The MembershipFactory
allows actors to register new DAOs to an ensName
. however the claim to that name is not verified.
The MembershipFacory
permits callers to specify an arbitrary ensName
, provided it has not yet been claimed:
This permits callers to make claims to ensNames
that do not belong to them, and misrepresent the association of the DAO.
Valuable ENS names can be squat on, meanwhile malicious DAOs can feign association with popular entities (i.e. vitalik.eth
).
Manual Review
When creating a DAO, register ownership to a tokenId
that is both respected by the ENS Registrar and is owned by (or approved to) the _msgSender()
.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.