Can rocketpool.net be open source?

I’m for it, but I’m part nervous about having everyone contribute considering the exploit that happened to badger… I’m sure there must me a way to prevent it though.

That exploit was a complex Cloudflare API key leak due to a bug in Cloudflare. The attack had nothing to do with open source software and could have worked against a closed source frontend.

An open source version would allow the community to find bugs like this. Using the closed source website, we are at the whim of the developers and I would argue we are more prone to these types of attacks since we don’t know the infrastructure.

Read more about badgerdao attack here
https://badger.com/technical-post-mortem

3 Likes

Note that the GMC rejected a grant application (GA022304) to do an open-source frontend.