<p>Keeping your hosting account secure is a shared responsibility. Follow these best practices:</p>
<h5>Use Strong Passwords</h5>
<ul>
<li>Use a minimum of 12 characters with a mix of uppercase, lowercase, numbers, and symbols</li>
<li>Use a different password for your hosting account than other services</li>
<li>Consider using a password manager</li>
</ul>
<h5>Enable Two-Factor Authentication (2FA)</h5>
<p>HostVyx supports TOTP-based two-factor authentication for your Client Portal account. Enable it under Account Security settings.</p>
<h5>Keep Software Updated</h5>
<ul>
<li>Regularly update your CMS (WordPress, Joomla, etc.) and plugins</li>
<li>Remove unused themes and plugins</li>
<li>Enable automatic updates where possible</li>
</ul>
<h5>Use Secure Connections</h5>
<ul>
<li>Always use SFTP instead of FTP for file transfers</li>
<li>Use SSL/TLS for your website (enforce HTTPS)</li>
<li>Use strong SSH keys instead of passwords for SSH access</li>
</ul>
<h5>Monitor Your Account</h5>
<p>Regularly review your Virtualmin logs and HostVyx billing history for any unauthorized activity.</p>