Dstack-TEE / Dstack-TEE/dstack-examples

Dstack Governor - dev tools for the Onchain-KMS

Đang mở
#17 0 bình luận 0 reaction 0 người được giao Xem trên GitHub
enhancement
Ngôn ngữ chính
Python
Star
27
Fork
26
Merge trung bình
1 giờ 25 phút
Pull request đã merge (30 ngày)
7

Mô tả

We are missing smart contract templates and release management tools for maintaining production TEE applications using an [On-chain KMS .](https://github.com/Dstack-TEE/dstack/tree/kms-onchain/kms)

The purpose of on-chain KMS is to enable TEEs to use smart contract security processes. Without this, the application developer is a single point of failure, since they can apply harmful software updates.

1. On the **smart contract side,** we can get pretty far just by copying existing patterns from OpenZeppelin Bravo. Basically the process consists of a) a notice period, and b) a security council that can veto or delay the proposal.

2. On the **DevEx side,** we need command line tools and/or a web interface to make proposals, and for a security council to review and reject updates if needed.

3. **Documentation and guidance for the social layer**, including the upgrade review process that the security council is supposed to oversee.

References:
- [How to set up on-chain governance](https://docs.openzeppelin.com/contracts/5.x/governance)
- [From Stage 0 to Stage 1: Security Council Best Practices in Rollup Governance](https://blog.openzeppelin.com/security-council-best-practices-guide)

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Đánh giá

Issue này chưa được đánh giá.

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.