A runtime for programmable portfolios

Your strategy.
Your machine.
Your wallet.

Zap Pilot is building a runtime that turns rules you can read into transactions only your wallet can sign — with no Zap Pilot vault in between.

  • LiveOpen-source reference strategy
  • LivePositions at your own address
  • LiveChecked before you sign
  • PlannedRuns on your machine
Runtime traceBacktest replay · 2025-10-18

DMA/FGI Portfolio Rules · reference strategy

  1. ObserveBTC closed below its 200-day averageLive
  2. EvaluateRule 1 of 6 fired: cross-down exitLive
  3. Target→ 96.12% stables · 3.88% S&P 500 (advisory)PlannedThe S&P 500 sleeve has no adapter yetLive
  4. PlanTurn the target into transactionsPlanned
  5. Check & signSimulate, cap approvals, you signLive
  6. VerifyRecompute this exit on-chain Research
Replay of a recorded backtest decision. Not a real account; nothing was signed.

Who owns what

Every layer is yours to own. Here's how far each one is.

Your strategy

Rules you can read, test, and replace.

Today

  • LiveOne reference strategy, DMA/FGI Portfolio Rules, is evaluated daily; each decision shows the rule that fired and the raw signals.

Next

PlannedWrite your own rules and backtest them against the same benchmark.

Your machine

The runtime runs on hardware you control.

Today

  • Evaluation and planning run on Zap Pilot-hosted servers.
  • In developmentA Mac app that checks for drift every few hours and notifies you. It never signs.

Next

PlannedStrategy evaluation and planning on your own machine.

Your wallet

Assets stay at your address. You sign every batch.

Today

  • LiveDeposits go straight into Morpho, GMX and Hyperliquid positions you hold; no Zap Pilot vault; every batch is checked before you sign.

Next

PlannedA policy you set — limits, allowlists, a kill switch — checked before anything is signed.

The runtime

Six steps from signal to signature. Not all of them run yet.

Each step does one job and can be checked. Rules decide; your signature is the last step before money moves.

  1. 01Livehosted

    Observe

    Collect prices, sentiment and your current positions.

  2. 02Live

    Evaluate

    Run the strategy: a target allocation and the rule that fired.

  3. 03Planned

    Plan

    Turn the gap between target and positions into transactions.

    • LiveToday: plans are built only for deposits you request.
  4. 04Live

    Check

    Cap approvals, enforce minimum received, simulate the batch.

    • PlannedYour own policy rules
  5. 05Live

    Sign

    One atomic batch where your wallet supports it, step by step otherwise.

  6. 06In development

    Verify

    Check the outcome and keep a public record.

    • Today: unsigned daily snapshots of one reference address.
    • ResearchOne rule recomputable on-chain

Deterministic first: no model decides your allocation.

  • PlannedAn optional AI layer for exceptions, bounded by your policy, comes later.
  • PlannedUnattended execution waits for scoped on-chain permissions you can revoke.

Strategies

Strategy is the primitive. Start from a reference.

A strategy turns signals into a target allocation and explains each decision. Today there is one reference strategy and one benchmark.

Reference strategy

Live

DMA/FGI Portfolio Rules

Six rules in priority order; the first that fires sets the day’s target. Signals: 200-day moving averages, crypto and US-equity Fear & Greed, ETH/BTC. Cooldowns and pacing guards limit churn. Its philosophy: buy in fear, defend in greed.

63 simulated trades over the 500-day backtest

PlannedIts target includes an S&P 500 sleeve that can’t be executed yet.

Read the spec

Benchmark

Live

DCA Classic

Starts half in BTC and moves the other half into BTC in equal daily amounts. Every reference-strategy backtest is measured against it.

Read the spec

Verifiable rule

Research

Cross-down exit, on-chain

One of the six rules compiled to public Vyper bytecode on Arbitrum Sepolia with a pinned codehash. Recompute a recorded exit yourself.

Open the calculator

Strategy lab

Planned

Bring your own rules

Write your own rules and backtest them against DCA Classic.

PlannedVersioning, pinning and publishing come later.

Follow on GitHub

Backtest · reference strategy

DMA/FGI Portfolio Rules vs DCA Classic

500-day strategy snapshot as of 2026-10-05. DMA/FGI Portfolio Rules vs DCA Classic, daily signal evaluation, 63 simulated trades.

ROI vs DCA

+91.92pp

+89.37% vs −2.54%

Strategy ROI

+89.37%

500-day window

Calmar ratio

6.68

vs DCA: −0.05

Sharpe ratio

2.77

vs DCA: 0.08

Max drawdown

−8.93%

vs DCA: −38.65%

StrategyROIMax drawdownTrades
DMA/FGI Portfolio Rules+89.37%−8.93%63
DCA Classic−2.54%−38.65%498

PlannedThe backtest’s S&P 500 sleeve has no executable adapter yet.

Hypothetical backtest: it assumes a yield on stablecoin and crypto balances and includes an S&P 500 sleeve Zap Pilot can't execute yet. Past performance does not guarantee future results. Backtest window: 2025-05-24 to 2026-10-05, as of 2026-10-05.

Adapters

Strategies speak allocation. Adapters speak protocols.

A strategy decides weights. An adapter only encodes an action that’s already been decided — it never picks strategy. We add adapters when a strategy needs an exposure, not to lengthen a list.

Morpho

LendingLive

Spark USDC vault on Base. Borrowers pay interest to the vault. Risks: curator, oracle and smart-contract risk.

GMX v2

Liquidity provisionLive

BTC/USD and ETH/USD GM pools on Arbitrum. Traders pay fees to the pool. You also carry their PnL and BTC/ETH price exposure.

Hyperliquid

Market makingLive

The HLP vault market-makes and takes on liquidations. Returns can be negative, and deposits are locked for a period set by Hyperliquid.

LI.FI

RoutingLive

Swaps and bridges into those positions. Every route must meet a minimum received.

Tokenized S&P 500

EquitiesPlanned

The reference strategy models an S&P 500 sleeve. No adapter can execute it yet, so deposits keep it at 0%.

Returns come from durable sources — lending demand, trading fees, market making — not incentive programs. All of them can lose money.

Wallet boundary

Assets stay at your address. Every batch waits for your signature.

There’s no Zap Pilot vault or custody contract. A deposit is built as a plan, checked, and handed to your wallet, where it does nothing until you sign.

  • LiveNo Zap Pilot vault. Positions sit at your address inside the venues themselves, so you can also manage them there. Those venues are pooled third-party protocols with their own risks.
  • LiveChecked before you sign. Approvals are capped, never unlimited; routed swaps must meet a minimum received; a batch that fails simulation can’t be signed.
  • LiveOne batch where your wallet supports it. EIP-5792/7702 wallets sign one all-or-nothing batch; others approve and execute step by step.
  • LiveHyperliquid key stays on your device. Hyperliquid deposits use an agent key created and stored on your device. You approve it once, and that approval may not expire.
  • PlannedUnattended only behind your limits. Rebalancing without you will require on-chain scoped permissions: allowed targets, spend caps, expiry, and revocation you control.

Deposit plan · review

Example
Funding
USDC · Base
Destination
Morpho USDC vault · Base
Approval
Capped to the deposit amount
Simulation
All checks passed
Transactions
Approve + deposit · one atomic batch

Illustrative review. Nothing moves until you sign.

Self-custody shouldn’t stop at the keys.

  • LiveA reference strategy you can read, deposits into positions you hold, and checks before every signature.
  • PlannedYour own strategies, your own policy, your own machine.
Join the Discord