5 · SafetyLesson 27 min

Secure an exchange account

Reduce account takeover risk before depositing meaningful funds.

By the end, you should be able to:

  • Use unique credentials
  • Prefer app or hardware 2FA
  • Activate withdrawal controls

Use a unique password stored in a reputable password manager. Reused credentials turn an unrelated website breach into an exchange account risk.

Prefer authenticator-app or hardware-key two-factor authentication over SMS when supported. Secure the email account connected to the exchange with equal care.

Enable withdrawal allowlists, anti-phishing codes, login alerts, and device review. Remove old sessions and do not approve unexpected prompts.

Action checklist

Password is unique
2FA is not only SMS when alternatives exist
Withdrawal allowlist is enabled if available
Email account is secured

Go deeper

Knowledge check

Why must the connected email account be protected?

Completion is stored locally in this browser and is not a credential or investment qualification.