Three steps to lock it down
- 1Configure password, 2FA and anti-phishing code in Security Center.
- 2When the device supports it, enable biometric lock for fast App unlock.
- 3Review active sessions, login history and notification preferences; remove unfamiliar devices.
Which actions require 2FA
Bind an authenticator app (TOTP) in Security Center. Sensitive actions such as withdrawal require 2FA. Security Center also shows login history and active sessions, and lets you revoke any device you do not recognise.
Account activity is deemed your own. You are responsible for account security, including password, 2FA and API keys.