Summary
Remove the following address from the Pauser, Long Freezer, and Short Freezer roles:
0xc8ee187a5e5c9dc9b42414ddf861ffc615446a2c
Abstract
On July 14th 2024, Step 2 of the eUSD 3.4.0 upgrade was proposed onchain. This upgraded all eUSD core contracts and assets from version 3.0.1 to version 3.4.0 and upgraded to new Governance and TimelockController instances via a spell contract.
Problem Statement
The old TimelockControllers address is still active as the Pauser, Long Freezer, and Short Freezer. This opens up eUSD to a potential griefing vector where someone can slip a governance proposal through on the old governors contract, nobody notices, and they pass and succeed in pausing/freezing eUSD.
Rationale
Due to the old TimelockControllers address still being active, pausing/freezing eUSD is the only possible proposal on the old Governor contract: “Alexios”. By removing this address, eUSD will no longer be subject to this potential griefing vector.
Risks
The risk with leaving the old TimelockController active is that eUSD could potentially be paused or frozen without due process.
- Yes, I am for this proposal
- No, I am against this proposal
