-
1Use an authenticator appPrefer TOTP apps (e.g., Authenticator, Authy) over SMS. Store backup codes offline.
-
2Protect your recovery phraseNever type or share your seed phrase. Store it offline in a secure location (physical safe or encrypted vault).
-
3Watch for phishingVerify URLs before clicking. Official Coinbase URLs will use their domain—avoid links in suspicious emails or chats claiming login issues.
-
4Keep devices updatedInstall OS and browser updates, use antivirus if appropriate, and avoid using public Wi-Fi for sensitive access without a VPN.
-
5Use a trusted password managerGenerate unique passwords and store them securely; this reduces risk from reused passwords if other services are compromised.
What to do if you suspect a compromise
- Change your Coinbase password from a trusted device (or use password reset from Coinbase if you cannot sign in).
- Revoke sessions and app access in your account settings if you regain access.
- Contact official Coinbase support through their verified help center—do not share private keys or passwords in communications.