Security
Pounce never holds your funds. Here is exactly what you sign and how each trade is checked before it reaches your wallet.
Non-custodial
- You connect a NEAR wallet; Pounce gets your public account ID, nothing else. No keys, no seed phrase, no access keys added to your account.
- Every trade is a transaction you review and sign. Pounce cannot move your assets.
What you sign
- Buy: one transaction to
wrap.nearthat wraps your NEAR, sends the 1% fee to the Pounce fee account and sends the rest to the pool to swap, plus a storage registration on the token if you don't have one. - Sell: a swap on the token (to the pool, or to the Shards launch contract), then a transaction to
wrap.nearthat sends the fee and unwraps to NEAR.
How trades are checked
Routes come from the Intear DEX router. Before anything is shown to your wallet, the Pounce server:
- keeps only the swap call and rebuilds everything else itself (storage, wrap, fee);
- checks the receiving contract, method, exact amount, output token, that the output isn't redirected, and that the minimum received matches your slippage;
- compares the route's minimum with the pool's own on-chain quote and refuses to sign anything worse.
The website
Pounce is served over HTTPS only (HSTS) and cannot be embedded in other sites (clickjacking protection). The official address is pouncetrade.xyz.
Pounce will never DM you first, ask for your seed phrase, or ask you to sign anything outside pouncetrade.xyz.