Timelock on sensitive actions
EigenLayer's assessment for RD-F-033 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Upgrades: timelocked (2-day min, 10-day in practice). Pause: NOT timelocked — Pauser Multisig (1-of-7) can pause instantly; any single signer can execute a pause without delay. bEIGEN mint: allowances owner-set without timelock on the grant. The 1-of-7 instant-pause is the key finding: a single signer can halt the entire $8.89B TVL protocol without any governance delay.
Sources #
- Curator notehttps://etherscan.io/address/0x5050389572f2d220ad927CcbeA0D406831012390retrieved 2026-04-28
- https://docs.eigenfoundation.org/protocol-governance/technical-architectureretrieved 2026-04-28
Methodology #
For each sensitive action category (mint / pause / rescue / setOracle / upgrade), determine whether execution requires going through the declared timelock.
See the full factor methodology and distribution across all protocols →