TGViewer
Curious facts from Michael@Curve Curious facts from Michael@Curve @michael_curve · 1.22K subscribers
Post #115 873
In his recent interview, Andre Cronje weighted heavily (https://x.com/therollupco/status/2078961843008397433?s=20) in favor of smart contract upgradability, contrary to what he said before. For context: Andre was one of the people who ignited the DeFi summer in 2020, started a bunch of projects (including Yearn) and invented ve(3,3) variant of ve-tokenomics launched in Solidly, now used by Aerodrome.

Is he right to bash on immutability? I think no, very wrong.

Smart contracts can be hacked if mistakes were made - you know that. But having them upgradable means a possibility of a *hack by modification*. Especially if your upgrades are controlled by an EOA or a multisig, not a DAO.

Smart contracts are not large in size, so one *can* secure them in a bullet-proof way. If you are not sure - you can (and should) apply formal verification - it is about to become much more accessible than before (again, thanks to AI). If you are *still* not sure - make an ability to freeze a smart contract so that everyone can just do some sort of a safe withdrawal via the simplest possible route, so you have an emergency plan in case you have some issue detected.

If you are a dev - use immutability as your way to protect from all sorts of key compromises or infrastructure compromises, simialar to what LayerZero experienced with Kelp bridging. Immutability is your friend, not enemy. Andre is wrong.


🥳 Curve's UI | ✈️ Telegram Chat | 🤟 Twitter/X

🛸 China Chat | 📱 YouTube | 📱 Discord
X (formerly Twitter) The Rollup (@therollupco) on X Andre Cronje (@AndreCronjeTech), Founder of @flyingtulip_, shares why he no longer preaches decentralization, and why he's come to see immutability as a bug instead of a feature.
  • ❤ 21
  • 👍 4
  • 🔥 1
  • 🖕 1
More from @michael_curve
  1. Jun 25, 2026So looks like Uniswap finds out tech which was used by Curve since its start in 2020 (usin…
  2. Jun 9, 2026Seeing a lot of fears about Claude Mythos allegedly being released today or tomorrow and "…
  3. May 26, 2026Here we go again. Custodial stablecoins EURR and USDR were hacked by company-s multisig wa…
  4. May 11, 2026Seeing many people getting their telegram hacked. The malware uses telegram of someone fro…
  5. Apr 26, 2026I've made a proposal on how to recover bad debts in lending protocols, starting with Curve…
  6. Apr 19, 2026Observing the hack which happened yesterday to rsETH, which caused a serious contagion at…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →