ERC-4626 virtual-share offset (OZ ≥4.9)
Falcon Finance's assessment for RD-F-074 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
sUSDf (0xc8CF6D7991f15525488b2A83Df53468D682Ba4B0) uses a custom staking rewards distributor pattern (not confirmed as ERC-4626). No public GitHub. Source is Etherscan-verified (impl 0x0D132bEE412E6619a4863AEEdad97541BfDa3F34) but ERC-4626 virtual-share offset pattern cannot be confirmed without source code review by code-security-analyst.
Detail #
Profile §3: sUSDf has a separate Staking Rewards Distributor at 0x8AF2EFa47efB2095b80D82577c597186Ea2FFFea. Zellic audit noted 'StakedUSDf initialization may fail' (Medium) — suggests non-trivial initialization complexity. No ERC-4626 interface confirmation in docs or audit summaries. Code-security-analyst must read impl 0x0D132bEE412E6619a4863AEEdad97541BfDa3F34.
Sources #
- EtherscanEtherscan — sUSDf Token (TransparentUpgradeableProxy, impl 0x0D132bEE412E6619a4863AEEdad97541BfDa3F34)https://etherscan.io/token/0xc8CF6D7991f15525488b2A83Df53468D682Ba4B0retrieved 2026-05-12
- Zellic Audit — Falcon Finance USDf/sUSDf (1 Medium: StakedUSDf initialization may fail)https://reports.zellic.io/publications/falcon-financeretrieved 2026-05-12
Methodology #
Determine whether ERC-4626 vaults use OpenZeppelin ≥4.9 virtual-share offset pattern to prevent first-depositor share-inflation.
See the full factor methodology and distribution across all protocols →