အကောင့်နှင့် လုံခြုံရေး

Binance KYC တင်နည်း — Identity Verification နဲ့ 2FA

Binance KYC တင်နည်း၊ document နှင့် liveness check ပြင်ဆင်နည်း၊ 2FA နှင့် account security ဖွင့်နည်း။

Binance KYC တင်နည်း — Identity Verification နဲ့ 2FA

Binance KYC တင်ရာတွင် account owner ၏ identity နှင့် residence ကို document၊ photo နှင့် liveness check ဖြင့် အတည်ပြုရသည်။ KYC ပြီးခြင်းက investment safe ဖြစ်ကြောင်း၊ product အားလုံးရကြောင်း သို့မဟုတ် withdrawal အကန့်အသတ်မရှိကြောင်း မဆိုလိုပါ။ Identity verification၊ account security နှင့် product eligibility ကို သီးခြားစစ်ရသည်။

လိုအပ်သော document နှင့် verification flow ကို Binance ၏ တရားဝင် personal identity verification guide တွင် ပြန်စစ်ပါ။ Requirement သည် country၊ account type နှင့် platform update အလိုက် ကွာနိုင်သည်။

KYC မစခင် data consistency စစ်ပါ

  • သက်တမ်းမကုန်သေးသော government-issued document
  • Document နှင့်ကိုက်ညီသော legal name/date of birth
  • မှန်ကန်သော issuing country နှင့် residence
  • အလင်းကောင်းပြီး မပြတ်တောက်သော camera
  • တည်ငြိမ်သော internet
  • Official Binance app/web
  • လိုအပ်ပါက address/source-of-funds document

Name order၊ middle name၊ transliteration၊ date format နှင့် document number ကို ကိုယ်တိုင်မပြင်ဆင်ဘဲ document အတိုင်းထည့်ပါ။ Citizenship၊ residence နှင့် document issuer မတူပါက guess မလုပ်ဘဲ official prompt/support ကိုလိုက်ပါ။

Document ကို chat၊ email သို့မဟုတ် “support agent” ထံမပို့ပါနှင့်။ Verification flow အတွင်း official upload field မှသာတင်ပါ။

အဆင့် 1 — Document type နဲ့ issuing country

Identity document အမျိုးအစားရွေးပြီး တင်ရန် Binance ၏ တရားဝင်မျက်နှာပြင်

Document type၊ issuing country နှင့် residence data ကို အမှန်အတိုင်းရွေးပါ။ Front/back နှစ်ဖက်လိုလျှင် နှစ်ဖက်လုံးတင်ပါ။ Reflection၊ blur၊ crop၊ glare သို့မဟုတ် corner ပျောက်ခြင်းက rejection ဖြစ်စေနိုင်သည်။ Photo-editing app ဖြင့် document ကိုပြင်မထားပါနှင့်။

Document photo မတင်မီ checklist

  • အစွန်းလေးဘက်လုံးပါသလား။
  • Text နှင့် portrait ကြည်လင်သလား။
  • Flash glare မဖုံးထားသလား။
  • Screenshot/photocopy မဟုတ်ဘဲ requirement အတိုင်း original document လား။
  • Expiry date နှင့် issuing authority မြင်ရသလား။
  • File format/size ကို official prompt လက်ခံသလား။

အခြားသူ၏ document၊ edited image သို့မဟုတ် borrowed identity သုံးခြင်းက account restriction နှင့် funds access problem ဖြစ်နိုင်သည်။

အဆင့် 2 — Liveness check

မျက်နှာအသက်ရှင်မှုစစ်ဆေးရန် Binance ၏ တရားဝင် liveness check မျက်နှာပြင်

Camera instruction ကိုလိုက်နာပြီး မျက်နှာအပြည့်မြင်ရအောင်ထားပါ။ Hat၊ dark glasses၊ beauty filter၊ virtual camera သို့မဟုတ် အလင်းပြန်မှုများကိုဖယ်ပါ။ အခြားသူက ကိုယ်စားလုပ်ခြင်း သို့မဟုတ် prerecorded video သုံးခြင်းက account restriction ဖြစ်နိုင်သည်။

Liveness မအောင်မြင်လျှင် repeated attempt မလုပ်ခင် camera permission၊ lens၊ lighting၊ network နှင့် official cooldown/message ကိုစစ်ပါ။ Screen-recording၊ remote-control app သို့မဟုတ် video-call “verification agent” ကတောင်းလာလျှင် ရပ်ပါ။

Address နဲ့ source-of-funds request

Account/entity အလိုက် proof of address၊ occupation၊ source of funds သို့မဟုတ် source of wealth တောင်းနိုင်သည်။ KYC ပြီးပြီးနောက်လည်း periodic review/re-verification ဖြစ်နိုင်သည်။

  • Document date/validity requirement ကိုဖတ်ပါ။
  • Name/address က profile နှင့်ကိုက်ညီသလားစစ်ပါ။
  • Bank statement/pay slip ကို edit မလုပ်ပါနှင့်။
  • မလိုအပ်သော transaction detail ကို redaction ခွင့်ရှိမရှိ official instruction မှစစ်ပါ။
  • Upload ကို official form မှသာလုပ်ပါ။
  • Submission ID နှင့် date ကိုမှတ်ထားပါ။

Privacy အတွက် public forum သို့ document မတင်ပါနှင့်။ Support case တွင်လည်း official secure upload link ဟုတ်မဟုတ်စစ်ပါ။

Verification မအောင်မြင်လျှင်

  1. Rejection reason ကိုအပြည့်ဖတ်ပါ။
  2. Name/order/date/issuing country ကို document နှင့်တိုက်စစ်ပါ။
  3. ပိုကောင်းသောအလင်းနှင့် camera သုံးပါ။
  4. Document သက်တမ်းကုန်မကုန် စစ်ပါ။
  5. Unsupported document type ဖြစ်မဖြစ်စစ်ပါ။
  6. Repeated attempt မလုပ်မီ cooldown/message ကိုဖတ်ပါ။
  7. Official support ကို case ID ဖြင့်မေးပါ။
  8. Password၊ 2FA code၊ email code သို့မဟုတ် seed phrase မပေးပါနှင့်။

Rejection ကိုကျော်ရန် data အတုဖန်တီးခြင်း သို့မဟုတ် VPN/borrowed identity သုံးခြင်းမလုပ်ပါနှင့်။

KYC ပြီးလည်း product အားလုံးမရနိုင်ပါ

Identity verified ဖြစ်ခြင်း၊ Binance Stocks၊ bStocks သို့မဟုတ် Futures eligibility ရခြင်းနှင့် symbol တစ်ခု order တင်နိုင်ခြင်းက သီးခြားအဆင့်များဖြစ်သည်။ Additional risk questionnaire၊ residence restriction သို့မဟုတ် account entity rule ရှိနိုင်သည်။

KYC pass ကို “Binance Stocks Myanmar မှာအတည်ပြုထားတယ်” ဟုမပြောပါနှင့်။ Product menu၊ terms၊ symbol နှင့် order preview ကိုသီးခြားစစ်ပါ။

Security အလွှာ 1 — Email ကိုအရင်ကာကွယ်ပါ

Binance account security က registered email ထက်မကောင်းနိုင်ပါ။ Email password ကို Binance နှင့်မတူအောင်ထားပြီး email account တွင်လည်း authenticator/passkey၊ recovery email/phone review နှင့် active-session review ပြုလုပ်ပါ။

Inbox forwarding rule၊ recovery method သို့မဟုတ် unknown app access ထည့်ထားခြင်းရှိမရှိစစ်ပါ။ Email compromised ဖြစ်ပါက withdrawal address confirmation၊ password reset နှင့် security alert အားလုံးထိခိုက်နိုင်သည်။

Security အလွှာ 2 — Authenticator၊ passkey နဲ့ hardware key

Binance account အတွက် Authenticator App ကို ဖွင့်ရန် တရားဝင် မျက်နှာပြင်

Binance Academy ၏ 2FA guide အရ SMS၊ authenticator app၊ hardware key နှင့် passkey စသည့် method များရှိသည်။ SMS သည် no 2FA ထက်ကောင်းသော်လည်း SIM-swap risk ရှိနိုင်ပြီး authenticator/passkey/hardware key က remote phishing risk အချို့ကိုပိုလျှော့နိုင်သည်။

Authenticator setup အဆင့်နှင့် recovery key သတိပေးချက်ကို Binance ၏ တရားဝင် 2FA guide နှင့်တိုက်စစ်ပါ။ Recovery key၊ backup code သို့မဟုတ် one-time code ကို screenshot၊ chat၊ email draft သို့မဟုတ် public cloud note တွင် မမျှဝေပါနှင့်။

Device ပြောင်းမီ recovery plan

  • Method အသစ်ကို account ထဲ register လုပ်ပြီးစမ်းပါ။
  • Backup/recovery key ကို offline လုံခြုံစွာထားပါ။
  • Old device ကို factory reset မလုပ်မီ login/recovery စမ်းပါ။
  • Phone number/email access ဆက်ရှိမရှိစစ်ပါ။
  • Method ဖြုတ်ပြီးနောက် withdrawal restriction/cooldown ရှိမရှိဖတ်ပါ။

Passkey ကို shared device သို့မဟုတ် အခြားသူ၏ cloud account တွင်မသိမ်းပါနှင့်။

Security အလွှာ 3 — Unique password နဲ့ password manager

အခြား website မသုံးသော unique password ဖန်တီးပြီး reputable password manager ဖြင့်သိမ်းပါ။ Email password နှင့် Binance password မတူရပါ။ Password ကို periodic schedule သာကြောင့်မကြာခဏပြောင်းရမည်ဟုမဆိုနိုင်သော်လည်း compromise သံသယ၊ phishing entry သို့မဟုတ် breached reuse ဖြစ်ပါက ချက်ချင်းပြောင်းပါ။

Browser autofill/password manager က exact official domain နှင့်ကိုက်မကိုက်စစ်ခြင်းက phishing page ခွဲရာတွင်ကူညီနိုင်သည်။

Security အလွှာ 4 — Anti-phishing code

Anti-phishing code feature ကိုရရှိလျှင် သီးသန့် code သတ်မှတ်ပါ။ Binance-branded email တွင် code မပါခြင်း သို့မဟုတ် မှားနေခြင်းက warning ဖြစ်နိုင်သည်။ သို့သော် code ပါရုံဖြင့် email ကို 100% safe ဟုမဆိုနိုင်ပါ—forwarded screenshot၊ compromised inbox သို့မဟုတ် exposed code ဖြစ်နိုင်သည်။

Sender address၊ link domain၊ message context နှင့် account notification ကိုပါစစ်ပါ။ Email link မနှိပ်ဘဲ saved bookmark မှ official account ထဲဝင်ပြီး alert ကိုစစ်ခြင်းပိုကောင်းသည်။

Security အလွှာ 5 — Device နဲ့ account activity review

Binance homepage ၏ profile menu မှ Account သို့ဝင်ပြီး Security/Device and Activities ကိုစစ်ပါ။ Menu name သည် region/update အလိုက်ကွာနိုင်သည်။

Binance homepage ၏ profile menu တွင် Account ကိုရွေးရမည့်နေရာကို အနီရောင်ဘောင်ဖြင့် ပြထားသော တရားဝင်မျက်နှာပြင်

Binance Academy account-security guide က authorized devices၊ login IP/timestamp နှင့် account activity ကိုပုံမှန်စစ်ရန်အကြံပြုထားသည်။

  • မသိသော device/session ကို revoke လုပ်ပါ။
  • ကိုယ်မသုံးတော့သော old device ကိုဖယ်ပါ။
  • Login time/IP မကိုက်ပါက password/email security ကိုချက်ချင်းစစ်ပါ။
  • Suspicious activity ရှိလျှင် official account-disable/support flow ကိုသုံးပါ။

IP location တစ်ခုတည်းက exact attacker location အာမခံမပေးသော်လည်း unknown device/time နှင့်တွဲပါက warning ဖြစ်သည်။

Security အလွှာ 6 — API key ကို minimum permission ပေးပါ

API key မလိုပါက မဖန်တီးပါနှင့်။ Third-party bot/service တစ်ခုက API access တောင်းလျှင် company reputation၊ permissions နှင့် revocation path ကိုစစ်ပါ။

  • Read-only လိုသလား၊ trading လိုသလားခွဲပါ။
  • Withdrawal permission မလိုပါက မပေးပါနှင့်။
  • IP restriction ရနိုင်လျှင်သုံးပါ။
  • Key တစ်ခုကို service များစွာအတွက်မမျှဝေပါနှင့်။
  • Secret ကို source code၊ screenshot၊ chat သို့မတင်ပါနှင့်။
  • မသုံးတော့လျှင် revoke လုပ်ပါ။

API key leak သံသယရှိပါက rotate/revoke လုပ်ပြီး order/activity history ကိုစစ်ပါ။

Security အလွှာ 7 — Withdrawal allowlist နဲ့ test transfer

Address allowlist/whitelist feature ရရှိလျှင် အသုံးပြုပါ။ Network နှင့် address ကိုနှစ်ကြိမ်စစ်ပြီး large transfer မတိုင်မီ small test ကိုစဉ်းစားပါ။ Clipboard malware ကြောင့် paste ပြီး address ပြောင်းနိုင်သဖြင့် first/last characters သာမဟုတ်ဘဲ address အပိုင်းများစွာကိုတိုက်စစ်ပါ။

Allowlist က registered email/account compromised ဖြစ်လျှင်အပြည့်အဝမကာကွယ်နိုင်သောကြောင့် email 2FA နှင့် device security ကိုတွဲသုံးရသည်။ New address/cooldown rule ကို current screen မှဖတ်ပါ။

Phishing နဲ့ impersonation အနီရောင်အချက်များ

  • “Account ပိတ်မယ်၊ အခု login လုပ်” ဟု အလျင်အမြန်ဖိအားပေးခြင်း
  • Support က password၊ 2FA/email code တောင်းခြင်း
  • Screen share သို့ remote-control app တင်ခိုင်းခြင်း
  • Seed phrase၊ private key သို့မဟုတ် recovery key တောင်းခြင်း
  • “Safe wallet/test transfer” ဟု ငွေပို့ခိုင်းခြင်း
  • Domain spelling နီးစပ်သော်လည်း မတူခြင်း
  • Search ad သို့ unofficial APK download ခိုင်းခြင်း
  • KYC/eligibility ဖွင့်ပေးမည်ဟု fee တောင်းခြင်း
  • Deepfake video/voice call ဖြင့် urgency ဖန်တီးခြင်း

Login သံသယရှိလျှင် message ထဲက link မသုံးဘဲ official bookmark/app မှ account ကိုစစ်ပါ။

Account compromise သံသယရှိရင်

  1. Known-clean device မှ registered email password ကိုပြောင်းပြီး email sessions/recovery rules စစ်ပါ။
  2. Official Binance bookmark/app မှ password ပြောင်းပါ။
  3. Unknown devices/sessions နှင့် API keys ကို revoke လုပ်ပါ။
  4. Open orders၊ trade၊ withdrawal နှင့် address history ကိုစစ်ပါ။
  5. Official account-disable/security flow ရရှိလျှင် အသုံးပြုပါ။
  6. Case ID ဖြင့် official support ကိုဆက်သွယ်ပါ။
  7. Transaction IDs၊ timestamps နှင့် screenshots ကို sensitive data ဖျောက်ပြီးသိမ်းပါ။
  8. “Recovery agent” သို့ငွေမပို့ပါနှင့်။

Panic ဖြင့် attacker ပေးသော “safe address” သို့ funds မပို့ပါနှင့်။ Device ကို malware သံသယရှိပါက security professional အကူအညီယူပါ။

လစဉ် security check

  • Email/Binance authorized devices
  • 2FA/passkey/recovery method
  • Anti-phishing code
  • API keys/permissions/IP restrictions
  • Withdrawal allowlist
  • Login၊ trade နှင့် withdrawal history
  • App/browser/OS updates
  • Saved official bookmark
  • Document expiry/re-verification notice

လုံခြုံရေးသည် setup တစ်ကြိမ်မဟုတ်ဘဲ ပုံမှန်လုပ်ငန်းစဉ်ဖြစ်သည်။ KYC document အမှန်တင်ခြင်း၊ account/email ကိုအလွှာလိုက်ကာကွယ်ခြင်းနှင့် official interface ကိုသာယုံခြင်းက account risk ကိုလျှော့ပေးသည်။ ဤအကြောင်းအရာသည် security education ဖြစ်ပြီး product eligibility သို့မဟုတ် funds safety ကိုအာမခံမပေးပါ။

ဆက်ဖတ်ရန်