Tradingale Security
Tradingale Security
At Tradingale, protecting user data and privacy is a top priority. We use robust security measures to support a secure and transparent use of the service.
- No Custody of Funds: Tradingale is a data provider. It never holds, transfers, or touches user assets, and it never places orders.
- No Exchange Access Needed: Using Tradingale requires no exchange API keys. As of July 2026, exchange API connections are reserved for internal operations and are not part of the user-facing product.
- Tradingale API Token: Your personal API token grants read access to the data within your plan's quota. Treat it like a password: keep it out of public repositories, and rotate it from Settings → API if it may have been exposed.
- Encrypted Storage: Stored credentials are protected using AES-256 encryption.
- Authentication Security: Login and identity management are handled through Auth0, protecting accounts against unauthorized access.
- Recommended Practices: Rotate API tokens regularly (every 90 days recommended) and never share them publicly.
⚠️ Disclaimer: Tradingale is a technical service platform. Tradingale never places orders, holds funds, or gives advice. Users remain responsible for securing their own accounts and personal credentials, as outlined in our Terms of Service.