defirisk.co
rubric v1.7.0

Single admin EOA

USDD (Decentralized USD)'s assessment for RD-F-027 — scored red on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

[STAR CRITICAL] Effective unilateral admin control demonstrated by Aug-2024 unilateral removal of ~12,000 BTC (~$726M) from reserves without DAO vote — contract-independent evidence of single-entity control. No on-chain enforced multisig requirement confirmed. Canonical Ethereum ERC-20 (0x4f8e5de400de08b164e7421b3ee387f461becd1a, source-verified) uses wards system: rely() grants mint authority with no mandatory multi-party gate. TRON admin on-chain unobtainable (Tronscan 403) but unilateral reserve action confirms effective single-entity control. Red independent of contract-identity dispute.

Sources #

Methodology #

Determine whether the effective upgrade/owner/rescue role is held by a single EOA (not a multisig) with no timelock on sensitive operations.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol usdd factor RD-F-027 score red collected_at 2026-05-17 11:34:18