All Collections
API
API Security Measures
API Security Measures

Fortify your fence: Our API's top-notch security protocols.

Oxelot avatar
Written by Oxelot
Updated over a week ago

At OXFUN, our focus is on delivering top-notch REST and WebSocket APIs, engineered for both rapid response times and fortified security. We are committed to providing a seamless and secure trading environment.


Reinforcing API Interactions with Advanced Security Measures

  • SSL/TLS Protocols for Secure Communication: Our emphasis on using SSL/TLS-based connections ensures a secure, unbreachable channel between our clients and API servers, guarding against potential 'man-in-the-middle' attacks.

  • Comprehensive Rate Limiting for System Integrity: To maintain API performance and protect against threats like brute-force and denial-of-service attacks, we implement strategic rate limiting controls.


Focused on Authentication and Token Management

  • Efficient JWT Token System for User Authentication: We utilize JWT tokens for their reliability and efficiency in user authentication and authorization.

Enhanced Token Security Features:

  • Token Expiration: Our JWT tokens are designed with a short lifespan, minimizing risks related to token theft.

  • HTTPS Enforcement: All data exchanges occur over HTTPS, encrypting information during transmission.

  • Secure Token Storage: We store tokens in HTTP headers within browser storage, effectively preventing XSS attacks targeting cookies.

  • Meticulous Token Validation and Auditing: Our system rigorously checks each JWT token for its formation, signature, and validity.

Dedicated and Secure API Environment

  • Isolation of API Servers: Our API server endpoints are housed in a dedicated, isolated environment, ensuring the segregation of customer data and transactions for enhanced security.


Layered Approach to API Security

  • Robust Multi-Layered Security Framework: Incorporating a combination of network, host, and cloud defenses, we employ WAFs, Network Firewalls, and EDRs to provide comprehensive protection.


Ongoing Security Enhancements and Proactive Monitoring

  • Regular Security Audits and Vulnerability Assessments: We continuously assess and improve our security measures through regular audits and vulnerability checks.

  • In-Depth Logging and Monitoring Systems: Our robust logging and monitoring infrastructure plays a crucial role in tracking API usage, detecting anomalies, and promptly responding to potential security issues.

By implementing these diverse and rigorous security protocols, OXFUN ensures that our users experience a highly reliable and secure API service, setting a new standard in trading platform security.

Did this answer your question?