After dog-fooding Spending Limits both in Squads and Fuse and having a deep discussion with the protocol team, we suggest to drop the requirement for the Spending Limits to only be usable by the members of the multisig.
This allows for perfectly valid workflows that are pretty clanky right now, for example creating an SL for the fee relayer (currently this requires adding the relayer as a member to the multisig with no permissions).
The potential risks are dangling SLs that are created for random keys and now forgotten, but in our opinion it's a case for proper multisig housekeeping - making sure your SLs are up to date and deleted when not needed anymore
After dog-fooding Spending Limits both in Squads and Fuse and having a deep discussion with the protocol team, we suggest to drop the requirement for the Spending Limits to only be usable by the members of the multisig.
This allows for perfectly valid workflows that are pretty clanky right now, for example creating an SL for the fee relayer (currently this requires adding the relayer as a member to the multisig with no permissions).
The potential risks are dangling SLs that are created for random keys and now forgotten, but in our opinion it's a case for proper multisig housekeeping - making sure your SLs are up to date and deleted when not needed anymore