defirisk.co
rubric v1.7.0

New ERC-20 approval to unverified contract from whale

Superstate's assessment for RD-F-096 — scored not_applicable on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

USTB and USCC are permissioned non-DeFi tokens; no DeFi lending/DEX router exists as an unverified contract interacting with the protocol at the token layer. The AllowList gates all interactions. New ERC-20 approval from high-TVL user to unverified contract is not a meaningful attack vector for this architecture. Not applicable (AllowList gates all interactions; no unverified-router surface).

Sources #

Methodology #

Detect whether a top-TVL depositor grants a new token approval to an unverified contract that interacts with this protocol.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol superstate factor RD-F-096 score not_applicable collected_at 2026-05-16 00:06:37