Guide Flashcards
7 cards from real NFT practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Guide flashcards as text
What is the main risk of a public mint function missing a reentrancy guard?
Answer: A malicious receiver callback could mint extra tokens
Without a guard, the onERC721Received callback could re-enter mint and exceed limits.
Why might a developer choose ERC-721A over the standard OpenZeppelin ERC-721?
Answer: It reduces gas for batch minting multiple tokens
ERC-721A optimizes storage so minting several tokens in one transaction costs far less gas.
What does 'on-chain' NFT metadata mean?
Answer: Metadata and artwork encoded directly in the contract storage
Fully on-chain NFTs store the SVG/JSON in the contract itself, removing external dependencies.
Which Solidity visibility/access pattern protects an admin-only withdraw function?
Answer: onlyOwner modifier
An onlyOwner modifier restricts the withdraw function to the contract owner.
What problem does setApprovalForAll being abused by a phishing site cause?
Answer: An operator can transfer all your NFTs in the collection
Granting setApprovalForAll to a malicious operator lets it move every token you own in that collection.
When deploying an NFT contract, why verify the source on a block explorer?
Answer: To let users read and trust the contract code
Verification publishes the human-readable source, increasing transparency and collector confidence.
What is the function typically used to permanently destroy an NFT?
Answer: burn
The burn function removes a token from circulation by sending it to an unrecoverable state.