I'm currently looking at the project "Trustworthy or Not," anyway, I'm not checking the K-line first, just reviewing its GitHub: It's not necessary for you to know how to code, but at least check if the updates are consistent, if core changes are explained, and if issues are promptly fixed after problems arise. Don't treat the audit report as a get-out-of-jail-free card; focus on what the scope says, whether there are unresolved items, and whether the audit was done last year or just recently... Many pitfalls are hidden in the "this part wasn't audited." Also, regarding multi-signature upgrades, beginners should focus on two things: who can sign, what the threshold is, and whether they can arbitrarily change logic or withdraw funds. Don't just trust "multi-signature" blindly. Recently, someone complained that on-chain data tool tags are lagging and might even mislead users, so I prefer to cross-verify myself and not rely too much on a single label. Better to be cautious.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments