Back to Documentation
Quick Start 6 min read

Security Best Practices

Protect your account with MFA and API key management.

Knowledge LayerDocumentation

Primary knowledge hub

Primary knowledge hub for platform usage and feature reference.

Enable Two-Factor Authentication

MFA is the single most important security step for your QuantumEdge account. Navigate to Settings > Security and enable TOTP-based authentication. Use a dedicated authenticator app (not SMS) for maximum security. Store your backup codes offline in a secure location.

Use Trade-Only API Keys

When connecting your exchange, always generate API keys with the minimum permissions required. Enable trade and query permissions; never enable withdrawal. This ensures that even if your QuantumEdge session were compromised, your exchange funds cannot be moved.

Monitor Your Sessions

QuantumEdge tracks all active sessions. Navigate to Settings > Security to view your current sessions, see sign-in history, and revoke any sessions you do not recognize. Sessions automatically expire after 30 days of inactivity.

Review Audit Logs

Every significant action on your account is recorded in an immutable audit log. Access your activity history from Settings > Activity to review strategy deployments, configuration changes, API key rotations, and sign-in events. Regular review of your audit log helps detect unauthorized activity early.