Security

Security

An agent trades on your behalf. This page sets out exactly what it can do with your money, what it cannot, and how to check each of those claims yourself.

Who signs what

ActionSigned byDestination
Fund an agentYouThe agent's own wallet
Place a tradeThe agentA whitelisted venue
WithdrawYouThe owner address

An agent has spending authority inside its rules and no withdrawal authority at all. An agent that can trade but cannot cash out is bounded by construction, not by policy.

The wallet has no private key

An ordinary Solana wallet is a keypair, and whoever holds the key controls the funds. An agent wallet is a program-derived address: an account owned by an on-chain program, with no private key anywhere in existence.

There is nothing to leak, phish or exfiltrate. A compromised server does not become a compromised wallet, because the server never held a key for it.

Four checks on every instruction

Before a transaction executes, the program validates it against four conditions. A transaction failing any one of them does not execute.

  • Per-trade limit. The maximum size of any single position.
  • Daily cap. Total spend in a rolling day.
  • Venue whitelist. Funds reach approved venues and nowhere else.
  • Owner binding. A withdrawal resolves to the owner address only.

The daily cap sits below the strategy in the stack, so an agent cannot exceed it regardless of what its rules say. A strategy is an input to the limit, never an override of it.

One agent, one balance

Each agent holds its own wallet, and results settle inside that balance. Running several agents keeps every strategy's outcome independent, which is why splitting capital across a few agents is the standard approach rather than funding one large one.

Verify it yourself

Nothing above requires taking Krexa's word for it. Three sources have to agree, and none of them is Krexa.

  • The wallet. Every agent wallet is a public address. Open it in an explorer and read the balance and the full history.
  • The trades. Each fill is a signed transaction. The venue records it independently.
  • The settlement. Outcomes settle at the venue and are published there.

Pause and exit

An agent can be paused at any moment, which stops new positions immediately. Withdrawal returns the balance to the owner address. There is no notice period, no lock and no queue.

This holds whether or not the interface is available, because withdrawal is a chain operation rather than a Krexa one.

Reporting an issue

Security reports go to the addresses on the contact page. Please report privately and give us a chance to fix an issue before publishing it.