Home Articles Categories Download About Register Binance
中文 EN JA KO
Security

Where to Set Up the Binance Anti-Phishing Code

· About 15 min

What Is the Binance Anti-Phishing Code

The Binance anti-phishing code, also known as the Anti-Phishing Code, is a security feature provided by Binance. Its function is simple but effective: after you set a custom text string, every official email from Binance will display this text.

When you receive an email claiming to be from Binance, simply check whether it contains your designated code. If it does, the email is from Binance's official channels. If it doesn't, the email is likely a phishing attempt, and you should immediately ignore and delete it.

While this feature may seem simple, it's incredibly useful in practice. No matter how convincing a phishing email looks, the scammer cannot possibly know what code you've set.

Where to Find the Setting

Many users know this feature exists but can't find where to set it up. Here's how to locate it on both the web and app.

Web Version

  1. Open your browser, go to the Binance website, and log in to your account
  2. Hover over the user icon in the top right corner and click Security in the dropdown menu
  3. On the security settings page, scroll down to the Advanced Security section
  4. In this section, you'll find the Anti-Phishing Code option
  5. Click the Enable or Set Up button next to it

App Version

  1. Open the Binance app and log in
  2. Tap the user avatar in the top left corner to access your profile
  3. Select Security
  4. Find Anti-Phishing Code in the security settings list
  5. Tap to enter the setup page

Both methods follow the same setup process — just choose whichever you prefer.

Step-by-Step Setup Instructions

Once you've found the setting, here's the complete setup process.

Step 1: Enter the Settings Page

Navigate to the anti-phishing code option using the paths described above and tap to enter. If this is your first time setting it up, the page will display a feature description and an input field.

Step 2: Enter Your Code

Type your desired anti-phishing code text into the input field. The code typically needs to be 4 to 20 characters long and can include letters and numbers.

When choosing your code, keep the following in mind:

  • Choose something that you can easily recognize and remember
  • Avoid overly simple content like "1234" or "abcd"
  • Don't use something identical or similar to your password
  • Consider a phrase or combination that has special meaning to you but is hard for others to guess

For example, you could use an abbreviation of a favorite book title plus a number, or a shorthand that only you would understand.

Step 3: Complete Security Verification

After entering the code, the system will require identity verification. Depending on your account's security settings, you may need to enter one or more of the following:

  • Email verification code
  • SMS verification code
  • Google Authenticator code

Follow the prompts to complete verification.

Step 4: Confirm the Setup Was Successful

Once verification is complete, the anti-phishing code is set. You can trigger a Binance email to verify the setup — for example, by changing a minor setting (like notification preferences) and checking whether the received email includes your code.

How the Anti-Phishing Code Works in Practice

Understanding the specific use cases helps you make better use of this feature.

Distinguishing Real from Fake Emails

Every day, large volumes of phishing emails impersonate official Binance communications. These emails typically use templates and sender addresses very similar to Binance's real ones, with convincing content like notifications about "account anomalies requiring immediate verification" or "limited-time reward claims."

Without an anti-phishing code, average users find it very difficult to tell these emails apart. With the code set up, you simply need to check whether the email contains your code to make a quick judgment, significantly reducing the risk of being scammed.

Where the Code Appears in Emails

In official Binance emails, the anti-phishing code is typically displayed in a fixed position at the top or bottom of the email body, in a clearly visible format. You won't need to search for it — you'll see it naturally while reading the email.

Limitations of the Anti-Phishing Code

It's important to understand that the anti-phishing code only helps you distinguish real emails from fakes. It cannot prevent other types of attacks — for example, it won't protect against phishing website impersonation, social media scams, or brute-force password cracking. Therefore, the anti-phishing code should be used alongside other security measures, not as the sole line of defense.

How to Change Your Anti-Phishing Code

Periodically changing your anti-phishing code can further enhance security. The process is straightforward.

Steps to Change

  1. Navigate to the anti-phishing code settings page using the paths described earlier
  2. The page will show your current code (partially hidden)
  3. Click the Modify button
  4. Enter your new anti-phishing code
  5. Complete security verification (email, SMS, or Google Authenticator code)
  6. Save the changes

After the change, subsequent official Binance emails will display the new code.

Recommended Change Frequency

It's recommended to change your anti-phishing code every three to six months. If you suspect your code may have been seen by others (for example, if you displayed an email in an unsecured environment), change it immediately.

Frequently Asked Questions

Will Old Emails Change After I Set the Code

No. The anti-phishing code only affects emails sent after you set it up. The content of previously received emails will not change.

What If I Forget My Anti-Phishing Code

You can log in to your Binance account and view it on the anti-phishing code settings page (displayed partially hidden). If you truly can't remember, you can simply set a new code to replace the old one.

Can My Anti-Phishing Code Be Stolen

The code only appears in emails that Binance sends to you. As long as your email account is secure, the code won't be leaked. However, if your email is compromised, an attacker could learn your code by reading your email history. This is why protecting your email account is equally important — we recommend enabling two-factor authentication on your email as well.

What's the Difference Between the Anti-Phishing Code and Google Authenticator

They serve completely different purposes. Google Authenticator is an identity verification tool used during login and operations to prove that you are who you say you are. The anti-phishing code is an email authenticity tool used to verify that an email actually came from Binance. They do not replace each other, and we recommend enabling both.

Setting up the anti-phishing code takes less than two minutes but provides ongoing protection during daily use. If you haven't set it up yet, log in to Binance now and add this extra layer of security to your account.

Android: direct APK install. iOS: requires overseas Apple ID