Partial-drain test transactions
Circle USYC's assessment for RD-F-091 — scored not_applicable on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
USYC is a permissioned ERC-20/BEP-20 with Entitlements access control requiring all interacting addresses to pass KYC and OFAC oracle screening. Unauthorized partial drains (the trigger condition for this signal) cannot occur without first compromising the admin EOA or bypassing the Entitlements oracle. The classic small-test-tx-before-large-drain pattern requires a permissionless attack surface that does not exist for USYC.
Sources #
- DocsUSYC Product Structuring - Circle DocsUSYC product structuring docs - permissioned access, OFAC oracle screening describedretrieved 2026-05-16
- circle-usyc profile - Entitlements access control00-profile.md section 6 - RolesAuthorityProxy governs allowlist; all interactions gated by Entitlements contractretrieved 2026-05-16
Methodology #
Detect one or more small-value outflows prior to a larger drain that match a known pre-strike pattern (low-value same-function calls from new wallet).
See the full factor methodology and distribution across all protocols →