Check the permissions before connecting
For MW Trader's Binance USD-M Futures connection, enable the Futures trading access that the product checks, restrict the key to the trusted server IP shown in Setup, and leave withdrawals disabled. MW Trader's connection validation rejects withdrawal-enabled keys. Review current settings in Binance API Management because the exchange controls the key, not the website.
Important limit: disabling withdrawals prevents that key from directly making API withdrawals, but a trading-enabled key can still place orders and lose money. It is not a guarantee that funds cannot be harmed.
Keep the secret out of messages and screenshots
Never paste an API secret, account password, verification code or wallet seed phrase into WhatsApp, email or a support ticket. Enter credentials only in the account's registration or authenticated Setup form. MW Trader encrypts saved API credentials on the backend and does not display them back in member or admin views; the key's last four characters can be shown for identification.
Binance's API key and security overview explains why secrets should not be stored in plain text or shared.
Use the IP restriction correctly
Copy the server IP currently displayed in MW Trader Setup into the API key's trusted-IP list at Binance. An old or incorrect IP can make the connection fail even if the key and secret are correct. Re-check the displayed IP if the backend location changes; never replace it with your phone's or laptop's IP unless the product explicitly asks for that.
Review and revoke
- Confirm the connection status in MW Trader and the permissions in Binance.
- Periodically review API keys you no longer use.
- If a key may be exposed, revoke it in Binance API Management and create a new restricted key if needed.
- After revoking access, inspect any existing Futures positions in Binance. Revocation stops new API actions from that key but does not itself close open positions.
Read the product's security details and trading risk disclosure as separate checks. API safety and market risk are different problems.