Admin EOA signing from new geography/device
Uniswap (v2 + v3)'s assessment for RD-F-107 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
V2+V3 combined: Off-chain signing telemetry not available in static assessment. V3 governance uses on-chain DAO (not a multisig EOA set) — geographic/device anomaly monitoring is inapplicable to a DAO where votes are cast by thousands of UNI holders. V2 has no governance. Gray per methodology — structural signal mismatch for DAO governance; always gray in static assessment.
Detail #
Signal fires when admin/upgrader EOA signs from a geography or device fingerprint inconsistent with prior history. For Uniswap: no admin EOA exists for V2 or V3 core contracts. The closest analog would be monitoring the Timelock (0x1a9C8182C09F50C8318d769245beA52c32BE35BC) for execution of governance-approved transactions — but this is an on-chain event, not an off-chain signing telemetry anomaly. Gray is structural for this protocol type: DAO governance with immutable core has no admin EOA to monitor.
Sources #
- Curator noteUniswap V2+V3 No Admin EOA — F107 GrayStatic assessment — off-chain telemetry not available; V3 DAO governance model has no admin EOA for which geographic/device anomaly is meaningful; gray per methodologyretrieved 2026-05-12
Methodology #
Detect whether an admin/upgrader EOA signs from a geography or device fingerprint inconsistent with prior signing history.
See the full factor methodology and distribution across all protocols →