Client digital assets and client money are recorded and held separately from the assets of the company and reconciled against custody holdings each business day.
The majority of client digital assets are held in cold storage with keys generated and retained offline. Key material never exists in a single place in a usable form.
Deposits are received at a reserve address. Withdrawals are paid from a separate float address holding only the balance required to meet demand. Movements between the two require multi party authorisation.
Ledger balances recorded against client accounts are reconciled against holdings at the custody addresses each business day. Differences are investigated before the next trading day.
Controls available on every account. Some are mandatory and cannot be disabled.
| Control | Status | Description |
|---|---|---|
| Two factor authentication | Mandatory for withdrawals | Required on every withdrawal instruction and on any change to security settings. |
| Withdrawal allow list | Always enabled | A destination must be added before use and is held for twenty four hours. |
| Device binding | Always enabled | A new device must be confirmed by email before it is granted access. |
| Login notification | Always enabled | An email is sent on each login from a device that has not been used before. |
| Session expiry | Always enabled | A session expires after a period of inactivity and on password change. |
| Biometric login | Optional | Available in the mobile application on devices that support it. |
Report a suspected vulnerability to the security team before disclosing it elsewhere. Do not access, modify or destroy data belonging to another person, and do not degrade the service while testing. Reports are acknowledged and the reporter is kept informed until the matter is closed.