0 of 22 items completed
I use a password manager to store unique passwords for every account
My passwords are at least 12 characters long
I never reuse the same password across multiple sites
My email account has a unique, strong password
My email account has two-factor authentication enabled
My banking and financial accounts use 2FA
I use an authenticator app (not just SMS) for 2FA where possible
I have saved backup codes for my 2FA accounts
My phone and computer have screen lock / PIN enabled
My devices have automatic security updates enabled
I have antivirus/anti-malware software installed
I lock my computer when stepping away from it
I have encrypted my device storage (FileVault/BitLocker)
I use a VPN on public Wi-Fi networks
My home Wi-Fi uses WPA2 or WPA3 encryption
I have changed my router's default admin password
I use a privacy-focused browser or have hardened my browser settings
I verify sender addresses before clicking links in emails
I never enter passwords after clicking an email link — I go directly to the site
I know how to report phishing emails to my email provider
I have checked my email address for known data breaches
I regularly check my bank statements for unrecognised charges