All articles

Every guide we have published, newest first. Search by title or filter by topic.

20 articles
Square SSP Academy cover: withdrawing crypto from an exchange to SSP

Your first withdrawal: moving crypto from an exchange to your own wallet

Step by step: getting your receive address from SSP, choosing the right network, checking the pasted address, sending a small test, and waiting for confirmations — plus the hiccups exchanges commonly throw at you.

4 min
Square SSP Academy cover: coins versus tokens and gas

Coins vs tokens: why you need ETH to send USDC

Your wallet says insufficient funds while you hold hundreds in USDC. The reason is the difference between a chain's native coin and the tokens that live inside contracts — and why every transaction is paid for in the coin.

4 min
Square SSP Academy cover: exchange proof of reserves

Proof of reserves: what an exchange's audit does and doesn't prove

Many exchanges now publish a proof of reserves. What it genuinely proves about customer funds, the gaps it leaves open — self-reported liabilities, snapshots, borrowed coins — and how to read one critically.

4 min
Square SSP Academy cover: clipboard hijacker malware

Clipboard hijackers: the malware that swaps the address you pasted

Clipper malware watches what you copy and swaps crypto addresses for the attacker's at the moment you paste. How it works, how it gets installed, how to check addresses properly, and why confirming on a second device matters.

5 min
Square SSP Academy cover: Kaspa explained

Kaspa explained: a blockDAG, ten blocks a second, and how multisig works

Kaspa lets parallel blocks count instead of discarding them, which is how a proof-of-work chain runs at ten blocks per second. How the blockDAG and GHOSTDAG work, why fees are measured in mass, and how Kaspa multisig vaults work.

5 min
Square SSP Academy cover: the mempool explained

The mempool: where your transaction waits before it's real

Between pressing send and the first confirmation, your transaction sits in the mempool. What it is, how block producers pick transactions, why some get stuck, and why a pending transaction is public but not yet final.

5 min
Square SSP Academy cover: honeypot tokens and rug pulls

Honeypots and rug pulls: tokens designed to take your money

Anyone can create a token, and some are built from the first line of code to extract money. How honeypots block sales, how rug pulls drain liquidity, the warning signs you can check, and what to do with tokens you never bought.

5 min
Square SSP Academy cover: signing messages and sign in with your wallet

Signing a message: what "sign in with your wallet" actually proves

A message signature costs no gas and leaves nothing on-chain, but it binds your key to data. What login signatures prove, which off-chain signatures can move your funds, and how to read a signing request before you approve.

5 min
Square SSP Academy cover: physical threats and wrench attacks against crypto holders

Physical threats: when the attack isn't digital

Someone who can threaten you in person doesn't need to break cryptography. Why wrench attacks are growing, why privacy is the best defence, what 2-of-2 multisig does and doesn't do against coercion, and how to structure holdings to reduce exposure.

5 min
Square SSP Academy cover: how hash functions work in crypto

Hash functions: the quiet machinery under everything in crypto

Signatures decide who can spend; hash functions hold everything else together. What a hash is, where you meet one without noticing — txids, mining, addresses, the function selectors SSP decodes — and what hashes can't do.

4 min
Square SSP Academy cover: how wrapped tokens like WBTC and WETH work

Wrapped tokens: what's actually inside the wrapper

A wrapped token is a claim, not the asset. Why WETH, WBTC and bridged tokens rest on completely different guarantees, why SSP's Polygon WBTC is a wrapper of a wrapper, and what to check before holding one.

5 min
Square SSP Academy cover: fake crypto support and recovery scams

Fake support and recovery scams: the second theft

When something goes wrong and you ask for help, scammers answer first. What fake support and recovery agents ask for, why legitimate support never cold-messages you, and what SSP support can and structurally cannot do.

5 min
Square SSP Academy cover: seed phrases, private keys and xpubs compared

Seed phrase, private key, xpub: what each one can actually do

Seed phrases and private keys can spend. An extended public key can only watch — but it watches everything in the account. How to tell which wallet material you're being asked for, and why 2-of-2 multisig changes what a single leaked seed is worth.

5 min
Square SSP Academy cover: fake airdrop claims and signature drainers

Airdrops: the claim is the attack

An unexpected token can't take anything from you — signing the claim can. The three things claim pages actually ask you to sign, why off-chain permits are the dangerous modern variant, and what SSP shows you for a typed-data signature.

6 min
Square SSP Academy cover: running your own blockchain node

Running your own node, and why most people don't need to

A node decides what is true for you instead of repeating what a server said. What it actually buys — verification, privacy, unstoppable broadcast — what it really costs, and the honest gap between SSP letting you point at your own node and that being easy.

6 min
Square SSP Academy cover: what the SSP relay server can and cannot see

What the SSP relay can and cannot see

The relay never holds a key and cannot sign — but for fifteen minutes at a time it handles your xpub and your unsigned transaction. What the TTL indexes actually enforce, and why the wallet is built to distrust our own server.

6 min
Square SSP Academy cover: verified smart contracts, proxies and upgrade keys

Verified contracts, proxies, and the upgrade key nobody mentions

A verification checkmark proves the source matches the bytecode — nothing more. Most contracts are proxies whose logic can be swapped after you approve them, which makes the real question who holds the upgrade key and whether there is a delay.

7 min
Square SSP Academy cover: layer 2 rollups versus sidechains

Layer 2s, sidechains, and the word everyone uses wrong

A real layer 2 inherits its security from the chain beneath it — and of the six EVM mainnets SSP supports, exactly one is a rollup. Why the same address across chains is a trap, and what a week-long withdrawal is actually buying you.

8 min
Square SSP Academy cover: blockchain confirmations, reorgs and finality

Confirmations and reorgs: how final is final?

Short reorgs are routine, six confirmations is a Bitcoin-scale convention rather than a law, and depth only means something relative to what a block costs to produce. Why confirmations matter when receiving and barely at all when sending.

7 min
Square SSP Academy cover: what actually backs stablecoins

Stablecoins: what actually backs them

Attestations are not audits, USDC broke its peg because a bank failed, and the major fiat-backed stablecoins can freeze your address. What a stablecoin actually is, and the ten minutes of checking worth doing before you hold one.

9 min