Hacker News new | ask | show | jobs
by jumpbug 2994 days ago
Does anybody else not worry about providing access to their investments via direct access to the various exchanges? If they are hacked, they have a direct pipeline to my accounts? Surely not all exchanges are setup to provide secure read only data? And what about the initial auth connection?

I just hate to add another point of vulnerability into an area that is no doubt being heavily targeted by hacking groups

2 comments

You can create read only API keys in most cases, and revoke them once you upload your transactions.
to be honest anything with "tracker" in the name gives me the creeps, to begin with.