Today I went back on-chain to take another loop and saw someone’s wallet full of “unlimited approvals.” To put it plainly, it’s like leaving the keys on the door and sticking a sign that says “Come in whenever you like”… Once a contract goes wrong or the frontend gets poisoned, you don’t even need to click to confirm—your assets just get moved away on their own. Revoking permissions is like sleeping: you can get by without doing it, but if something goes wrong one day, it’s truly deadly. These days, I’ve gotten into the habit of doing revocation right after I finish interacting. I scan once a week. It’s a hassle, but it makes me feel at ease.



Recently, L2s have been arguing again about TPS, fees, and ecosystem subsidies. It’s exciting, but what I care about more is whether you’ve left a bunch of old approvals on every chain. You move money from chain to chain—brick by brick—and somehow you end up emptying your pocket too. I no longer believe “this dApp is too big to fail.” On the chain, there’s no room for sentiment. That’s it for now—go clear a few old approvals and then sleep.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned