Non-Custodial Security

Your Funds Stay on Deriv

TRADIX never touches your capital. We use encrypted API scopes to execute trades while your funds remain safely in your Deriv account.

Layer 01

Encrypted API Keys

ACTIVE_ENCLAVE

Secure Vault Storage

Your Deriv API keys are stored in isolated hardware modules with zero network-exposed surface area.

StandardAES-256-GCM / FIPS 140-3
Execution< 1.2ms
Layer 02

Biometric Auth

HARDWARE_BOUND

Zero-Knowledge Proofs

Device-level authentication using Secure Enclaves. Private signatures never transit public network relays.

StandardFIDO2 / WebAuthn Level 3
Execution< 45ms
Layer 03

Trade-Only Scope

CONSENSUS_READY

Restricted API Permissions

API keys are restricted to trading only. Withdrawal rights are disabled at the exchange level.

StandardMPC-TSS / Read-Trade
Execution< 180ms
Layer 04

Heuristic Sentinel

CONTINUOUS_SCAN

Real-Time Anomaly Detection

Sub-millisecond behavioral modeling scans for unusual trading patterns or unauthorized access attempts.

StandardML-IDS / Neural Pipeline
Execution< 8.4ms

No Withdrawal Access

TRADIX API keys are scoped strictly for trading. We cannot withdraw or move funds from your Deriv account.

Trade-Only Scope
No Withdrawal Rights
Encrypted Transit
API Key Isolation

Compliance & Security

Verified Security Standards

Secure Infrastructure
SOC 2 Type IIAICPA Certified
VerifiedAnnual 2024 Audit
ISO/IEC 27001Security Standard
CompliantContinuous Assurance
PCI-DSS Level 1Payment Rails
CertifiedQuarterly ASV Scan
CCSS Tier 3Crypto Standard
ExceededArchitecture Audit
Platform Security

Engineered for maximum security.

TRADIX prioritizes your assets with non-custodial architecture, encrypted API routing, and rigorous system-wide security protocols.

Data Integrity
Active & Secure
AES-256 Encryption
TLS 1.3 Standard

All trading telemetry and API traffic is protected by military-grade AES-256 encryption, ensuring your session data remains private.

End-to-End Secure
Ref: TLSView Details
Access Control
Verified Access
Non-Custodial API
Read-Only Scope

Our platform operates on a non-custodial model. We never hold your funds, and API keys are restricted to read-only or trade-only scopes.

No Fund Access
Ref: Read-OnlyView Details
System Audits
Tested & Valid
Penetration Testing
SOC-2 Compliant

Regular third-party security audits and penetration tests ensure our infrastructure remains resilient against evolving cyber threats.

Audited Platform
Ref: SOC-2View Details
Authentication
Always Enabled
Multi-Factor Auth
2FA Integrated

We enforce multi-factor authentication for all sensitive account actions, adding a critical layer of defense against unauthorized logins.

2FA Protected
Ref: 2FAView Details

Operational Telemetry

Real-time system health and security metrics for your trading environment.

LatencyMS
0.4ms AVG
Stable
Uptime99
99.99% SLA
Active
TrafficEN
AES-256
Secure
APIRO
Read-Only
Locked
AuditSOC
SOC-2
Passed
Auth2FA
TOTP-6
Active

Transparent Security Architecture

We maintain full transparency regarding our security protocols. Your trading edge is our priority.

Review Security