What you are doing
You are submitting the Standard Subaccount API key and secret to an encrypted server-side validation flow.
Why it matters
HEDGERON checks account scope, trading permissions, Unified account mode and prohibited permissions before saving a connection.
Before you start
Create the key inside the dedicated Standard Subaccount. Confirm no Withdraw permission and required Contract Order/Position permissions.
Step by step
- 01Open Client Portal and choose Connect Exchange.
- 02Select the correct Bybit environment.
- 03Enter a recognizable label, API key and API secret.
- 04Submit once and wait for the security check.
- 05Read the result before continuing to bot deployment.
What you should see
A safe key returns a VERIFIED connection with a masked key. Raw secrets are never shown back to the browser.
Security check
A Main Account key, Withdraw-capable key, read-only key or key missing required trading permissions must fail closed.
Common problems
Connection failed
Check exact key/secret, environment, IP whitelist, account mode and Bybit service status.
Security check failed
Create a new minimum-permission key instead of weakening HEDGERON security rules.
Next step
Choose the engine that matches your return, cadence and capital profile.
Privacy note
HEDGERON Help analytics must never collect API credentials, passwords, private account values or secret-bearing URLs.