Hi. I run a website as a hobby, dedicated to helping beginners learn how to protect and secure their coins and tokens from potential scams and hacks, and I created a sort of "cheat sheet" of a list of things you should and should not do when investing in bitcoin and cryptocurrencies in general. List is currently small, so I'm also looking for suggestions from the Bitcointalk community.
Will definitely give credits to the people who made good suggestions.
Link is:
https://cryptosec.info/checklist/DOs✔️ DO only store your private key(s) on pieces of paper or on a CryptoSteel, and store them somewhere no-one else but you has access to.
✔️ DO store majority of your funds on a reputable hardware wallet or a securely-made paper wallet.
✔️ DO only use a paper wallet if you’re 100% confident that you can make one in a secure manner.
✔️ DO store only small amounts of your crypto on your hot wallets(exchanges, software wallets, web wallets, etc).
✔️ DO use Google 2 Factor Authentication on your exchange accounts. Your accounts having 2FA makes your accounts significantly harder to hack.
✔️ DO use secure and complex passwords on all of your exchange accounts; preferrably 40 characters, with both uppercase and lowercase letters, and with special characters(e.g. x*uyIqwGjBhLWd$xx%i&&US5z7BxcPSGTjW4g3o6). We heavily suggest using password managers like KeePass2 and Bitwarden to generate and store your passwords.
✔️ DO make sure that you frequently check your browser’s address bar, to make sure you’re on the correct URL; to prevent being phished and to prevent accidentally downloading malicious software.
DON’Ts❌ DO NOT save your private key(s) and account passwords on a .txt file, a word document, on your email, on your mobile phone’s notes app, or anywhere digital.
❌ DO NOT store significant amounts of crypto on your hot wallets, pretty much anywhere that you don’t have control over the private key(s) and that could potentially be stolen by hackers.
❌ DO NOT give away your private key(s) to crypto airdrops or to anyone else in general. Giving away your private key(s) is pretty much like giving away access to your funds.
❌ DO NOT give away your personal information to airdrops, as they can use your personal information for malicious purposes.
❌ DO NOT click on bitcoin or crypto-related ads on Google or any other search engine. There’s a good chance that a certain link you see in your search result is a phishing link that could potentially steal your funds.
❌ DO NOT re-use passwords on exchanges or any other website in general.