Chapter 5 · Technology architecture and asset security

Modular architecture
Asset segregation and auditable operations

Fiserv Exchange plans a modular architecture that separates order intake, matching, account ledgers, market data, and settlement. Unique order IDs, duplicate-request checks, and trade-status tracking reduce the risk of double processing and data inconsistency.

Orders · matching · ledger layers
Load monitoring · fault isolation
Cold/hot wallets · multi-party approval
Client assets segregated from firm assets

5.1 Trading infrastructure

Modular matching and status tracking

The platform will combine load monitoring, capacity management, and fault isolation to support scale and peak trading. Performance metrics will be based on actual test results. Matching rules and order-processing status will be clearly shown to users.

  • Unique order IDs · duplicate-request checks
  • Trade-status tracking
  • Load monitoring · capacity management · fault isolation
  • Performance metrics based on actual tests
Trading infrastructure

5.2–5.3 Asset security and account protection

A multi-layer security framework

Cold/hot wallet layering

The wallet design plans cold/hot layering, key-permission separation, and multi-party approval to limit online funds, with withdrawal limits and exception review. Key generation, storage, use, and recovery will follow independent processes.

Segregation and reconciliation

Client assets and firm assets will be managed separately, with ongoing checks of on-chain balances, internal ledgers, and client liabilities, plus investigation and handling of differences. Transfers, authorization changes, and material fund operations will keep auditable records.

Account protection

Account-level plans include two-factor authentication, device recognition, API permission controls, and withdrawal-address allowlists.

System protection

System-level plans include communications encryption, access control, and security monitoring to identify unusual access and potential attacks.

Backup, recovery, and drills

Backup and recovery, incident drills, and security assessments will test defenses, with an incident-response process.

Major incident response

In a material incident, the platform may restrict operations, restore services, and notify users based on impact, then track remediation and improvements.

Chapter 6 · Liquidity and trading risk control

Quote quality, derivatives risk, and staged response

6.1

Liquidity

Fiserv Exchange plans market-maker access and quote-evaluation mechanisms, assessing liquidity quality by bid-ask spread, order-book depth, and quote continuity, and introducing diversified liquidity sources as trading demand grows. The platform will monitor large-order impact, quote interruptions, and concentration so users can understand depth and potential slippage. Market-making must follow unified trading rules. Incentives and conflicts of interest will be managed to maintain a fair trading environment.

6.2

Derivatives risk control

Margin requirements, position limits, and risk alerts will be set by contract type, with ongoing monitoring of account exposure. Price references will consider data sources, anomalous quotes, and market deviation to reduce the impact of a single abnormal price on risk calculations. Liquidation triggers, execution methods, and fees will be disclosed in advance. Options risk control will distinguish buyer and seller obligations and assess the impact of price, volatility, and expiry on portfolio risk.

6.3

Incident handling

For extreme volatility, insufficient liquidity, or system exceptions, the platform plans a staged response: adjusting risk parameters, limiting new positions, or pausing related trading under pre-disclosed rules, with timely explanation of reasons and recovery conditions. If a risk reserve is established, its funding sources, use, trigger conditions, and balance will be disclosed. It is for contractually defined liquidation-loss handling and does not fully compensate user trading losses.

Ongoing technology and risk-control investment
Risk Margin · position limits · staged response

Ongoing investment

Security assessments and incident drills

  • Functional testing, security assessment, and asset reconciliation
  • Incident drills and response
  • Matching rules and order status shown clearly to users
  • Risk-reserve rules disclosed in advance

Performance metrics are based on actual tests. See Compliance for disclosure details.

Compliance & Disclosure →