Dstack-TEE / Dstack-TEE/dstack-examples

Dstack Governor - dev tools for the Onchain-KMS

Abierto
#17 0 comentarios 0 reacciones 0 asignados Ver en GitHub
enhancement
Lenguaje dominante
Python
Estrellas
27
Forks
26
Merge medio
1 h 25 min
PR fusionados (30 d)
7

Descripción

We are missing smart contract templates and release management tools for maintaining production TEE applications using an [On-chain KMS .](https://github.com/Dstack-TEE/dstack/tree/kms-onchain/kms)

The purpose of on-chain KMS is to enable TEEs to use smart contract security processes. Without this, the application developer is a single point of failure, since they can apply harmful software updates.

1. On the **smart contract side,** we can get pretty far just by copying existing patterns from OpenZeppelin Bravo. Basically the process consists of a) a notice period, and b) a security council that can veto or delay the proposal.

2. On the **DevEx side,** we need command line tools and/or a web interface to make proposals, and for a security council to review and reject updates if needed.

3. **Documentation and guidance for the social layer**, including the upgrade review process that the security council is supposed to oversee.

References:
- [How to set up on-chain governance](https://docs.openzeppelin.com/contracts/5.x/governance)
- [From Stage 0 to Stage 1: Security Council Best Practices in Rollup Governance](https://blog.openzeppelin.com/security-council-best-practices-guide)

Guía de contribución

Abrir la guía de contribución

Evaluación

Este issue todavía no se ha evaluado.

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.