- Check:
pess-timelock-controller
- Severity:
High
- Confidence:
Low
The detector sees if a contract contains an openzeppelin timelock-contoller implementation.
The deploy address can govern the contract bypassing timelock-controller limitations. test scenario
Remove Proposer and Executor roles from the deployer address after deploy.