Nouns Builder contest - 0xbepresent's results

A permissionless, governed protocol to deploy nouns-style DAOs complete with treasury, generative collections, and governance mechanisms.

General Information

Platform: Code4rena

Start Date: 06/09/2022

Pot Size: $90,000 USDC

Total HM: 33

Participants: 168

Period: 9 days

Judge: GalloDaSballo

Total Solo HM: 10

Id: 157

League: ETH

Nouns Builder

Findings Distribution

Researcher Performance

Rank: 130/168

Findings: 1

Award: $60.77

🌟 Selected for report: 0

🚀 Solo Findings: 0

1 - Consider using maximum number of actions that can be included in a proposal

Consider adding a maximum number of actions that can be included in a proposal in order to avoid gas consumptions errors

https://github.com/code-423n4/2022-09-nouns-builder/blob/main/src/governance/governor/Governor.sol#L116

#0 - GalloDaSballo

2022-09-15T23:36:45Z

I think it's a good idea to cap the calls

However you'd expect voters to test the proposal locally and verify that it's effects are consistent with the goals of the proposal, meaning that a check for oog is redundant

We do have precedents of proposals going extremely wrong (notably twice for Compound)

In conclusion I think this is a unique take, a valid refactoring, but I wouldn't recommend it as an actual change for the reasons above

R

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter