Skip to main content
The Olympex team handles integration questions, error reports, credential deactivation, security reports and commercial requests through one email address. Include the details listed under What to include so the team can investigate without asking you for them first.

Contact

Before you write

Many problems can be diagnosed from the docs in a few minutes:
  • An error envelope. Look up error.code and the HTTP status in Errors and retries. For 400 VALIDATION_ERROR, error.details names each field at fault.
  • 401 or 403 on a signed request. Work through the signing troubleshooting table, and test your implementation against the known-answer vectors on the same page. If correctly signed requests keep failing, email partners@olympex.io.
  • 404 NOT_FOUND with "No route for …". No endpoint matches the method and path. Check that the URL starts with the base URL, that the method is the one the endpoint page shows, and that the path is lowercase, for example /support-chain.
  • 404 NOT_FOUND for an order or strategy ID, with a message that names the resource. No limit order, DCA strategy or DCA order with that ID belongs to the API key you signed with: the ID doesn’t exist, or another API key created it. See Not found.
  • 409 CONFLICT on a limit order. The order is no longer pending, so it can’t be changed or cancelled. Read it with GET /limit-order/{id} and check its status.
  • A limit order or DCA order that doesn’t execute or fails. Read reasonFail[] on the limit order or errorMessage on the DCA order. Check that the maker still holds the tokens, that its allowance to the order contract covers the order (plus the execution gas, for a limit order), and that the order signature recovers to the maker. For a limit order, also check that tokenASymbol and tokenBSymbol match your tokens.
  • “The browser blocked the response” in the API console. Click Copy as cURL and run the request from a terminal. Add -i to the command (or -D -) to see the status and the apigw-requestid header. See API console.
  • A swap whose eth_estimateGas reverts. Check the allowance, the balance and the expiry, then build the swap again with the next source in the quote’s aggregatorOrder, or request a new quote. See Falling back with aggregatorOrder.
  • 422 NO_ROUTE, or a chain or token pair without a route. Retry later with backoff: sources can be briefly unavailable. If it persists, check Supported chains and tokens, then request a quote for another amount or pair.
  • A suspected outage. Olympex doesn’t publish a status page. If 500 or 503 responses persist across endpoints after retries with backoff, email partners@olympex.io with the request IDs and UTC times of a few failures.

What to include

Never send the secret key or the passphrase, in an email, a call, a chat or a screenshot, and never send a wallet’s private key or seed phrase. Remove the x-passphrase header from any request or log you paste. If you have already shared either one, treat the account as leaked and follow the steps under Report a leaked credential.
A report with everything in place looks like this:

Report a leaked credential

API accounts have no self-service way to disable a key. If a secret key or a passphrase may have been exposed:
  1. Email partners@olympex.io and ask to deactivate the account. Include the API key ID only.
  2. If the account has open limit orders or DCA strategies, set each maker’s allowance to the order contract to 0. Anyone with the credentials can create and change orders, and the allowance is what limits them. See Stop everything.
  3. Create a new API account and move your integration to its credentials.
  4. Remove the exposed values from wherever they leaked: logs, tickets, chats or repository history.
Credentials describes the full procedure.

Report a security issue

Email partners@olympex.io with a description of the issue, the steps to reproduce it, and the meta.requestId of any request involved. Don’t include working credentials, and don’t disclose the issue publicly until Olympex has had the chance to address it. The Security model describes what Olympex secures and what your integration is responsible for.

Errors and retries

Error codes, gateway responses and what to retry.

Sign requests

The signing algorithm and its troubleshooting table.

FAQ

Answers to common integration questions.

API console

Send signed requests from your browser.