DEVELOPMENT PREVIEW — Not live. All activity simulated. Not a regulated venue. Not an offer or solicitation.
← All updates

This week on Nexus 08.06.26

Every market now carries a risk class with caps scoped to it, funding is charged on notional and prorated to the window, and a write a jurisdiction refuses now says so on screen — while behind the screen, replay is verified and the engine refuses to come up on proven state loss. Here is what shipped.

Merged pull requests by area this window — activity, not performance: 84 merged feature, fix, and performance pull requests across the Exchange, 55 in orders and accounts, 14 in the engine, 6 in API and data, 5 in oracle, and 4 in frontend

Testnet accounts across the daily snapshots — faucet-funded, ephemeral testnet accounts that reset on redeploy, not production figures: 19 testnet accounts on the August 4 snapshot, 24 a week earlier, on the July 28 snapshot, 25 on the July 30 snapshot, the high before a redeploy, and 10 on the July 31 snapshot, immediately after that redeploy reset the testnet

Trading

Risk and margin

Funding

Accuracy on screen

Accessibility

Access and jurisdiction

Deposits and withdrawals

Price feeds

Safety and reliability

Developer tools and SDKs

Behind the scenes

The benchmark harness now sweeps the risk benches across N and records a scaling exponent and fit per sweep, alongside a throughput measure and two fixes to how the comparison finds its own results; mutation end-to-end latency and throughput are published, the write-ahead log reports its bytes and per-record-type occupancy, and the recovery-metric tests no longer share a global recorder; cold-data metric names are de-doubled, the conflict denominator is honest, and capture counters are attributed by sink.

Elsewhere: the market maker quotes with inventory in mind, keeps its quotes on a post-only amend reject, recovers from transient inventory failures, arms its dead-man switch only where the venue adapter declares support, and translates protective stop-loss and take-profit intent from execution commands; the simulation exchange takes an injectable clock and the sandbox bot fleet is re-armed for CI.

Work also landed on how changes roll out, on access control, and on network isolation and traffic filtering. Plumbing, mostly — the kind that decides whether the next change is safe to make.