-
Notifications
You must be signed in to change notification settings - Fork 28
[RewardPool] Revoke approved spender access #92
Copy link
Copy link
Labels
GrantFox OSSIssue tracked in GrantFox OSSIssue tracked in GrantFox OSSMaybe RewardedIssue may be eligible for a GrantFox rewardIssue may be eligible for a GrantFox rewardOfficial Campaign | FWC26Campaign: Official Campaign | FWC26Campaign: Official Campaign | FWC26contractsphase:securityreward-poolsoroban
Description
Activity
Metadata
Metadata
Assignees
Labels
GrantFox OSSIssue tracked in GrantFox OSSIssue tracked in GrantFox OSSMaybe RewardedIssue may be eligible for a GrantFox rewardIssue may be eligible for a GrantFox rewardOfficial Campaign | FWC26Campaign: Official Campaign | FWC26Campaign: Official Campaign | FWC26contractsphase:securityreward-poolsoroban
Description
The RewardPool can add approved spender contracts, but it also needs an admin-controlled revoke path so compromised or deprecated spenders can be removed immediately.
User Story
As a Protocol Admin,
I want to revoke a spender's authorization,
so that outdated or compromised contracts can no longer distribute rewards.
Requirements and Context
contracts/reward-pool/src/lib.rs,contracts/reward-pool/src/types.rs,contracts/reward-pool/src/test.rsremove_approved_spender(env: Env, admin: Address, spender: Address)distribute_rewardfails immediately for revoked spendersSuggested Implementation
Acceptance Criteria
distribute_rewardsuccessfully.Submission Guidelines
feat/revoke-approved-spenderRewardPool add_approved_spender functionfeat(reward-pool): add approved spender revocation