Recently, people keep asking me how a newbie can tell if a project is reliable or not. I'm not a teacher, so I'll share my own simple methods: first, check GitHub. Don’t just look at the number of stars; mainly see if the updates are consistent, if there are serious responses in the issues, and if key changes are explained; then review audit reports. The focus isn't "audited = safe," but whether risks are clearly outlined, if the team has genuinely fixed issues, and avoid vague statements like "resolved" without details. Also, about upgrade permissions... When I see an upgradable contract, I reflexively check if it’s multi-sig, with signers who aren’t all insiders, and preferably with a timelock. Otherwise, if the unlock pressure causes anxiety and the contract permissions are changed again, I really can't handle it. Anyway, before entering a pool, I’d rather spend an extra half-hour reviewing these things. Even if I earn less, at least I can sleep peacefully.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin