Crypto exchange impersonation

Did you receive a CoinSpot scam text or email?

Scammers can impersonate CoinSpot in SMS, email, phone calls, WhatsApp, search ads, and fake login pages. This page is independent from CoinSpot and helps you assess the message before you click, reply, or disclose an authentication code.

Paste the message into the checker after removing personal details. Do not paste a password, recovery phrase, private key, full account number, or two-factor authentication code.

The safest first check

Do not use a link or phone number from the message. Open the CoinSpot app or manually type coinspot.com.au, review account activity there, and contact official support if the alert is not visible in your account.

Free scam check

Paste the suspicious message

Include the sender name, message text, and visible URL, but remove all personal information and never include an authentication or recovery code.

Sample loaded

Common CoinSpot impersonation messages

The brand and wording change, but the requested action is usually the same: leave the official channel and give the attacker access or money.

  • A withdrawal or login alert tells you to click a cancellation link.
  • A caller claiming to be fraud support asks for a 2FA or email confirmation code.
  • An account-security message sends you to a domain that is not coinspot.com.au.
  • A recovery agent asks for a seed phrase, private key, password, or remote access.
  • A social-media contact promises to recover lost crypto for an upfront fee.

What CoinSpot says about legitimate communication

CoinSpot's published terms say it will never provide links to other websites or request sensitive information such as two-factor codes and passwords. Verify current policy through CoinSpot's own site.

  • Manually type coinspot.com.au instead of following a message link.
  • Use the official app or support page to check whether the alert is genuine.
  • Never read a 2FA code, password, recovery phrase, or private key to a caller.
  • If you entered credentials on a suspicious page, change passwords from a clean device and contact support immediately.

If you already clicked or shared a code

Act through official channels immediately. Crypto transfers can be difficult or impossible to reverse.

  • Open CoinSpot directly, change the password, review sessions, and secure withdrawals.
  • Secure the connected email account and enable unique passwords and 2FA.
  • Contact CoinSpot through its official support page and describe exactly what was shared.
  • Report financial loss to your bank, local police, and Australia's ReportCyber or Scamwatch.

Sources and verification

Use primary sources and the provider's official support channel before acting.

CoinSpot scam message FAQ

Does a sender name saying CoinSpot prove the text is real?

No. SMS sender names and caller ID can be spoofed. Verify the event inside the official app or website.

Should I use the cancellation link in a withdrawal alert?

Do not use the message link. Open CoinSpot directly and check account activity through the official channel.

Will legitimate support ask for my 2FA code or password?

CoinSpot's published terms say it will not request sensitive information such as two-factor codes and passwords.

Is ScamSpot affiliated with CoinSpot?

No. ScamSpot is an independent risk-indicator tool and does not represent or verify CoinSpot.