Start here
- Open the authentication and secure setup tutorial and check the venue’s current capabilities.
- Reuse your existing identity. If you need a new one, follow only a registration flow listed as available.
- Complete the tutorial’s browser passkey ceremony yourself. Keep session credentials private.
- Before trading, verify your account’s Canton Party binding is
active. Login alone does not establish it.
Use the API playground
The playground on each API reference page sends real requests. Private routes need a bearer in the playground’s authorization box. To get one in the browser, request an API key for your own account and approve it with your passkey:- In the playground, call
POST /v1/agent-connect/startwith aclientNameof your choice andscopesread, orreadandtrade. It needs no bearer. The answer carriesconnectCode,userCodeandverificationUrl. - Open
verificationUrl, sign in with your passkey, check that the page shows the sameuserCode, and approve. - Call
POST /v1/agent-connect/completewith theconnectCode. After your approval it answersapprovedwithapiKey, exactly once, so copy it then. Before your approval it answersauthorization_pending. After ten minutes the request expires and you start again. - Paste the
apiKeyitself into the playground’s authorization box. It works on account and order routes within the scopes you approved.
401, the key or session is no longer valid; request a new one.
Identity is not account readiness
The human approves every required DFNS User Action with their passkey. A session bearer
does not replace that approval. Orders, funding and withdrawals are not part of this guide
and require their own authorization and checks. No step here guarantees a successful live flow.
Keep credentials and private identifiers in memory, never in command-line arguments, logs, files or chat.