This update is packed with multiple improvements ranging from security features, governance features and pure utility improvements to the product. We are also particularly excited to see the introduction of the authz module. It opens enormous capabilities but it also comes with a great load of risks for users. One particularly scary consequence is that phishing scams could trick users into signing SendAuthorization
or even GenericAuthorization
.
Regarding this context, we advise the @Foundation to jointly create a program destined to inform users about the impending dangers authz transaction can carry if inappropriately used. We have already invited wallet providers to create a special UI framework for these types of transactions in order to prevent users’ from signing them without proper context. In the meantime extreme caution is recommended.
Despite these additional security considerations, we fully support this v4.0 upgrade.