Asset security guidelines

Digital assets are typically managed through accounts, devices, and networks.

Compared with traditional financial services, some blockchain transactions are difficult to revoke, have cross-network flows, and have permissions held by users themselves.

The importance of asset security

Digital assets are typically managed through accounts, devices, and networks. Compared with traditional financial services, some blockchain transactions are difficult to revoke, have cross-network flows, and have permissions held by users themselves.

Asset security depends not only on the platform's security measures but also closely related to users' password management, device environment, operating habits, and risk identification capabilities.

This guide introduces common account and asset protection methods, helping users reduce risks such as unauthorized access, information leakage, incorrect operations, and scams.

Protect account information

Account login information is an important credential to access platform services. Users should set independent passwords with a certain degree of complexity, avoiding using the same passwords as email, social media platforms, or other websites.

Passwords should not contain information that is easy to guess, such as:

It is recommended to regularly check account security status and promptly change passwords if abnormal logins, unknown devices, or suspicious operations are detected.

Name or birthday
Consecutive numbers
Common words
Phone numbers or email prefixes
Content related to personal public information

Enable secure authentication

Users should enable applicable multi-factor authentication methods according to the platform's features.

Additional security verification can add an extra layer of protection to your account in case your password is leaked or your device is accessed by someone else.

Common verification methods may include:

Users should properly safeguard verification devices and recovery information. Before changing your phone, email, or verification method, you should confirm that the relevant account is still accessible normally.

Email verification
Mobile verification
Authenticator apps (e.g., Google Authenticator)
Device confirmation
Secure verification for transactions or withdrawals

Protect your email security

Emails linked to platform accounts are usually used to receive login reminders, security verification, and important notifications.

Users should set a dedicated password for their email and enable available security verification features. The email password should not be the same as the platform account password.

Regular check-ups are recommended:

Email login records
Automatic forwarding settings
Recovery email and phone number
Authorized devices
Suspicious filtering rules
Unknown third-party application permissions

Device and network security

Users should try to access the platform through trusted devices and secure networks. It is recommended to keep your device's operating system, browser, and security software reasonably updated, and avoid installing unfamiliar applications, browser extensions, or remote control tools.

When using public computers, shared devices, or public wireless networks, account information may face higher risks.

Users should avoid:

Saving passwords on unfamiliar devices
Staying logged in on public devices for a long time
Accessing accounts connected from an unknown source
Installing unverified software
Sharing your screen or granting remote control access to others
Clicking on an unknown pop-up or file download link

Identify official websites and apps

Users should access the relevant services through the ANMREX official website or through officially published channels. Counterfeit websites may resemble official websites in page design, names, icons, or link formats, and may induce users to enter account information or verification codes.

When visiting the website, you should carefully check:

Check if the URL is spelled correctly
Whether the page comes from a trusted source
Whether there are abnormal redirects
Whether to request downloading unknown files
Whether there are unreasonable transfer requests

Guard against phishing information

Phishing messages are usually sent via email, text messages, social media, or instant messaging tools, luring users into actions under reasons such as account anomalies, asset freezes, event rewards, or security upgrades.

Common phishing activities may include:

Requests to immediately log in to your account
Requests to complete emergency identity verification
Requests to pay account unfreezing fees
Claims of abnormal assets in the account
Offering fake rewards or airdrops
Requests to scan the QR code
Requests to download the security plugin
Requests to transfer to the specified address

Security checks before transfers

Digital asset transfers are often difficult to revoke directly. Before sending, carefully verify assets, addresses, and network information.

Recommended confirmation:

Whether the asset name is correct
Whether the transfer network is consistent
Whether the receiving address is complete
Whether a Memo or Tag is required
Whether the transfer amount is correct
Is the network fee acceptable
Whether the receiving platform supports the selected network

Withdrawal security

Withdrawals usually involve assets leaving the platform and entering external addresses, so extra caution is required. Users should ensure that the withdrawal address is controlled by themselves or belongs to a confirmed recipient.

Wary of impersonating customer service

Scammers may pose as platform customer service, staff, partner organizations, or security teams, and proactively contact users through unofficial channels.

Common methods include:

Claiming your account is at risk and offering to assist with asset migration
Requesting to download remote control software or share the screen
Requesting a verification code
Requesting a transfer to a secure address
Requesting payment for processing fees

Be cautious with earnings commitments

Digital asset prices and related markets may experience significant volatility. Any information guaranteeing fixed income, promising risk-free returns, or claiming stable profits should be judged with caution.

Scams may use fake investment projects, proxy trading, automated tools, arbitrage services, or insider information to entice users to make transfers.

Social media and community safety

Social media and community groups can be used for information exchange, but there may also be fake accounts, impersonating administrators, and malicious links.

Users should note:

Official staff usually do not proactively request account information
Group chat nicknames and avatars can be copied
High-profile accounts can also be counterfeited
Unfamiliar links may contain phishing pages
Investment advice within the group does not represent facts
So-called internal channels are not necessarily real

Prevent risks from remote control

Remote control software allows others to view or operate user devices. Any act that requires users to install remote control software under the pretext of account assistance, technical support, security checks, or asset recovery may carry high risks.

Users should never grant strangers:

Device control permissions
Screen sharing permissions
SMS reading permissions
File access permissions
Browser operation permissions

Regularly check your account

Users are advised to regularly check information related to asset security, including:

Login devices
Login time
Account security settings
Bind your email and phone number
Withdrawal address
Transaction and asset records
Third-party authorization
Exception notification

What to do when abnormalities are found

If you discover that your account may have unauthorized access or asset risks, it is recommended to promptly:

Stop making new transactions or authorizations
Change your account and email password
Check the device and network environment
Log out of unrecognized devices
Check the security authentication settings
Save relevant screenshots and records
Report the issue through official channels

Backup and Recovery

Users should prepare appropriate recovery plans for important accounts. Backup information should be stored in a secure, controllable location that is not easily accessible by unauthorized authorization.

For important data, multiple independent backups can be prepared as needed, but excessive duplication should be avoided to prevent new leakage risks.

Users should ensure that necessary information can be recovered in case of device loss, damage, or replacement, while avoiding unauthorized access to full control rights.

Security habits

Asset security usually relies on continuous and stable operational habits rather than a single security function. Users are advised to maintain the following principles over the long term:

When unsure whether an operation is safe, pausing is usually safer than confirming immediately.

Not sharing account control information
Not trusting urgent requests from strangers
Not signing on unfamiliar pages
Not transferring money to unknown addresses
Not reusing important passwords
Not ignoring account security reminders
Not using software from unknown sources
Not relying on unverified investment information

A shared responsibility between the platform and users

ANMREX will continuously improve account protection, access control, risk identification, and related security measures according to platform service and risk management needs.

But no security system can fully replace the management of passwords, devices, and operational permissions for users.

Important note

This guide only provides general asset security information and does not constitute an absolute guarantee of the security of any accounts, assets, devices, networks, or third-party services.

Digital assets and related services may be affected by market volatility, network failures, technical risks, malicious attacks, fraudulent activities, and human errors.

Security features and handling methods may vary among different platforms and blockchain networks; specific operations should follow the official rules of the relevant services.

Users should independently assess relevant risks and decide whether to use specific assets, networks, or services based on their own circumstances.

Contact us

If you notice account anomalies, suspicious logins, fake websites, fake customer service, or other security issues, please contact ANMREX through support@anmrex.com.

When submitting questions, please specify the time of the event, related operations, and any necessary supporting information.