-
Notifications
You must be signed in to change notification settings - Fork 3.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: add security handbook #19158
chore: add security handbook #19158
Conversation
WalkthroughThe new file, "04-security-part-1.md," provides a detailed guide to security considerations for building appchains on the Cosmos stack, focusing on the core chain. It addresses various security risks and best practices, including non-determinism, in-protocol panics, unmetered/unbounded computation, key malleability, prefix iteration, and fee market/gas issues. The post aims to illuminate the unique security landscape of the Cosmos stack and equip developers with essential guardrails to navigate the security challenges inherent in building appchains. Changes
Thank you for using CodeRabbit. We offer it for free to the OSS community and would appreciate your support in helping us grow. If you find it useful, would you consider giving us a shout-out on your favorite social media? TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (invoked as PR comments)
Additionally, you can add CodeRabbit Configration File (
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks great, thanks for adding this :)
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚀 🚀 🚀 🚀
Description
This pr adds the well written security/footgun doc to the cosmos sdk docs. Thank you Roman Akhtariev and Alpin Yukseloglu for authoring and allowing us to host it on the cosmos sdk docs
Author Checklist
All items are required. Please add a note to the item if the item is not applicable and
please add links to any relevant follow up issues.
I have...
!
in the type prefix if API or client breaking changeCHANGELOG.md
Reviewers Checklist
All items are required. Please add a note if the item is not applicable and please add
your handle next to the items reviewed if you only reviewed selected items.
I have...