The protections on every layer: custody, smart contracts, wallet, recovery, and operational controls.
Security on GM Markets sits on four layers. Each is documented in detail on its own page; this is the map.
Underlying shares are held in segregated customer accounts at regulated US broker-dealers such as Alpaca Markets and Interactive Brokers, separate from the broker's own funds, under the applicable investor-protection arrangements. Independent third-party attestation publishes the share balance on-chain in real time. See Custody and backing and Proof of reserves.
The token contracts, mint/redeem partner contracts, and security-agent contracts are audited by independent firms. See Smart contract audits for the audit history.
Embedded wallets are MPC-backed by Privy — no single party holds your complete key. Biometric authorization on every transaction. Recovery paths via passkey, email magic link, TOTP, or external wallet. See Privy embedded wallet and Recovery and security.
Rate-limited magic links. Bound-to-session tokens. New-device sign-in detection. Suspicious-activity re-authentication (geo jump, device change). Private-key export gated by magic-link + 24h cooldown. No value-based step-up — trades, deposits, and withdrawals never trigger a second-factor prompt based on dollar size. See Recovery and security for the full mechanism.
The /security page is the marketing-facing security overview — the docs page links to it but does not duplicate it. The docs pages are the deep reference; /security is the summary.