Nomination: Ana for Moonwell Security Council (Replacing Elliot)

Summary

This proposal recommends replacing Elliot from Solidity Labs with leading Moonwell developer, Ana (@anajuliabit) as a member of the Moonwell Security Council. Ana is a core developer for both Moonwell and Mamo, and her expertise with the protocol make her an ideal candidate to strengthen the Security Council in Elliot’s absence. She is very familiar with the onchain proposal process, and is a lifesaver in all technical developments of the protocol.

This is not a hostile removal by any means, Elliot recently winded down Solidity Labs, and is stepping away from his involvement at Moonwell. Additionally, Ana formerly worked with Elliot but was enshrined into the Moonwell team.

Motivation

For those unfamiliar, the Moonwell Security Council plays a critical role in safeguarding the protocol and responding to emergency situations. Given Ana’s deep familiarity with Moonwell’s codebase and operations, her addition would provide the Council with enhanced technical expertise. If you want to read more about the Moonwell Security Council, please read the constitution.

Rationale

  • Technical Expertise: Ana is a core contributor to Moonwell and Mamo, giving her firsthand knowledge of the protocol’s architecture and security requirements.

  • Responsiveness: As an internal developer, Ana can respond fast in event of an emergency requiring Security Council action.

  • Alignment: Ana’s day-to-day involvement with Moonwell ensures her incentives are directly aligned with the protocol’s safety and success.

Specification

  • Remove Elliot (Solidity Labs) from the Moonwell Security Council multisig.

  • Add Ana (@anajuliabit) as a new signer on the Security Council multisig.

This proposal requests that the Moonwell DAO approve this change and authorize the necessary updates to the Security Council’s Gnosis Safe configuration.

Next Steps & Voting Options

If approved, this change will be implemented by the appropriate Moonwell DAO administrators or multisig signers.

  • Add Ana/Remove Elliot
  • Do not add Ana/Keep Elliot
  • Abstain

This was a terrible nomination.

She used Claude AI to write code and didn’t verify the code and Claude Opus 4.6 wrote vulnerable code that led to a smart contract exploit with $1.78M loss.

cbETH asset price was set to $1.12 instead of $2200. On Github you can clearly see the commits were coauthored by Claude.

This code actually had unit/integration tests and passed a security audit which is extremely worrisome.

Claude thought it was supposed to be converting between cbETH and ETH since 1 cbETH = 1.12 ETH. She didn’t catch that error.

This is the so called “price oracle misconfiguration”.

Details here.

https://x.com/pashov/status/2023872510077616223

and here

https://x.com/moo9000/status/2024040101982990534