Skip to content

Roles and authority

Contract ownership and ProtocolAuthority roles are separate control planes. Owners authorize UUPS upgrades and authority-pointer changes. Governance, operations, and emergency roles control different configuration and pause paths.

Before deployment, enumerate every owner, authority pointer, updater, keeper, router, fee collector, and child proxy. Authority changes on a router do not automatically propagate to existing children. External multisig and change-management policy are part of the security boundary because the contracts do not enforce a general timelock.

No identities or multisig composition are documented until verified operational evidence exists.