Running a protocol multisig with weak governance is like running a high leverage trade with immediate liquidation risk. Only difference is it's other people's money on the line


Ten Solana DeFi red flags sitting in plain sight on chain
- Multi purpose governance keys. Same key approving multisig actions is also trading memecoins, farming airdrops, flipping NFTs, swapping on DEXs. Every dapp it touches is another place that signing power can get phished
- Single signer multisigs. No multisig at all, or one with multiple signers but threshold set to 1. Looks distributed, single point of failure in reality
- No role separation. Squads V4 splits permissions into proposer, voter and executor. Most protocols give every signer all three, so one key can propose and execute in a single action. Squads docs warn against this
- Below recommended threshold. Squads suggest 4 of 6 or higher. Most protocols don't hit this
- No timelocks. Only around 1 in 5 protocols use them. It's three steps in the multisig settings. Zero reaction window when something goes wrong
- Concentrated timezone activity. Bunching sensitive changes into the same window makes the operating schedule predictable. Attackers can see when no one's watching
- Weak mint authority multisigs. Often less scrutinised than upgrade or treasury multisigs. Lower thresholds, no timelocks, sometimes separate signer sets. Soft entry point. Get enough keys to meet that threshold and you can mint unlimited supply of whatever token that authority controls
- Active external config authority. Bypasses the multisig entirely. Can change threshold, members, and timelock without a single vote. Squads default is the multisig controlling itself
- Blast radius internal. Several programs under one umbrella are controlled by a single multisig. Or split program multisigs share the same signers. Defeats the point of splitting in the first place
- Blast radius external. Even if one protocol's governance is tight, it's wired into others that aren't. Aggregators, vaults, lending markets, oracles, stablecoins. One failure becomes everyone's problem
SOL-1.5%
DEFI-5.36%
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin