Recently, modularization and the DA layer have been getting a lot of hype, developers are excited, and it's normal for users to be confused... I myself don't follow the narrative too closely, mostly just browse GitHub and audit reports before bed to see what "trustworthiness" really depends on.



If you're a beginner really trying to get started, I think you shouldn't focus on those advanced codes first: look at the update frequency on GitHub, whether the PRs are from just two or three people, and if key changes are explained; for audit reports, don't just look at "Passed/Fixed," flip to the section on "Unfixed/Known Risks," many projects accept the risk and go live anyway, which basically means whether you're willing to pay for it. Also, about multi-signature upgrades, don't be fooled into thinking "multi-sig = security," the key points are how many keys there are, who holds them, whether there's a timelock (giving you reaction time), and whether emergency upgrades have boundaries.

I don't need to be understood, I just find that the operational aspects help me sleep better. Being cautious isn't shameful.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin