program while each has its own mint.

Token account

A wallet normally holds each token in a separate token account. That account can have its own delegate, close authority, state, balance and refundable rent deposit.

Metadata

Name, ticker and image are presentation data associated with a mint. They can be missing or misleading, so WalletSanity keeps the mint and token-account links visible.

DAS

The Digital Asset Standard API is an indexed RPC interface used to list compressed NFTs and Core assets and fetch compressed-NFT proofs. WalletSanity fails closed when a DAS-enabled endpoint or fresh proof is unavailable.

Important disclaimer

WalletSanity is a technical audit and cleanup tool, not financial advice. Asset labels, recognition badges and price estimates do not guarantee legitimacy, safety, liquidity or future value. Review every irreversible action and reject any wallet prompt that differs from the transaction described by WalletSanity.