Spark's Operational Facilitator has placed a proposal into the voting system on behalf of nested contributor Phoenix Labs.
The Spark community can hereby express support or opposition to the following changes, as described by the author of the proposal:
The existing cap automators have permissionless access. This opens up SparkLend to potential DoS attacks, where an attacker purposefully adds or removes capital just before triggering a cap automator update in order to manipulate a supply or borrow cap. While to date we have not observed any manipulation activities, we propose to upgrade the cap automator mechanism to add authorization to avoid any potential for DoS.
Change summary:
Upgrade SparkLend Cap Automators to v1.1 Auth: ALM Proxy Freezable (0x9Ad87668d49ab69EEa0AF091de970EF52b0D5178)
The proposed Spark Artifact changes can be found in the following pull request: https://github.com/sky-ecosystem/next-gen-atlas/pull/193