How will new changes to the smart contract be pushed, will your company hold a key that will let you push security changes?
We have learnt from the DAO hack and other similar cases. We also understand that the technology is very young and not developed enough yet.
In order to avoid negative incidents and keep the DAO consensus at the core of the platform, we have decided to use another concept. The idea is to apply a multy-sig method where the most important transactions such as fund management and smart contract upgrades are to be signed by both a smart contract and the Investment committee.
People are not able to initiate a transaction without a smart-contract and the smart contract cant process the transaction if it is not signed by the committee. This approach creates an additional security layer. Furthermore, all contracts will be audited by independent experts before their deployment.
When we see that the technology becomes mature enough to exclude people from the workflow, we will certainly do so.