Binance Safety Checklist: Protect Your Account and Funds
1. Account access
- Strong unique password: 12–16+ characters with mixed case, numbers, symbols; store in a password manager.
- Change regularly after suspicious activity; note withdrawals may be locked for 24 hours after password changes.
2. Two-factor authentication (2FA)
- Use an authenticator app (Google Authenticator, Authy) or hardware security key (YubiKey).
- Avoid SMS 2FA where possible.
- Back up 2FA recovery codes securely (offline or in a secure backup).
3. Email security
- Unique email for Binance with a strong password and 2FA enabled.
- Consider a dedicated email address used only for crypto accounts.
4. Anti-phishing & communication verification
- Set an Anti‑Phishing Code so all legitimate Binance emails include your custom code.
- Verify sender domains and never click links in unsolicited messages—use bookmarks for the official site.
5. Withdrawal protections
- Enable Withdrawal Address Whitelist so funds can only go to pre-approved addresses.
- Note: adding a new address should trigger security delays; treat any unexpected prompts as suspicious.
6. Device, session & API management
- Review active sessions and login history regularly; remove unknown devices.
- Limit and rotate API keys; restrict IPs and permissions for any keys in use.
- Revoke keys you don’t recognize immediately.
7. Advanced account protections
- Enable available auto-lockout, transaction verification, and push notifications for critical actions.
- Turn on account alerts for logins, withdrawals, password changes.
8. Device & network hygiene
- Keep OS, browser, and apps updated.
- Use antivirus/malware scans and secure browser extensions.
- Avoid public Wi‑Fi for account access; use a trusted VPN if needed.
9. Operational security (OpSec)
- Don’t share screenshots of balances, private keys, recovery phrases, or 2FA codes.
- Never reveal seed phrases or private keys to anyone.
- Be skeptical of anyone claiming to be support—Binance will never ask for passwords or 2FA codes.
10. Cold storage & risk management
- For significant holdings, use a hardware wallet (cold storage) and only keep trading funds on exchange.
- Diversify custodial risk and keep minimal balances for active trading.
11. Monitoring & response plan
- Check account activity weekly.
- If compromised: change passwords, revoke API keys, remove unknown devices, disable withdrawals/close sessions, scan devices for malware, contact Binance support immediately.
Quick checklist (enable these): 2FA (authenticator/hardware), secure email with 2FA, strong unique password, anti-phishing code, withdrawal whitelist, review sessions/API, device security, hardware wallet for large balances.
Leave a Reply