2024-09-17 11:28:57 +00:00
|
|
|
import "./shared.spec";
|
|
|
|
|
2024-01-24 15:07:23 +00:00
|
|
|
using ERC20A as staked;
|
|
|
|
using StakeManagerNew as newStakeManager;
|
|
|
|
|
|
|
|
methods {
|
|
|
|
function staked.balanceOf(address) external returns (uint256) envfree;
|
2024-11-07 13:50:13 +00:00
|
|
|
function totalStaked() external returns (uint256) envfree;
|
|
|
|
function totalMP() external returns (uint256) envfree;
|
2024-06-19 09:26:03 +00:00
|
|
|
function previousManager() external returns (address) envfree;
|
2024-01-24 15:07:23 +00:00
|
|
|
|
2024-09-04 07:54:45 +00:00
|
|
|
function _.migrationInitialize(uint256,uint256,uint256,uint256,uint256,uint256,uint256) external => DISPATCHER(true);
|
2024-11-07 13:50:13 +00:00
|
|
|
function StakeManagerNew.totalStaked() external returns (uint256) envfree;
|
2024-01-24 15:07:23 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
definition blockedWhenMigrating(method f) returns bool = (
|
|
|
|
f.selector == sig:stake(uint256, uint256).selector ||
|
|
|
|
f.selector == sig:unstake(uint256).selector ||
|
|
|
|
f.selector == sig:lock(uint256).selector ||
|
|
|
|
f.selector == sig:executeEpoch().selector ||
|
2024-09-25 15:53:59 +00:00
|
|
|
f.selector == sig:executeEpoch(uint256).selector ||
|
2024-03-01 09:56:19 +00:00
|
|
|
f.selector == sig:startMigration(address).selector ||
|
2024-09-04 07:54:45 +00:00
|
|
|
f.selector == sig:migrationInitialize(uint256,uint256,uint256,uint256,uint256,uint256,uint256).selector
|
2024-01-24 15:07:23 +00:00
|
|
|
);
|
|
|
|
|
|
|
|
definition blockedWhenNotMigrating(method f) returns bool = (
|
2024-11-07 13:50:13 +00:00
|
|
|
f.selector == sig:acceptUpdate().selector ||
|
|
|
|
f.selector == sig:leave().selector ||
|
2024-01-24 15:07:23 +00:00
|
|
|
f.selector == sig:transferNonPending().selector
|
|
|
|
);
|
|
|
|
|
|
|
|
rule rejectWhenMigrating(method f) filtered {
|
2024-03-01 09:42:11 +00:00
|
|
|
f -> blockedWhenMigrating(f) && f.contract == currentContract
|
2024-01-24 15:07:23 +00:00
|
|
|
} {
|
|
|
|
calldataarg args;
|
|
|
|
env e;
|
|
|
|
|
|
|
|
require currentContract.migration != 0;
|
|
|
|
|
|
|
|
f@withrevert(e, args);
|
|
|
|
|
|
|
|
assert lastReverted;
|
|
|
|
}
|
|
|
|
|
|
|
|
rule allowWhenMigrating(method f) filtered {
|
|
|
|
f -> !blockedWhenMigrating(f)
|
|
|
|
} {
|
|
|
|
calldataarg args;
|
|
|
|
env e;
|
|
|
|
|
|
|
|
require currentContract.migration != 0;
|
|
|
|
|
|
|
|
f@withrevert(e, args);
|
|
|
|
|
|
|
|
satisfy !lastReverted;
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
rule rejectWhenNotMigrating(method f) filtered {
|
2024-03-01 09:42:11 +00:00
|
|
|
f -> blockedWhenNotMigrating(f) && f.contract == currentContract
|
2024-01-24 15:07:23 +00:00
|
|
|
} {
|
|
|
|
calldataarg args;
|
|
|
|
env e;
|
|
|
|
|
|
|
|
require currentContract.migration == 0;
|
|
|
|
|
|
|
|
f@withrevert(e, args);
|
|
|
|
|
|
|
|
assert lastReverted;
|
|
|
|
}
|
|
|
|
|
|
|
|
rule allowWhenNotMigrating(method f) filtered {
|
|
|
|
f -> !blockedWhenNotMigrating(f)
|
|
|
|
} {
|
|
|
|
calldataarg args;
|
|
|
|
env e;
|
|
|
|
|
|
|
|
require currentContract.migration == 0;
|
|
|
|
|
|
|
|
f@withrevert(e, args);
|
|
|
|
|
|
|
|
satisfy !lastReverted;
|
|
|
|
}
|
|
|
|
|
|
|
|
rule startMigrationCorrect {
|
|
|
|
env e;
|
|
|
|
address newContract = newStakeManager;
|
|
|
|
|
|
|
|
startMigration(e, newContract);
|
|
|
|
|
|
|
|
assert currentContract.migration == newContract;
|
2024-11-07 13:50:13 +00:00
|
|
|
assert newStakeManager.totalStaked() == currentContract.totalStaked();
|
2024-01-24 15:07:23 +00:00
|
|
|
}
|
|
|
|
|
2024-03-01 09:42:11 +00:00
|
|
|
rule migrationLockedIn(method f) filtered {
|
|
|
|
f -> !blockedWhenMigrating(f) && f.contract == currentContract
|
|
|
|
} {
|
2024-01-24 15:07:23 +00:00
|
|
|
env e;
|
|
|
|
calldataarg args;
|
|
|
|
|
|
|
|
require currentContract.migration != 0;
|
|
|
|
|
|
|
|
f(e, args);
|
|
|
|
|
|
|
|
assert currentContract.migration != 0;
|
|
|
|
}
|
|
|
|
|
2024-03-01 09:56:19 +00:00
|
|
|
rule epochStaysSameOnMigration(method f) filtered {
|
|
|
|
f -> !blockedWhenMigrating(f) && f.contract == currentContract
|
|
|
|
} {
|
2024-01-24 15:07:23 +00:00
|
|
|
env e;
|
|
|
|
calldataarg args;
|
|
|
|
|
|
|
|
uint256 epochBefore = currentContract.currentEpoch;
|
|
|
|
require currentContract.migration != 0;
|
|
|
|
|
|
|
|
f(e, args);
|
|
|
|
|
|
|
|
assert currentContract.currentEpoch == epochBefore;
|
|
|
|
}
|