Every pull is provably fair
There's no trusting us on this. Every pack you rip resolves to a random card through a verifiable random function — the outcome is derived deterministically from your transaction's on-chain signature using RFC 9381 ECVRF-SECP256K1-SHA256-TAI. Anyone can re-run the proof and confirm the roll was never tampered with, before or after the fact.
Deterministic. The same signature always produces the same roll — no hidden re-rolls.
Independent.The proof lives on-chain. You don't need our servers to check it.
Auditable.Paste your pull's memo to verify it yourself.
Interactive verification goes live at launch. The input above checks your memo's format today.