Qantova Qantova SECURITY CENTER ← Back to Qantova
SECURITY · API PERMISSIONS

Keep control of your Binance access.

Qantova is designed to operate with the minimum Binance API permissions needed for monitoring and Futures execution. Withdrawal access is not required.

REQUIRED Reading

Account and Futures data needed by the application.

LIVE MODE Futures trading

Required only when you intentionally use Live execution.

NOT REQUIRED Withdrawals

Do not enable withdrawal permission for a Qantova API key.

MINIMUM PERMISSIONS

Give Qantova only what it needs.

Use a dedicated Binance API key for Qantova. Do not reuse a key that has broader account permissions.

Permission Qantova Why
Enable Reading REQUIRED

Used to read account and Futures information needed by the desktop application.

Futures trading LIVE ONLY

Needed when Qantova is allowed to place and manage Futures orders in Live mode.

Spot / Margin trading NOT NEEDED

Qantova is built around Binance Futures.

Withdrawals KEEP OFF

Qantova does not require withdrawal permission. Leave this permission disabled.

START SAFELY

Use Demo before Live.

Qantova includes separate Demo/Testnet and Live connection settings. Configure and understand your strategy, risk limits and runtime controls before connecting real funds.

01
FIRST Demo / Testnet

Verify configuration and behavior without using real funds.

02
THEN Live

Switch only when permissions and risk settings are intentionally configured.

API KEY HYGIENE

Treat API credentials like passwords.

01

Create a dedicated key

Use a separate Binance API key only for Qantova. Do not share it with other bots, scripts or services.

02

Restrict permissions

Enable only the permissions you actually need. More permissions mean more exposure if a key is ever compromised.

03

Use IP restrictions

Binance recommends restricting API access to trusted IP addresses. If your network IP changes, update the Binance allowlist before using Live mode.

04

Rotate compromised keys

If you suspect that an API key or secret has been exposed, revoke it in Binance immediately and create a new dedicated key.

YOU Binance Account
DESKTOP Qantova
API Futures
CONNECTION

Your Binance credentials are configured inside Qantova Desktop.

The public qantova.com website does not ask you to enter a Binance API key. Binance connection settings are configured from the desktop application's settings interface.

BEFORE LIVE MODE

Five-minute security check.

Create a dedicated Binance API key for Qantova.
Enable Reading and only the Futures permission required for Live trading.
! Confirm withdrawal permission is disabled.
Add trusted-IP restrictions when practical for your network setup.
Run Qantova in Demo first and verify risk limits before enabling Live execution.
IF SOMETHING LOOKS WRONG

Revoke first. Investigate second.

If you suspect unauthorized access, unexpected API activity or credential exposure, disable or delete the API key immediately from your Binance account.

Open Binance API Management ↗
Important

Qantova is trading software, not a custodian and not financial advice. Crypto Futures involve substantial risk. API restrictions reduce credential exposure but do not remove trading or market risk.