RUN / SECURITY

Limit system access to exactly what execution requires.

Credentials are encrypted, permissions are minimized, withdrawal access is not required and critical uncertainty moves automation into halt.

ONE VERSION / ONE HISTORYcontrolled
BACKTESTSimulationLIVEObserve
3.4.1

Signals, fills, limits and reconciliation

HASH 8F2A·91C7
SYSTEM DOMAIN04 / RUN

Move one version from Simulation to available live

  1. DISCOVER
  2. OPTIMIZE
  3. VALIDATE
  4. RUN
  5. OBSERVE
01

Encrypted credentials

Sensitive exchange credentials are stored encrypted.

02

Minimum permissions

Trading access does not require withdrawal permission.

03

Isolation

Use a dedicated subaccount and IP whitelist.

04

Fail closed

Critical divergence stops new automated actions.

DECISION FRAMEWORK

Does observed execution still match the frozen strategy?

Follow the chain from signal and preflight to order, actual fill, exchange state and reconciliation. A missing link is an operational exception.

01

Observe in Simulation first

02

Use minimum live size

03

Halt on critical mismatch

OUTPUT

Execution audit trail

Before connecting

Minimum API credential checklist

Exchange account settings remain part of the security model even when kquant verifies the connection.

  1. 01

    Create a dedicated subaccount for automation.

  2. 02

    Issue a separate API credential only for kquant.

  3. 03

    Do not grant withdrawal permission.

  4. 04

    Add an IP whitelist where supported.

  5. 05

    Verify market and position mode.

  6. 06

    Start in Simulation and with minimum size.

  7. 07

    Keep independent exchange access and a kill switch.

Important

Historical, statistical and model results do not promise future returns. kquant provides computational tools and technical execution, but does not assess whether a specific trade is suitable for a user.