Recently, I came across new L1/L2 projects incentivizing to boost TVL, and in the comment section, a bunch of folks were complaining "mining and selling"... I instead thought of something more boring but more dangerous: never give unlimited permissions for contract authorization. Basically, if you give it a master key, one day if the project team upgrades, the front end gets hijacked, or you click the wrong link, your assets could quietly be taken away as if they were stolen.



My current habit is: after mining or switching, I revoke permissions every time, like locking the door and turning off the gas before bed—it's a hassle, but it’s one less thing that makes me jump awake in the middle of the night. Some protocols are nested like octopus tentacles, and the longer the authorization chain, the easier it is to forget... Anyway, I’d rather click a few more times than rely on luck. Everyone, don’t mind me being verbose—just revoke permissions to stay safe.
L111.90%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned