defirisk.co
rubric v1.7.0

Timelock duration on upgrades

Sanctum's assessment for RD-F-032 — scored red on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

No independent on-chain timelock controller identified for program upgrades or sensitive actions. Squads V4 has an optional timelock feature but whether Sanctum enables it is unconfirmed. Futarchy governance has a ~7-day trading window but this is advisory and does not constrain multisig execution timing. No minimum delay between a governance decision and multisig execution is enforced on-chain. Profile §6 explicitly flags: 'Timelock (if any): Not identified in public documentation.'

Sources #

Methodology #

Read the timelock delay (in hours) between a queued upgrade proposal and its executable state.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol sanctum factor RD-F-032 score red collected_at 2026-05-04 18:49:23