Introduction: Since the launch of Balancer v1 in 2020, Balancer Labs has been managing and financing the bug bounty program for the Balancer DAO. With the introduction of Balancer v2, the bounties were significantly increased, further cementing Balancer's commitment to the protocol's security. Balancer Labs develops open-source software for the benefit of the Balancer protocol and has never charged the DAO for this work. All fees generated by the Balancer protocol are directed to the DAO; nothing goes to Balancer Labs.
This proposal suggests transitioning the responsibility for the bug bounty program from Balancer Labs to the Balancer DAO as a first step towards making the DAO and the Balancer ecosystem more independent from Balancer Labs.
Current Situation:
Proposal: Starting now, the responsibility for financing the bug bounty program should transition from Balancer Labs to the Balancer DAO. Today a committee composed of Balancer Labsand Beets DAO is responsible for receiving and analyzing bug reports submitted. We propose that Hypernative joins this committee to assist on bug report analysis going forward.
In summary, if this proposal is approved, Balancer DAO will make the payments for any bug bounties awarded by the committee mentioned above. This change aligns with industry standards and ensures the bug bounty program's sustainability.
Rationale:
Implementation Plan:
Conclusion: Transitioning the bug bounty program to the Balancer DAO is a significant step towards decentralization of Balancer DAO. This change will ensure the program's sustainability and encourage greater community involvement in securing the Balancer protocol.
For more details on the current bug bounty program, visit Immunefi's Balancer Bug Bounty page.
Technical specification:
1,000,000 USDC will be earmarked by funds from the karpatkey managed safe at 0x0EFcCBb9E2C09Ea29551879bd9Da32362b32fc89. BLabs or the Balancer DAO can request funds for usage of the bounty program and karpatkey ensures transfer of these funds within 48 hours upon request.