Security
Security Built Around Control, Protection, and Trust
Nexora is being built for traders who want intelligent automation without giving up control of their exchange accounts. Security is not treated as an add-on. It is part of the platform design from the start.
Non-Custodial Platform
Nexora does not hold user funds. Users keep their crypto inside their own supported exchange accounts and remain responsible for account ownership.
Encrypted API Key Storage
API credentials are designed to be encrypted before storage so sensitive exchange access information is protected inside the backend system.
No Withdrawal Access Required
Normal Nexora use should not require API withdrawal permissions. Users should create exchange API keys with trading access only and withdrawals disabled.
User-Controlled Permissions
Users can create, limit, rotate, or revoke API keys directly from their exchange account. Nexora is designed around user-controlled access.
Risk-Aware Automation
Strategy rules, confidence checks, position limits, and exposure awareness help keep automated trading decisions structured instead of emotional.
Protected Infrastructure
Nexora is being built with HTTPS access, backend separation, controlled deployments, environment-based secrets, and limited public exposure.
Plain-English Security Model
You Stay In Control Of Your Funds
Nexora is designed to connect to supported exchanges through API keys. That means the exchange account stays yours, the funds stay on the exchange, and Nexora provides trading intelligence, automation, and risk controls.
The safest setup is simple: use API keys with trading permission only, disable withdrawals, protect your exchange login, and revoke any key you no longer trust or use.
API Key Protection
Exchange Access Should Be Limited, Encrypted, And Revocable
Nexora is being built so API credentials are handled carefully, stored securely, and used only for supported platform functions. Users should never create API keys with more permissions than needed.
In plain English: Nexora should not need the ability to withdraw your crypto. Trading access is enough for supported automation. If an API key ever needs to be replaced, you should be able to revoke it from your exchange and create a new one.
Trust Foundation
Security Is Not A Feature. It Is The Foundation.
Nexora is being built to earn trust through clear permission boundaries, transparent risk controls, responsible automation, and a non-custodial structure that keeps users in control of their own assets.