Admin EOA signing from new geography/device
Fluid's assessment for RD-F-107 — scored not_assessed on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
v1-deferred. Off-chain signing telemetry not publicly accessible. Instadapp team is doxxed (Samyak Jain, Sowmay Jain; India-based founders per Crunchbase and GlobalIndian profile) and admin signing is via Avocado smart wallet (account abstraction infrastructure), not a raw EOA private key — the AA design reduces raw EOA signing exposure. No public evidence of anomalous admin signing geography. Cannot assess without off-chain telemetry.
Sources #
- DocsAdmin Avocado wallet — Etherscan (Avocado proxy confirmed)Instadapp Avocado smart wallet — AA-based signing, not raw EOAretrieved 2026-04-29
Methodology #
Detect whether an admin/upgrader EOA signs from a geography or device fingerprint inconsistent with prior signing history.
See the full factor methodology and distribution across all protocols →