Security Rules for Vendors
Keeping your signing secret safe, and what is not allowed.
Keep your licensing file private
Your .mqh licensing file contains your private signing secret. Anyone who has it can forge licence approvals for your products.
- Never send it to a customer or another developer.
- Never put it in a public repository or a shared folder.
- Ship compiled
.ex4/.ex5files only.
Not allowed
- Bypassing, disabling or overriding the FXNook check, or adding your own licensing that lets the EA trade when FXNook says no.
- Hiding or covering the FXNook badge.
- Calling home to your own server with customer data without saying so in your listing.
Products that do not stop when their licence is revoked are rejected.
If your secret may have leaked
- Contact FXNook support straight away to rotate your secret.
- Download a fresh licensing file for every product.
- Recompile and release a new version of each.
Was this guide helpful?
Thank you - that helps us improve these guides.
Need help?
Most questions are answered by the guides above. If yours is not, our team will help.
Open Support Ticket