20,000 USDC
View results
Submission Details
Severity: medium

The owner is a single point of failure and a centralization risk

Summary

Having a single EOA as the only owner of contracts is a large centralization risk and a single point of failure.

Vulnerability Details

A single private key may be taken in a hack, or the sole holder of the key may become unable to retrieve the key when necessary.

Impact

All functions restricted to onlyOwner will no longer be possible to be used and the protocol might be compromised.

Tools Used

Manual

Recommendations

Consider changing to a multi-signature setup, or having a role-based authorization model.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.