defirisk.co
rubric v1.7.0

Admin has mint() with unlimited max

USDD (Decentralized USD)'s assessment for RD-F-042 — scored red on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.

Evidence summary #

[STAR CRITICAL] Canonical Ethereum ERC-20 (0x4f8e5de400de08b164e7421b3ee387f461becd1a, source-verified Exact Match, 5,863 holders) uses wards-based mint() with no supply cap beyond 10B theoretical maximum; callable by any ward in a single tx. TRON TRC-20 minting by TDR-whitelisted entities; no verified on-chain supply cap. The Aug-2024 unilateral BTC reserve removal demonstrates unconstrained admin powers in practice. Red is supported by the correct canonical contract evidence, not the wrong-contract 84-holder address.

Sources #

Methodology #

Determine whether an admin-callable `mint` on a protocol token has no supply cap or an unlimited maximum supply.

See the full factor methodology and distribution across all protocols →

rubric_version v1.7.0 protocol usdd factor RD-F-042 score red collected_at 2026-05-17 11:34:18