shazow pfp
shazow
@shazow.eth
Some of the biggest losses in crypto have been due to upgradeable contracts. Naively it sounds safer, but it adds a lot of complexity and attack surface. If you're working on a contract, enable easy migration instead of upgradeability if possible. If you must, limit upgrading to the smallest components.
3 replies
4 recasts
33 reactions

HH pfp
HH
@hamud
did they not use openzeppelin?
1 reply
0 recast
0 reaction

Dean Pierce 👨‍💻🌎🌍 pfp
Dean Pierce 👨‍💻🌎🌍
@deanpierce.eth
This classic always comes to mind: https://diligence.consensys.io/blog/2019/01/upgradeability-is-a-bug/
0 reply
0 recast
3 reactions

fareed pfp
fareed
@dxfareed
i've always been very skeptical with "upgradeable" contracts. it just doesn't sit right with me. sorry about this @phil :(
0 reply
0 recast
1 reaction