Upgrade multisig signer configuration (M/N)
Ondo Finance's assessment for RD-F-026 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
Management Multisig: 4/7. Treasury Multisig: 4/7. Flux Timelock admin (0x118919e891D0205A7492650AD32E727617FA9452) is a GnosisSafeProxy but threshold/owners not confirmed (Safe API 403).
Sources #
- Etherscanhttps://etherscan.io/address/0xAEd4caF2E535D964165B4392342F71bac77e8367retrieved 2026-04-28
- https://etherscan.io/address/0x118919e891D0205A7492650AD32E727617FA9452retrieved 2026-04-28
- Ondo treasury multisig (Safe 4-of-7, on-chain verified — cache-derived)https://etherscan.io/address/0x677FD4Ed8aE623f2f625DEB2D64F2070E46cA1A1retrieved 2026-04-28
Methodology #
Read `threshold` and `getOwners()` on the multisig controlling upgrade / sensitive ops. Store as `required` (M) and `total` (N); render as "M/N". For EOA admins record `required=1, total=1` (display "1/1"). Null when admin is immutable or full DAO with no fixed signer set.
See the full factor methodology and distribution across all protocols →
rubric_version v1.7.0 protocol ondo-finance factor RD-F-026 score yellow collected_at 2026-05-14 12:01:55