How many DeFi projects still have 'God Mode' admin keys? More than you think

Publicado en by Cointele | Publicado en

Twelve out of 15 of the most popular decentralized finance protocols still have access to a 'God Mode' admin key, according to data on review platform DeFi Watch.

While admin keys have been justified as a way to protect users' funds and are often used with security features such as timelocks and multi-sigs, analysts argue this calls into question exactly how "Decentralized" these projects really are.

Of the fifteen projects reviewed on DeFi Watch, only InstaDapp, MakerDAO, and Uniswap are reported to have no admin keys associated with their product.

The remaining projects - which include Aave, Compound, DDEX, Yearn Finance, Nexus Mutual, and Synthetix - all have admin keys allowing varying degrees of control.

Aave currently sits third among all DeFi projects by total value locked with more than $1.38 billion locked.

Several projects, including Compound, have implemented security features to protect the integrity of the admin keys, and many projects have plans to migrate to fully decentralized governance system sin future.

While many users have suggested that Aave and other projects have been upfront about their admin keys, DeFi Watch founder Chris Blec believes that DeFi protocols need to be explicit if they retain the option to enter God Mode:.It takes far too much digging for a user to find that info.

Synthetix smart contracts are similarly fully upgradeable via the admin key, with DeFi Watch stating that the core team possess "Vast power to do just about anything, including adjusting user balances and draining funds." Despite Synthetix's core team acknowledging that the project is highly centralized, the protocol has attracted more than $590 million in assets from the DeFi community.

Uniswap does not have any admin keys, however blockchain analytics firm Glassnode, suggested in a report this week that the DeFi project has essentially created their own equivalent backdoor through the distribution of their UNI governance token.

"The only way that you can truly feel secure while using these DeFi products currently is to trust in the competency of the team and their ability to secure their admin key."

x