Quidax uses a layered security architecture to protect partner and user funds and data:
- Cold storage: The majority of crypto assets held on behalf of partners and users are stored in offline cold wallets, minimising exposure to online attack vectors
- Encryption in transit and at rest: All data transmitted between your system and the Quidax API is encrypted using TLS 1.2 or higher. Sensitive data at rest is encrypted using industry-standard methods
- Two-factor authentication (2FA): Mandatory for all Quidax Business dashboard access
- Access controls: Internal Quidax systems operate on a least-privilege model, with access to partner data restricted to authorised personnel with a legitimate business need
- 24/7 monitoring: Our infrastructure and security team monitors platform activity around the clock for anomalies and potential threats