API guide
Create a secure KuCoin API key
Minimum configuration required to operate all three bots without ever granting TIYlab permission to withdraw your funds.
Permissions to enable
- General (default)
- Spot Trading
- Futures Trading
- Unified Account
- Allow Flexible Transfers
Forbidden permissions
- Transfer (⚠️ KUCOIN TRAP: this checkbox = WITHDRAWAL of assets)
- Withdrawal
- Margin Trading
Never enable withdrawal permissions, even temporarily.
PassphraseRequired
IP restrictionRequired
WithdrawalsAlways disabled
The permission you actually need is 'Allow Flexible Transfers', not 'Transfer'. IP whitelist is mandatory on KuCoin.
Optional Macro lending: if you enable it, KuCoin may require an Earn permission. Enable only that product permission if present, never Transfer or Withdrawal.
Exchange interfaces and labels may change. Review every permission before confirming the key. TIYlab is software, not financial advice.