Custody, not browser wallets
Client assets are held with a qualified custodian through the custody adapter. TANO never asks a client for a seed phrase or private key.
Capital. In Motion.
Security
TANO is custodial by design: assets sit with a qualified custodian, the ledger is the single source of truth, and every movement of value requires an approval path and leaves an audit trail.
Client assets are held with a qualified custodian through the custody adapter. TANO never asks a client for a seed phrase or private key.
Client balances are tracked individually in a double-entry ledger and reconciled against custodian statements.
Withdrawals are request-reviewed-approved, address-allow-listed, and subject to cooling periods on new destinations.
Managed authentication with 2FA, device binding, session revocation and login alerts in production deployments.
Operator roles are scoped. Treasury, risk and support actions are separated and every action is written to an immutable log.
KYC/AML screening runs through a compliance adapter and gates funding limits and withdrawal eligibility.
Transport & storage
TLS in transit and encryption at rest for all account and ledger data.
Change control
Reviewed deployments, environment separation and rollback for platform releases.
Monitoring
Execution heartbeats, reconciliation breaks and anomalous withdrawal patterns raise operator alerts.
Incident response
Documented severity levels, client notification thresholds and post-incident reporting.
Vulnerability reporting
Report suspected issues to the security contact on the contact page; we acknowledge within one business day.
Current deployment status
This build runs in sandbox mode with simulated custody and execution. No client funds are held and no certifications are claimed. Statements about production controls describe the intended live configuration.
Explore custody, allocation, execution and reporting with simulated infrastructure. No funds required.