Security Architecture

Understand the security layers used across 6MM trading infrastructure, APIs, SDKs, webhooks, and partner integrations.
View as Markdown

6MM security documentation focuses on partner production readiness. The goal is to keep trading infrastructure stable while making responsibility boundaries clear.

Security layers

LayerFocus
InfrastructureNetwork isolation, encrypted service communication, monitoring, and failover.
Trading systemsDeterministic matching, margin checks, risk controls, and abuse prevention.
Integration securityAPI keys, HMAC signing, webhook signatures, replay protection, and backend-only secrets.
Partner operationsUser session validation, asset custody, customer support, and local compliance controls.

Partner responsibilities

  • Keep API secrets and signing keys out of browsers and mobile apps.
  • Validate partner user sessions before issuing trading entry credentials.
  • Implement webhook idempotency and terminal state checks.
  • Maintain operational logs for account, order, transfer, and webhook flows.