The owner of the RAAC protocol can front-run transactions by changing parameters like liquidationGracePeriod
.
Without timelocks, the owner can immediately change parameters like liquidationGracePeriod
, potentially affecting ongoing transactions and user positions adversely.
Front-running parameter changes can lead to unfair advantages or disadvantages for users, impacting the protocol's fairness and stability.
The project's governance and parameter control mechanisms are mentioned, making this a valid concern, particularly in the absence of timelocks.
Manual review
Implement timelocks to prevent immediate parameter changes.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.