Skip to main content

Station · macOS

Beta

Connect Zerodha Kite

Create Kite Connect API Key and Secret, register Station’s loopback redirect URL, paste keys in Station, then complete Kite OAuth in the browser.

Last verified · Official docs: kite.trade

What you need

  • Zerodha trading account with TOTP 2FA
  • Kite Connect app at developers.kite.trade — API Key and API Secret
  • Redirect URL registered in Kite app (copy from this guide’s Redirect URL box)
  • Mac with TradeAutopsy Station

Station fields for this broker: API Key · API Secret.

Register loopback redirect in Kite app settings. Station opens Kite login in browser; agent holds session after callback.

Redirect URL (register at broker)

Paste this exact URL in your broker developer app. Station listens on loopback port 9140 for the OAuth callback.

https://127.0.0.1:9140/api/daemon/broker/zerodha/callback

Part 1: Get your keys from Zerodha Kite Connect

  1. 1.Read kite.trade/docs/connect/v3/ — you need api_key, api_secret, and a registered redirect URL.

    Report an issue with this guide

  2. 2.Sign in at developers.kite.trade and open your Kite Connect app (or create one).

    Report an issue with this guide

  3. 3.Copy API Key and API Secret. Set Redirect URL to the exact loopback URL shown above on this page — character-for-character.

    Report an issue with this guide

Part 2: Paste them into Station

  1. 4.Station → Brokers → Zerodha Kite. Paste API Key and API Secret.

    Report an issue with this guide

  2. 5.Start OAuth. Station opens Kite login; complete Zerodha credentials and TOTP. Agent receives the loopback callback on port 9140.

    Report an issue with this guide

Troubleshooting

Redirect URL mismatch
Kite requires an exact match with https://127.0.0.1:9140/api/daemon/broker/zerodha/callback. No trailing slash differences.
Token expired
Re-run OAuth from Station when Kite session expires.

Security notes

  • api_secret stored in macOS Keychain; session held by local agent after OAuth.
  • Use read-only Kite app permissions where available.
  • Never embed api_secret in mobile apps.

Other broker guides