Security & Trust
The Most Important Thing
How We Protect Your API Keys
Encryption at Rest
Encryption in Transit
Secure Infrastructure
No Human Access
What API Keys Can and Cannot Do
Required Permissions
Permission
Why We Need It
NOT Required (Keep These OFF)
Permission
Why OFF
Best Practices for API Keys
1. Never Enable Withdrawal
2. Use IP Whitelisting (When Available)
3. Create Dedicated Keys
4. Rotate Keys Periodically
5. Use Strong Exchange Security
What Happens If We Get Hacked?
You're Always in Control
Revoking Access
Deleting Your Account
Our Security Practices
Regular Audits
Penetration Testing
Bug Bounty Program
Incident Response
Comparing Security Models
Model
Fund Safety
Example
Frequently Asked Questions
Can TokenBot staff see my trades?
What if an exchange gets hacked?
Is my personal information secure?
How do I report a security issue?
Summary
Concern
Answer
Next Steps
Last updated
Was this helpful?