Users cannot cancel pending purchases in the "trick" scenario.
Location: src/TrickOrTreat.sol:resolveTrick()
Proof of Concept:
Users' funds could be locked indefinitely if they're unable to complete a "trick" purchase, leading to poor user experience and potential loss of funds.
Forge
Implement a cancellation mechanism with a time limit.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.