Security Infrastructure & Safeguards
Discover how eKash Exchange protects customer funds, enforces strict authentication boundaries, and maintains immutable transaction logs.
Multi-Sig Cold Storage
98%+ of digital assets are held in geographically distributed, air-gapped cold storage vaults requiring multi-signature approval from hardware security modules (HSMs).
In-Memory Session Security
Authentication tokens are strictly stored in-memory during active sessions. Cookies and localStorage persistence are minimized to prevent cross-site scripting (XSS) leaks.
Idempotency & Rate Control
All financial order requests require UUID v4 idempotency keys. Duplicate requests are rejected at the gateway before matching, protecting against duplicate charges.
Immutable Audit Logs
Our database schema enforces zero audit-deletion capabilities. Ordinary support agents and automated processes cannot alter past transaction records.
User Security Responsibility
Always ensure multi-factor authentication (MFA/TOTP) is enabled on your account. Never share your password, 2FA backup codes, or session tokens with anyone. eKash support will never ask for your password.