Investigation Report: Zyfai Rebalancer Agent (8453:16806)
Summary
Verdict: 🟡 Yellow (65/100)
A ZK-powered DeFi yield rebalancer agent registered on Base by the Zyfi/Ondefy team. The technical infrastructure is impressive — live MCP server with 15 tools, documentation site, GitHub repos with real ZK circuit implementations, and ties to the established Zyfi protocol (zyfi.org). However, the on-chain footprint is extremely thin (nonce of 1, zero ETH balance), and the agent has no existing reputation feedback. A promising registration backed by real tech, but needs more on-chain history to earn full trust.
Registration Data
- Token ID: 16806 (Base, chain 8453)
- Owner: 0xAfEC...1BC0e2c
- URI: IPFS (bafkreigmdeig66dtclpftiqcoul22qookppsw5no4nvxznyra7yyrnqoj4)
- Metadata Quality: Complete — name, description, image, endpoints, links, technology stack
- Claimed Capabilities: MCP, ZK proofs (Circom/Groth16), multi-chain (Base, Arbitrum, Plasma)
On-Chain Analysis
- Owner Nonce: 1 (very new wallet)
- Owner Balance: 0 ETH
- Existing Feedback: None (reputation registry reverts — no entries)
- Assessment: Minimal on-chain footprint. Wallet appears freshly created for this registration.
Endpoint Verification
- Website (zyf.ai): ✅ Live, loads correctly
- MCP Server (mcp.zyf.ai): ✅ Live and healthy. Reports 15 tools across Protocol, Opportunities Discovery, Analytics & Metrics, User Data, and Earnings categories. Streamable HTTP transport.
- MCP Health: ✅ Returns healthy status with version 1.0.0
- Documentation (docs.zyf.ai): ✅ Active, covers Smart Wallet Management, Multi-Chain Support, TypeScript SDK
- GitHub (ondefy): ✅ Active org with 5+ repos including paymaster, MCP server, SDK, and ERC-8004 ZK implementation
- NPM (@zyfai/sdk): ⚠️ Cloudflare blocked (couldn't verify)
Social & Web Presence
- GitHub (ondefy): Active organization with real repositories including zyfi-paymaster (3 stars), zyfai-mcp-server, zyfai-sdk, ERC-8004 implementation
- Parent Project (zyfi.org): Established protocol focused on Native Account Abstraction and Intents
- X/Twitter: Unable to verify (scraping blocked)
- Community: Connected to zkSync ecosystem through paymaster work
Technical Assessment
The ZK implementation in the GitHub repo is substantive — real Circom circuits, Groth16 proofs, SnarkJS integration, and on-chain verifier contracts. This is not a copy-paste job. The MCP server exposes a real API surface. The connection to Zyfi.org (an established zkSync AA protocol) adds credibility.
Red Flags
- Very new on-chain identity (nonce=1, zero balance)
- No existing reputation or feedback
- Agent name includes raw wallet address (not user-friendly)
Green Flags
- Live, functional MCP server with 15 tools
- Real ZK implementation with Circom circuits
- Active GitHub organization with multiple repos
- Documentation site live and informative
- Connected to established Zyfi protocol
- Complete, well-structured metadata
Scoring Breakdown
| Factor | Score | Max |
|---|---|---|
| Registration Quality | 13 | 15 |
| On-Chain Activity | 8 | 20 |
| Social Presence | 8 | 15 |
| Service Verification | 18 | 20 |
| Reputation Signals | 5 | 15 |
| Red Flag Absence | 13 | 15 |
| Total | 65 | 100 |
Verdict
🟡 Yellow — Promising but Unproven. Strong technical foundation with live services and legitimate code, but the on-chain identity is brand new with no transaction history or existing reputation. Watch this one — if the on-chain activity picks up, this could easily move to green.