> ## Documentation Index
> Fetch the complete documentation index at: https://docs.roxom.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Address Book and Withdrawal Whitelist

> Save withdrawal addresses in your Address Book and lock withdrawals to whitelisted addresses only for extra protection.

The **Address Book** lets you save withdrawal addresses with a custom name, so you don't have to paste them every time. The **Withdrawal Whitelist** is an optional security layer that, once enabled, restricts withdrawals to addresses saved and marked as whitelisted in your Address Book.

Use them together to reduce the risk of sending funds to a wrong or malicious address.

## Key concepts

<CardGroup cols={2}>
  <Card title="Address Book" icon="book">
    Your personal list of saved withdrawal addresses, each with a name, currency, and network.
  </Card>

  <Card title="Whitelist" icon="shield-check">
    A flag per address. When the global Withdrawal Whitelist is on, only whitelisted addresses can receive withdrawals.
  </Card>

  <Card title="Trusted" icon="star">
    A flag that skips the extra security check (Passkey or Authenticator) on withdrawals to that specific whitelisted address. Only takes effect while the Withdrawal Whitelist is on.
  </Card>

  <Card title="Multi-Asset address" icon="layer-group">
    An address that receives both USDC and USDT on the same EVM network. Not available for single-network currencies like BTC.
  </Card>
</CardGroup>

<Note>
  The **24-hour hold** only applies while the Withdrawal Whitelist is on, when you add an address as whitelisted or edit an existing one to become whitelisted. Addresses already whitelisted before you enable the Withdrawal Whitelist do not get a hold and can be used right away. See [Cooldown (24-hour hold)](#cooldown-24-hour-hold) below.
</Note>

## How it works

There are three levels of protection, each one building on the previous:

1. **Save an address** in your Address Book.
2. **Whitelist it** so it's allowed for withdrawals when the Withdrawal Whitelist is on.
3. **Mark it as Trusted** so withdrawals to that address skip the extra security check.

The Whitelist and Trusted flags are stored on each address at any time, but only take effect while the global **Withdrawal Whitelist** is on.

| | Whitelist off | Whitelist on |
| :- | :- | :- |
| **Where you can withdraw** | Any address, typed or saved. | Only saved, whitelisted addresses. Typing an address is disabled. |
| **Security check** | Required on every withdrawal. | Skipped for Trusted addresses, required for the rest. |
| **24-hour hold** | Never. | Each address that becomes whitelisted waits 24 hours. |

## Add an address

You can add addresses from **Security → Withdrawal Settings → Address Management**, or from the Address Book picker in the Withdraw flow.

<Steps>
  <Step title="Open Address Management">
    From the header, open your **profile menu** and go to [**Security**](https://roxom.com/user/security). Under **Withdrawal Settings**, tap [**Address Management**](https://roxom.com/user/security/address-management).
  </Step>

  <Step title="Tap + Add Address">
    Fill in the fields in the **Add Address** modal:

    * **Name**: an alias to identify the address (up to 40 characters).
    * **Currency**: the asset the address will receive.
    * **Multi-Asset** (optional toggle): turn it on if the address should receive both USDC and USDT on the same EVM network. Not available for single-network currencies like BTC. When on, the Currency field is hidden.
    * **Address**: the destination wallet address.
    * **Network**: pick one from the supported list for the selected currency.
    * **Add to Whitelist** (toggle): off by default. It is on by default if the global Withdrawal Whitelist is already active.
    * **Trust this Address**: skips the extra security check on future withdrawals to this specific address. Only appears when Add to Whitelist is on.

    <Note>
      If the global Withdrawal Whitelist is off, the **Add to Whitelist** and **Trust this Address** toggles are saved with the address but have no effect until you enable the whitelist in **Security → Withdrawal Settings**.
    </Note>
  </Step>

  <Step title="Save the address">
    Tap **Save address**. A Security Verification prompt opens (Passkey or Authenticator, depending on your setup). This step runs every time you add an address, regardless of the whitelist and trust flags.

    On success, the address is added to your Address Book. If it's whitelisted, a green checkmark appears in the Whitelist column. If it's also trusted, a **Trusted** pill appears next to the address.
  </Step>
</Steps>

### Rate limits and rules

* Up to **5 new addresses per hour** and **10 per day** per user.
* Alias: up to **40 characters** (required, no minimum). Aliases can repeat freely.
* Uniqueness is by **currency + network + address**. The same address on the same network can be saved once per currency (for example, once as USDT and once as USDC).

## Use a saved address when withdrawing

<Steps>
  <Step title="Open Withdraw">
    From the top-right corner of the platform, click [**Withdraw**](https://roxom.com/exchange/account/withdraw).
  </Step>

  <Step title="Open the Address Book picker">
    In **Withdraw To**, the **Address** tab is selected by default. Tap the **book icon** next to the address input to open the Address Book picker for the selected currency.

    * If you have no saved addresses, you'll see an empty state with a **+ Add Address** shortcut.
    * If you have saved addresses, pick one from the list. The picker also includes **+ Add Address** and an **Address Management** link (opens in a new tab).
  </Step>

  <Step title="Confirm the selection">
    The address auto-fills in the input, with its **Name** and **Network** shown below. The network selector is hidden because it's already set by the saved entry.
  </Step>
</Steps>

### When the Withdrawal Whitelist is on

* A **Whitelist enabled** row appears below the address input, with a **Manage** link to Address Management.
* Only whitelisted addresses are selectable. Non-whitelisted addresses are visible but disabled and sorted to the bottom of the list.
* If the selected address is also **Trusted**, a **Trusted** pill appears inside the input field, and the withdrawal skips the extra security check.
* The free-text address input is locked. Tapping anywhere in the field opens the Address Book picker.

<Tip>
  If you paste an address that already exists in your Address Book, a match confirmation appears inline (for example, "✓ Cold wallet personal"). The address is not auto-selected, because you chose to paste rather than pick from the list.
</Tip>

## Enable the Withdrawal Whitelist

<Steps>
  <Step title="Open Security → Withdrawal Settings">
    From the header, open your **profile menu** and go to [**Security**](https://roxom.com/user/security).
  </Step>

  <Step title="Enable the Withdrawal Whitelist">
    Next to **Withdrawal Whitelist**, tap **Enable**. A confirmation modal explains:

    * Only whitelisted addresses will be allowed for withdrawals.
    * Addresses marked as **Trusted** will start skipping the extra security check.
    * Every newly whitelisted address has a **24-hour hold** before its first withdrawal.
  </Step>

  <Step title="Confirm with Security Verification">
    Tap **Confirm** and complete the Security Verification prompt (Passkey or Authenticator). On success, the row shows a **Disable** button and an **Active** status.
  </Step>
</Steps>

## Disable the Withdrawal Whitelist

<Warning>
  Disabling the Withdrawal Whitelist suspends **all withdrawals for 24 hours** to protect your account. Your saved addresses keep their Whitelist and Trusted settings.
</Warning>

<Steps>
  <Step title="Open Security → Withdrawal Settings">
    Go to [**Security**](https://roxom.com/user/security) and find the **Withdrawal Whitelist** row.
  </Step>

  <Step title="Tap Disable and confirm">
    A confirmation modal explains:

    * All addresses (not just whitelisted) will be able to receive withdrawals again once the lock ends.
    * Trusted addresses will require the extra security check again on the next withdrawal.
    * All withdrawals will be suspended for 24 hours.

    Tap **Confirm** and complete the Security Verification prompt.
  </Step>
</Steps>

## Edit a saved address

<Steps>
  <Step title="Open the Edit modal">
    In **Address Management**, tap the **⋮** menu on the address row and select **Edit**.
  </Step>

  <Step title="Update the toggles">
    Name, Currency, Network, and Address are read-only once the address is saved. Only the **Add to Whitelist** and **Trust this Address** toggles are editable.

    <Note>
      Turning off **Add to Whitelist** automatically turns off **Trust this Address**.
    </Note>
  </Step>

  <Step title="Save and verify">
    Tap **Save** and complete the Security Verification prompt. On success, the address is updated.
  </Step>
</Steps>

## Delete a saved address

You can delete one address at a time or select multiple and delete them in bulk.

* **Individual:** in Address Management, tap the **⋮** menu on the address row and select **Delete**.
* **Bulk:** select several addresses; a bulk-action bar appears with a **Delete** option.

A confirmation modal appears: *"You'll need to add it again to use it for future withdrawals."* Tap **Continue** to delete.

<Note>
  Deleting an address is the only Address Book action that does **not** require a Security Verification prompt.
</Note>

## Cooldown (24-hour hold)

The **24-hour hold** only applies while the Withdrawal Whitelist is on, when you add an address as whitelisted or edit an existing one to become whitelisted. During the hold, only that address is blocked; other whitelisted addresses keep working.

* Addresses already whitelisted before you enable the Withdrawal Whitelist do **not** get a hold and can be used right away.
* Removing an address from the whitelist or toggling **Trusted** does not trigger a hold.
* **Trusted** does not skip the hold.

The hold shows up in four places:

| Where | What you see |
| :- | :- |
| **Add Address / Edit Address modal** | A banner above the Save button: *"This address won't be available for withdrawals for 24 hours after you save."* |
| **Enable Whitelist confirmation modal** | A fixed banner: *"Every new whitelisted address has a 24-hour hold before its first withdrawal."* |
| **Address Management table** | The Whitelist column shows an amber lock pill instead of the green checkmark. A tooltip (desktop) or always-visible text (mobile) shows *"Locked for withdrawals until \[date, time]."* |
| **Withdraw — Address Book picker** | The row is dimmed and not selectable, with an amber lock icon and the caption *"Locked for withdrawals until \[date, time]."* |

The Withdrawal Whitelist tooltip also notes: *"New addresses need a 24-hour hold."*

## Address Management table

The Whitelist column has three states:

| State | Meaning |
| :- | :- |
| ✗ (grey) | Not whitelisted. |
| ✓ (green) | Whitelisted and available for withdrawals. |
| Amber lock pill | Whitelisted but on cooldown hold. |

You can filter the table by **currency** and **whitelist status**, and search by **name, network, or address**.

### On mobile

* Addresses appear as a card list instead of a horizontal-scroll table.
* Currency and Whitelist filters collapse into a bottom sheet.
* The bulk-action bar (Add to Whitelist / Remove from Whitelist / Delete) is fixed at the bottom of the screen.
* Add, Edit, and Delete modals open as bottom sheets anchored to the bottom of the screen.

## Emails and in-app notifications

Every change to your Address Book or Withdrawal Whitelist triggers both an **email** and an **in-app notification** in the **Security** category. Use them to spot activity you didn't perform.

| Trigger | Email subject |
| :- | :- |
| Add address | New Withdrawal Address Saved |
| Enable Withdrawal Whitelist | Withdrawal Whitelist Enabled |
| Disable Withdrawal Whitelist | Withdrawal Whitelist Disabled |
| Edit address (whitelist / trust toggles) | Withdrawal Address Updated |
| Delete address | Withdrawal Address Removed |

Notifications for **add / edit / delete** deep-link to [Address Management](https://roxom.com/user/security/address-management). Notifications for **enable / disable Withdrawal Whitelist** deep-link to [Security](https://roxom.com/user/security).

<Note>
  Bulk actions (editing or deleting several addresses at once) send a single email and notification covering all of them.
</Note>

## Security verification

Adding, editing, enabling, and disabling all run through the same Security Verification gate used for other sensitive account changes: **Passkey** or **Authenticator App**. See [How to secure your Roxom account](/help-center/security-access/how-to-secure-my-roxom-account) for setup details.

***

## Need help?

Still have questions? You can speak to **Roxy**, our AI support assistant, available 24/7 in the chat bubble at the bottom right of your screen.

You can also contact our support team directly at [help@roxom.com](mailto:help@roxom.com).

***

## Related articles

<CardGroup cols="2">
  <Card title="How to withdraw crypto from your Roxom account" href="/help-center/crypto-deposits-withdrawals/how-to-withdraw-crypto-from-your-roxom-account">
    Open article
  </Card>

  <Card title="Security settings for withdrawals" href="/help-center/crypto-deposits-withdrawals/what-security-settings-are-required-to-withdraw-crypto-from-roxom">
    Open article
  </Card>

  <Card title="How to secure your Roxom account" href="/help-center/security-access/how-to-secure-my-roxom-account">
    Open article
  </Card>
</CardGroup>
