Keys encrypted at rest
Symmetric key encryption with periodic rotation and no plaintext keys in the logs.
HELIX only reads. If you switch it off tomorrow, your positions stay exactly where they are.
These are statements you can check by looking at the site, not promises.
No field on this site asks for a recovery phrase, a private key or exchange credentials.
The values shown come from a content file in this project. There is no server receiving anything.
There is no path on this site that leads to buying, selling or moving anything.
This is the specification, not an achievement. None of these items is implemented here, and none has been verified by a third party.
Symmetric key encryption with periodic rotation and no plaintext keys in the logs.
API keys carrying withdrawal permission should be refused at connection time.
A time-based code on every sign-in and on every new wallet connection.
Every session recorded with device, address and date, exportable by the user.
None of the items above has been independently verified. A real product would require an audit, and an audit is a document, not a marketing page.