Before You Log In
Take a moment to prepare: use a personal, updated device on a trusted network; navigate directly to https://www.kucoin.com
or the official mobile app; and have your 2FA method and backup codes ready. Avoid public or shared computers for sensitive actions.
Sign-In Steps
- Open KuCoin on desktop or mobile and click/tap Sign In.
- Enter your registered email or mobile number and your password.
- Complete any CAPTCHA prompts to continue.
- Provide your 2FA code (TOTP) or SMS code if prompted.
- Review your dashboard and recent notifications after login.
Two-Factor Authentication (2FA)
Enable 2FA for login, withdrawals, and account changes. Recommended options:
Authenticator App (TOTP)
Use Google Authenticator, Authy, or similar apps. Scan the QR at setup and securely store any backup keys. TOTP apps are preferred over SMS for better resistance to SIM attacks.
SMS Verification
SMS codes can be used but are vulnerable to SIM swapping. If you rely on SMS, ensure your mobile carrier account is secured with a PIN or extra verification steps.
Always keep your 2FA backup codes in a secure offline place (do not store them on cloud services).
Higher-Security Features
- Trading Password: Adds a second password required for withdrawals and trades — enable it to reduce risk from hijacked accounts.
- Withdrawal Whitelist: Restrict withdrawals to trusted addresses only.
- API Keys: Grant minimal permissions and restrict IPs when creating API keys for bots or integrations.
- Anti‑Phishing Code: Set a phrase that appears in all genuine KuCoin emails to help spot fakes.
If You Lose Access
Act quickly if you lose your password or 2FA device.
- Use the Forgot password link to reset via your registered email.
- If you lost 2FA, use your saved backup codes to re-enable access.
- No backup codes? Submit an account recovery request via KuCoin Support and be ready to provide identity verification and account details.
Common Troubleshooting
Authentication Fails
Check for typos, ensure caps-lock is off, and confirm your TOTP app clock is synchronized. If SMS is delayed, check network reception.
App or Browser Issues
Clear cache, disable conflicting extensions, update the app, or try another browser. Reinstall the app if problems persist.
Everyday Security Checklist
- Use a unique, long password stored in a password manager.
- Enable TOTP-based 2FA and save backup codes offline.
- Enable trading password and withdrawal whitelist for added protection.
- Limit API key permissions and whitelist IPs for bots.
- Monitor login alerts and recent activity; revoke unknown sessions immediately.
Phishing & Social Engineering
Never click links from unsolicited emails or messages claiming to be KuCoin. Verify sender emails and use your anti‑phishing code to confirm legitimate communications. Report suspected phishing attempts to KuCoin support immediately.
Contacting KuCoin Support
If you cannot resolve an issue through the site’s recovery tools, contact KuCoin Support through the official support portal. Provide only requested information and never share your password or full 2FA codes in chat or email.