/legal / brokerage-auth

Brokerage Connection Authorization

Version v1

BROKERAGE CONNECTION AUTHORIZATION

Clock Out Capital LLC

Effective Date: August 6, 2026

Last Updated: August 6, 2026

READ THIS AUTHORIZATION CAREFULLY BEFORE CONNECTING ANY BROKERAGE OR EXCHANGE ACCOUNT. CONNECTING AN ACCOUNT GRANTS CLOCK OUT CAPITAL AND ITS CONNECTIVITY PROVIDER LIMITED ACCESS TO THAT ACCOUNT, INCLUDING THE ABILITY TO TRANSMIT TRADE ORDERS WHEN YOU ENABLE A CLOCK BOT.

1. What This Document Is

This Brokerage Connection Authorization (this "Authorization") describes the access you grant when you connect a brokerage, exchange, or other financial account (each, a "Connected Account") to Clock Out Capital, LLC ("Clock Out Capital," "we," "us," or "our") through our website, application, or related services (collectively, the "Services"). This Authorization is incorporated into and made a part of the Clock Out Capital Terms of Service. In the event of a conflict between this Authorization and the Terms of Service, this Authorization controls solely with respect to the connection of Connected Accounts.

2. How Connections Are Made — Three Different Paths

Read this section carefully. Which path applies to you determines who holds your credentials, and it is not the same for every venue we support.

2.1 Routed connections (through a Connectivity Provider)

For most supported brokerages, connection, authentication, and order routing between the Services and your Connected Account is performed by an independent third-party connectivity provider (the "Connectivity Provider"). As of the date set forth above, our Connectivity Provider is:

SnapTrade, a service operated by Passiv Inc., a company organized under the laws of Canada.

For these connections you acknowledge and agree that:

  • Your Connected Account is connected through the Connectivity Provider, not directly with Clock Out Capital;
  • Use of the Connectivity Provider is subject to the Connectivity Provider's own terms of service and privacy policy, which are made available during the connection flow and which you must independently review and accept;
  • The Connectivity Provider, not Clock Out Capital, holds the OAuth tokens, API credentials, and other authentication materials used to access your Connected Account;
  • Information returned from your Connected Account passes through the Connectivity Provider's systems before reaching the Services;
  • Trade orders generated by Clock Bots are transmitted to your Connected Account through the Connectivity Provider, which forwards the orders to the brokerage for execution.

2.2 Direct connections (Clock Out Capital holds an encrypted key you supply)

For certain venues — including Alpaca and the cryptocurrency exchanges we support through our own exchange connectors — there is no Connectivity Provider. You generate an API key at the venue and supply it to us, and Clock Out Capital stores that key. For these connections:

  • We hold the credential. It is encrypted at rest under a key held by Clock Out Capital and is used only to perform the actions described in Section 4 that you have configured;
  • We never receive your username or password for the venue, and we do not ask for them. You should create a dedicated API key with the narrowest permissions the venue offers, and you should not enable withdrawal or transfer permissions on any key you give us;
  • You can revoke a direct connection at any time, both by deleting it in the Services and, independently, by revoking or deleting the key in the venue's own settings. Revoking at the venue is the stronger action and works even if the Services are unavailable;
  • Because we hold the credential, a compromise of our systems is a risk to that credential in a way it is not for a routed connection. We describe our security measures in the Privacy Policy, and Section 6.4 below applies with particular force to direct connections.

2.3 Self-custody wallet connections

For decentralized venues (including Hyperliquid), you connect a self-custody wallet through WalletConnect or a comparable protocol. For these connections:

  • We never receive, hold, or have access to your private key or seed phrase, and we cannot recover them. Nobody can. If you lose them, the assets are permanently gone;
  • What you grant is a session-scoped authorization to submit transactions or orders you have configured. You can end that session at any time from your wallet;
  • There is no broker, no custodian, and no investor-protection scheme standing behind these venues. See Section 6.7 and the Risk Disclosure.

3. Supported Brokerages and Future Additions

Clock Out Capital may, through the Connectivity Provider or otherwise, support connections to brokerages, exchanges, and other financial service providers (each, a "Supported Brokerage"). The list of Supported Brokerages is published on our website and may include, without limitation, brokerages such as Robinhood, Webull, Charles Schwab, Fidelity, E*TRADE, Coinbase, and others.

You acknowledge and agree that:

  • The list of Supported Brokerages may be expanded, reduced, or otherwise modified at any time without prior notice to you;
  • Connection to a particular brokerage may be discontinued at any time, including without notice, due to actions taken by the brokerage, the Connectivity Provider, applicable regulators, or for any other reason;
  • If a Supported Brokerage is added in the future, you may connect an account at that brokerage by completing the connection flow at that time, and the connection will be governed by this Authorization without the need for further amendment unless we provide otherwise;
  • Each Supported Brokerage operates under its own terms, which govern your relationship with that brokerage and which may impose additional fees, restrictions, or risks beyond those described herein.

4. What You Are Authorizing

By completing the connection flow for any Connected Account, you authorize Clock Out Capital and the Connectivity Provider to perform the following on your behalf, solely as needed to operate the Services:

4.1 Read Access

  • Retrieve your account profile, account number, account type, and account status;
  • Retrieve your current and historical positions, balances, buying power, margin status, and option levels;
  • Retrieve your current and historical orders, fills, and trade activity;
  • Retrieve dividends, interest, fees, transfers, and other account activity.

4.2 Trade Access

  • Submit, modify, and cancel orders in your Connected Account, including buy and sell orders for stocks, ETFs, options, cryptocurrencies, and other instruments supported by the brokerage and the Connectivity Provider;
  • Submit such orders only when you have enabled a Clock Bot or other Service feature that you have configured to do so;
  • Submit such orders subject to the parameters, position limits, and risk controls you have set in the Services or in your Connected Account.

You may, where supported, restrict the scope of access at the time of connection (for example, by selecting read-only access). If you elect read-only access, no Clock Bot will be permitted to submit orders to that Connected Account.

5. What You Are NOT Authorizing

CLOCK OUT CAPITAL DOES NOT HAVE, AND THIS AUTHORIZATION DOES NOT GRANT, DISCRETIONARY AUTHORITY OVER YOUR CONNECTED ACCOUNT.

Specifically, this Authorization does NOT permit Clock Out Capital or the Connectivity Provider to:

  • Place orders that you have not configured a Clock Bot or other Service feature to place;
  • Withdraw funds, securities, or cryptocurrencies from your Connected Account;
  • Transfer funds, securities, or cryptocurrencies to or from any other account, except as part of an order routed through the brokerage's standard execution channels;
  • Open new accounts, close existing accounts, or change account ownership;
  • Update bank links, beneficiary information, or other account settings unrelated to trade execution;
  • Make decisions about your account on a discretionary basis.

6. Risks of API-Based Connections

Connecting a brokerage account through an API or OAuth-based connectivity provider carries risks specific to that mode of connection, in addition to the general trading risks set forth in our Risk Disclosure & Investment Disclaimer. By connecting any Connected Account, you acknowledge:

6.1 Outages and Latency

The Connectivity Provider, the Supported Brokerage, and the underlying networks may experience outages, slowdowns, rate limits, or partial degradations. Orders may be delayed, rejected, or fail entirely. Quotes and balances may be stale. You should not rely on the Services as your sole means of monitoring or managing your Connected Account.

6.2 Order Rejection and Partial Fills

The Supported Brokerage retains exclusive control over whether to accept, reject, or partially fill any order. The Connectivity Provider's acceptance of an order does not guarantee execution. Brokerage risk controls (margin requirements, day trade buying power, options levels, position limits, halts, and similar controls) take precedence.

6.3 Data Accuracy

Data returned from your Connected Account through the Connectivity Provider may differ from the data displayed in the brokerage's native website or application due to caching, refresh intervals, and synchronization timing. Always verify a position or balance directly with the brokerage before placing a manual offsetting trade.

6.4 Credential and Token Risk

OAuth tokens and API credentials, while held by the Connectivity Provider rather than Clock Out Capital, can in principle be compromised. You should: (a) review and revoke any unrecognized connections within your brokerage's account settings, (b) enable two-factor authentication on both Clock Out Capital and your brokerage, and (c) promptly notify us at [email protected] of any suspected unauthorized access.

6.5 Algorithmic Misfire

Clock Bots are software. Software can misfire. A misconfigured strategy, a data error, a market dislocation, or a software bug can produce a series of unwanted orders in a short period of time. You are responsible for setting and enforcing position size limits, daily loss limits, and other safeguards within your brokerage account, and for monitoring your bots while they are running. We strongly recommend testing any new strategy in paper-trading mode before deploying it with real capital.

6.6 Connectivity Provider as Single Point of Failure

Because all order routing and account access flows through the Connectivity Provider, an outage at the Connectivity Provider may suspend Service functionality even if Clock Out Capital and your brokerage are both fully operational. In such an event you may need to access your Connected Account directly through the brokerage's native interface.

6.7 Self-Custody and Decentralized Venue Risk

For self-custody connections (Section 2.3) the risks are different in kind, not merely in degree:

  • There is no recovery. No password reset, no support line, no custodian. If your seed phrase or private key is lost or stolen, the assets are gone permanently and neither Clock Out Capital nor anyone else can restore them;
  • No investor protection applies. SIPC, FDIC and comparable schemes do not cover decentralized venues or self-custodied assets;
  • The venue may be outside the U.S. regulatory perimeter. A decentralized venue may not be registered with any U.S. regulator, may restrict or exclude U.S. persons under its own terms, and may change those terms without notice. You are responsible for determining whether your use of any such venue is lawful where you live, consistent with your representations in Terms of Service Section 2.1;
  • Smart-contract and protocol risk. Bugs, exploits, oracle failures, bridge failures, and governance actions can cause partial or total loss independent of anything you or we do;
  • Liquidation risk on leveraged positions. See Risk Disclosure Section 5.8.

7. Your Responsibilities

You agree that:

  • You will only connect Connected Accounts that you own and are legally authorized to operate. You will not connect any account belonging to another person, including a friend, family member, employer, or client, even with their permission, unless you are independently licensed to manage their account and we have approved such use in writing;
  • You will keep your Clock Out Capital account credentials and any device used to access the Services secure;
  • You will monitor your Connected Account, your positions, and any active Clock Bots, and you will exercise independent judgment about whether to keep them active;
  • You will set position size limits, daily loss limits, and other safeguards appropriate to your financial situation and risk tolerance, both within the Services and within your brokerage account;
  • You will comply with all rules of the Supported Brokerage, including margin and pattern day trading rules under FINRA Rule 4210 (where applicable);
  • You will notify us promptly of any suspected unauthorized access, unexpected order activity, or other incident relating to your Connected Account.

8. Fees

Clock Out Capital does not charge a fee for connecting a Connected Account. The Supported Brokerage may charge fees and commissions for executed orders, transfers, regulatory assessments, and other activity, in accordance with its own schedule. Connectivity Provider fees, if any, are paid by Clock Out Capital and are not separately charged to you, unless we notify you otherwise.

9. Revocation and Disconnection

You may revoke this Authorization and disconnect any Connected Account at any time by:

  • Using the disconnect controls in the Services;
  • Revoking access through the Supported Brokerage's account settings;
  • Revoking access through the Connectivity Provider's customer portal, if applicable; or
  • Closing your Clock Out Capital account, which will revoke all Connected Account authorizations.

Disconnection takes effect promptly upon successful processing of the revocation. After disconnection:

  • Clock Bots associated with the disconnected account will cease to send orders to that account;
  • Open positions, open orders, and other in-flight activity at the brokerage are not affected and remain subject to the brokerage's normal handling;
  • We may retain logs of past activity associated with the disconnected account in accordance with our Privacy Policy and applicable law.

DISCONNECTING A CONNECTED ACCOUNT DOES NOT CANCEL OPEN ORDERS, CLOSE OPEN POSITIONS, OR OTHERWISE AFFECT YOUR HOLDINGS AT THE BROKERAGE. YOU REMAIN RESPONSIBLE FOR MANAGING ALL POSITIONS AND ORDERS IN YOUR CONNECTED ACCOUNT BEFORE AND AFTER DISCONNECTION.

10. Future Changes

We may modify this Authorization, the list of Supported Brokerages, the Connectivity Provider, the scopes of access requested, or any related operational detail at any time. We will provide notice of material changes (such as a change of Connectivity Provider or a material expansion of the access scope) by email and in-product notice at least thirty (30) days before the change takes effect. For non-material changes (such as the addition of a new Supported Brokerage on substantially the same terms), we may make the change without prior notice and reflect it in an updated version of this Authorization. Your continued use of the Services after the effective date of any change constitutes your acceptance of the change.

11. No Brokerage Relationship; No Custody

Clock Out Capital is not a broker-dealer, futures commission merchant, or money transmitter. We do not custody your funds, securities, or cryptocurrencies at any time. All custody, clearance, settlement, and execution functions are performed by the Supported Brokerage. Funds in your Connected Account are protected, if at all, only by the Supported Brokerage's own coverage (such as SIPC for U.S. securities brokerages, where applicable) and by the Supported Brokerage's own policies.

12. Liability for Trades

EVERY ORDER PLACED IN YOUR CONNECTED ACCOUNT, WHETHER PLACED MANUALLY BY YOU, TRANSMITTED BY A CLOCK BOT YOU CONFIGURED, OR ROUTED ON YOUR BEHALF THROUGH THE CONNECTIVITY PROVIDER, IS YOUR ORDER, EXECUTED IN YOUR ACCOUNT, IN YOUR NAME, WITH YOUR FUNDS, AT YOUR RISK, AND ON YOUR RESPONSIBILITY.

Clock Out Capital, the Connectivity Provider, and the Supported Brokerage are not responsible for trading losses or other harm resulting from your use of the Services or your Connected Account. The limitations of liability and disclaimers of warranties set forth in the Terms of Service and the Risk Disclosure & Investment Disclaimer apply to this Authorization in full.

13. Acknowledgment

By clicking "Connect," "Authorize," or any similar control during the connection flow, you acknowledge that you have read, understood, and agree to this Authorization, including:

  • That your Connected Account is accessed through an independent Connectivity Provider, currently SnapTrade;
  • That Clock Out Capital does not custody your funds and is not your broker;
  • That Clock Bots can place orders in your Connected Account when you have configured them to do so;
  • That you are solely responsible for every order placed in your Connected Account;
  • That the list of Supported Brokerages and the identity of the Connectivity Provider may change in the future, subject to the notice provisions of Section 10.

14. Contact

Questions about this Authorization or about a specific Connected Account may be directed to:

Clock Out Capital, LLC

Duluth, MN 55807

Email: [email protected] (general questions)

Email: [email protected] (suspected unauthorized access)