WiiMee.eth 🛡🦺 Profile picture
Aug 8 14 tweets 9 min read
How to ⁉

Mint your NFT directly from a contract via @etherscan.

Hope this eliminates a lot of approval for alls and malicious signature signs on sc*mmy mint websites.

A detailed tutorial video on how to is in the last posts! 🎥

A step by step 🪡🧵

#SaferNFTs 1/13
First we need to know the contract address of the project that we want to mint.

Several approaches to get it without visiting the website:
1) Discord (official links channel)
2) Opensea (should be listed, 'cause: never be first to mint)
3) Project's Twitterpage

#SaferNFTs 2/13
Example: Looking for the contract address on Opensea?

Open the collection on Opensea, navigate down.
Under traits of an NFT, expand the "Details" tab. Clicking on contract address views it on etherscan.io directly.

#SaferNFTs 3/13
Little wildcard and self promo here. 😂
💡 I got some alpha for the token tracker feature in my detailed tutorial video, that is linked below.

#SaferNFTs 4/13
Click on the contract tab.
Navigate to "Write contract" and then look for the function called "Mint" or "MintLion,Ape,Whatever".

Clicking on Mint prompts you with a payableAmount in Eth and a count. Unless it's a freemint you need to know the minting price. How?

#SaferNFTs 5/13
Navigate to "read contract" look for a function called "price".

Weird format? Click the blue, funny numbers - it convert's you the price in ETH - which is needed.

Tip: On the left side you can copy the ETH amount to your clipboard.

#SaferNFTs 6/13
So - how many NFTs do you want to mint?

Free mints often only allow 1 per wallet.
Sometimes there's a max purchase [per wallet or per txn]. In the OG #LazyLions contract it was: 20.

Let's keep it simple and say we can mint only 1 NFT.

#SaferNFTs 7/13
Now we know what we've to pay + how many NFTs we can mint: Go back to "Write contract".

Connect your wallet (yes it's safe to just connect to etherscan) and then click on the mint function.
Enter what price you figured out and how many you want. Click write btn.

#SaferNFTs 8/13
Your MM 🦊 pops up and shows you're calling the mint function (yay, no set approval for all or signature requests because we minted through the contract like a boss 😎).

Click confirm and you're done minting from the contract! ✅

#SaferNFTs 9/13
IF you see a ridiculously high gasfee ⛽:

- You messed up the numbers (price and / or amount)

or

- The project you're trying to mint is already sold out (like all bluechips projects are)

Reject the txn.
Details on how to check remaining numbers in vid below.

#SaferNFTs 10/13
Had to split the video in 2 parts again.

Here's 1/2 - much easier explaining things detailed in a video and not making the thread 30 pages long!

🎶 Lofi Study - FASSounds on Pixabay

#SaferNFTs 11/13
Had to split the video in 2 parts again.

Here's 2/2 - much easier explaining things detailed in a video and not making the thread 30 pages long!

🎶 Lofi Study - FASSounds on Pixabay

#SaferNFTs 12/13
There are some exceptions to this simplified tutorial - for example if a whitelist might be involved OR the project just doesn't want you to mint off their website. Mostly it needs a signature under "Mint" then that you can't provide via etherscan.

Stay safe!

#SaferNFTs 13/13
The "how to freemint" 🧵 via @etherscan would've been a bit shorter. But I like to explain what we're actually doing here.

To sum up: 99% of scams happen on minting websites (set approval for all, signature scams) - this does avoid those websites completly!

#SaferNFTs 🛡🔒

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with WiiMee.eth 🛡🦺

WiiMee.eth 🛡🦺 Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @Wii_Mee

Jul 19
Web3 basics 101 - Your seedphrase is something you want to protect at ALL cost. If you hand out your seedphrase - it's game over for that wallet (+subwallets).

Here’s a🧵about companies entering web3 and not properly putting disclaimers up for user security.

#SaferNFTs 1/10
I chose @Stepnofficial as an EXAMPLE for this🧵, applies to all others.

For those unfamiliar with #STEPN - they are essentially onboarding people to web3 to earn crypto through their app while being active / moving / running. Which - as a concept is a cool idea.

#SaferNFTs 2/10
STEPN launched on $sol originally, expanded to $bnb and now added $eth. Different chains are referred to as realms. Basically = servers, if you're familiar with MMORPGs. Solana Realm, BNB Realm and APE Realm.

Ok, onto the security part already @Wii_Mee!

#SaferNFTs 3/10
Read 10 tweets
Jul 8
Most of your answers said: #2. 🥁

Yes, you didn't see the Origin - which would've made it too easy for y'all! 😂

Here's your answer (dont click the quoted tweet, lol):
💡Solution:

Actually all these 3 screenshots were from @opensea while interacting with the new Seaport protocol.

Correct answer (with known Origin): 2!

1 by 1 screenshot explanation below ⤵
#1
"Set Approval For All" txn would be a 🚩 and a sign to run away as fast as you can.

Interacting with a marketplace you have to give out the approval for the first listing of a collection, so they can execute a transfer on your behalf if your NFT sells.

A: Blind signing in #3
Read 8 tweets
Jul 7
#SaferNFTs 🛡🔒

❓Web3 security quiz❓

Which of the following 3 request is (probably) the safest to approve, and why?

Drop your learnings below ⤵ Image
Will reveal the answer tomorrow or so, so me liking your tweets doesn't mean you're right necessarily. ☝️
Read 4 tweets
Jul 6
Now I had everyone's attention with the wallet hygiene 🧵:

Time to compare:
etherscan.io and / or revoke.cash to revoke permissions you gave to your wallet address?

Had split the video, because I'm 🇪🇺 and still can't use Twitter blue.

1/2

#SaferNFTs
How to use etherscan.io and / or revoke.cash to revoke permissions you gave to your wallet address?

Had to split the video cause of time limit.

🎶: Calming In The Sun - Alex MakeMusic on Pixabay

Lion animation by: @VonUnruhDesign

2/2

#SaferNFTs
.@RoscoKalis might be some good food for thoughts for @RevokeCash here.
Read 4 tweets
Jul 3
Why wallet hygiene will become more important!

After discovering a recent scam method, were the attackers don’t get you to sign an approval for all txn – rather then just stealing your signature to buy all your approved NFTs for free – here’s a 🧵& video on it.
1/12 #SaferNFTs
This scam attack isn’t new (was used in Feb 2022 when Opensea changed their protocol to V2) but was found on a site called imposters(dot)in – video to see what it does at the end of this thread, so you don’t have to visit an connect anything to the site.
2/12 #SaferNFTs
Red flag #1 🚩: The site prompts you to connect your wallet before you can do anything on there.
Red flag #2 🚩: After you connected the wallet, it will immediately request a signature, here’s where it gets DANGEROUS. Good thing: We can read the EIP-712 code.
3/12 #SaferNFTS
Read 13 tweets
Jul 1
#SaferNFTs 1/2

🚨 A recent scam that popped up is an counterfeit to @PlayImpostors.
Website: imposters(dot)in - immediately prompts you to connect your wallet (1), after connecting it asks for your signature (2) which signs an approval for collections! ImageImage
#SaferNFTs 2/2

🚨 The transaction doesn't ask for an approval for all, shows method name "0xf191a7cd" if signed in txn history.

The contract is already marked as Phish / Hack on etherscan.io - Wallet Name being renamed to "Fake_Phishing5816".

etherscan.io/address/0xde61… ImageImage
Referencing to scam contract:
0xdE6135B63dEcC47d5A5D47834A7dD241fE61945A

To make it easier to find this tweet searching for that contract.
Read 5 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(