Paradigm handles two main types of API keys:
Recommended Security Practices
Block Trade permission to operateUsers may have multiple exchange API keys per venue, each will need a unique label as it’s identifier. API Keys differ between venues but generally consist of a pair of tokens.
With these protections, should a bad actor somehow gain access to unencrypted contents of the DB, they would not feasibly be able to decrypt customers’ Exchange API Keys.
Recommended Security Practices
This consists of an access key and a signing key. A desk can have multiple keys but a unique label is required for them.