Keys and connection
The desk signs only with an agent wallet that the account owner approves. It never holds the owner's key and cannot withdraw.
Connection
Current agent wallet
Rotation steps
- 1
Generate a key on the server
The desk creates the key and encrypts it at rest. Only its public address is ever shown.
- 2
The account owner approves it
On Hyperliquid's API page, the owner enters the name and public address and authorises it from their own wallet.
- 3
The desk verifies
The desk reads the approval and expiry back from Hyperliquid before the key can sign anything.
- 4
Retire the old key
A retired address is never used again.