How to Create a Read-Only API Key on Binance
Follow these steps to create a read-only API key to connect your Binance account to Flicker:
Prerequisites
- An active Binance account
- Verified Plus status (required for API key creation since August 2021)
- Completed email verification and 2FA setup
Step-by-Step Instructions
-
Access API Management
- Log in to your Binance account
- Click on your profile icon in the top-right corner
- Select "Account" from the dropdown
- Navigate to "API Management"
-
Create New API Key
- Click "Create API"
- Choose "System generated" as the API type
- Enter a descriptive label for your API key (e.g., "Flicker Read-Only")
- Click "Next"
-
Complete Security Verification
- Click "Get code" to receive an email verification code
- Enter the email verification code
- Complete 2FA verification (authenticator app or SMS)
- Click "Submit"
-
Configure API Restrictions (Important)
- Enable only "Reading" permission
- This allows Flicker to view your:
- Account balances
- Transaction history
- Open orders
- Trade history
- Do NOT enable:
- Enable Spot & Margin Trading
- Enable Futures
- Enable Withdrawals
-
Set IP Access Restrictions
- For maximum security, it's recommended to restrict access to specific IP addresses
- Add Flicker's IP address:
34.175.102.17 - Alternatively, you can select "Unrestricted" for read-only API keys
- Note: Since January 2023, unrestricted API keys can only have "Reading" permission enabled
-
Save Your Credentials
- Immediately save your:
- API Key
- Secret Key
- Important: These are shown only once and cannot be retrieved later
- Store them securely in a password manager
- Immediately save your:
-
Connect to Flicker
- Use the saved API Key and Secret Key to connect your Binance account to Flicker
Security Best Practices
- ✅ Only enable "Reading" permission for account monitoring
- ✅ Store your API credentials securely (password manager recommended)
- ✅ Consider restricting access to specific IP addresses for enhanced security
- ✅ Regularly review your active API keys in API Management
- ❌ Never enable trading or withdrawal permissions for third-party integrations
- ❌ Never share your API credentials with anyone
Important Notes
- Read-only API keys with unrestricted IP access are safe because they cannot execute trades or withdrawals
- You can create multiple API keys for different purposes
- You can delete or edit API keys at any time from API Management
- API keys can be temporarily disabled if needed
Need Help?
If you encounter any issues, please visit: