SDK security considerations

Great call today! I didn’t ask this because it felt less relevant to the participants (mostly Cosmos validators) but I’m particularly interested in the security considerations for implementing a sidechain (appchain?) using the Cosmos SDK.

Questions like:

  • what known attacks exist at the app layer?
  • what common issues and gotchas should be avoided?
  • what are the recommended best practices for secure development?
  • what are best practices for upgrading a sidechain?

Going to surface these questions in our next internal security call and make sure you get some good answers here! Thanks for joining us, and apologies for the delay here-- we were on a team retreat.

