For maximum security, users should follow the recommended procedure.
When you choose the “Pro” subscription, a server with root access is provisioned for you. If you enter the access credentials in your account dashboard, they are stored in our database. Because stored credentials can theoretically leak, this setup is less secure. Do not enable withdrawal permissions on API keys. For complete security, we recommend that you:
1. Change the server password (More information
here).
2. In your account settings, specify that the script should use an internal (located on a server) settings file.
3. Enter your API keys on the server in that settings file (More information
here)