★ Low-threshold multisig vs TVL
Superstate's assessment for RD-F-028 — scored not_applicable on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
No multisig exists for upgrade authority (F027 is red). F028 evaluates threshold vs TVL for protocols with a multisig; absent any multisig, the factor is not applicable. The governing critical finding is F027 (single EOA control). Per RWA-regime precedent (circle-usyc): when F027 is red due to pure-EOA control, F028 N/A avoids double-counting the same structural gap as two critical reds.
Sources #
- EtherscanUSTB Upgrade Authority EOA ConfirmedBoth upgrade authority addresses confirmed EOAs; Safe API 404 for all admin addressesretrieved 2026-05-16
Methodology #
Determine whether the multisig threshold is abnormally low relative to TVL peer cohort (e.g., 2-of-3 for a protocol with >$100M TVL where peer norm is 5-of-8).
See the full factor methodology and distribution across all protocols →