Veering off topic here a bit, but passwords. My bugbear. People use dictionary words or birthdays etc as “easy to remember”. Also easy guess. People also use same passwords on multiple sites, so if you are compromised on LinkedIn (like a year or so ago), your whole online identity is compromised.
Use a password manager. I self host Bitwarden (called vault warden) but you don’t have to. For a few pounds a month they host it for you and there are auto fill extensions for all browsers. That way use a different unique password for everything (can auto generate in Bitwarden) and where possible use two factor (something you know - password, something you don’t - one time code).
Bitwarden is inherently secure in the cloud (unlike onepass) - there are many security experts reviews of it. I just like hosting it myself.
Public service announcement over before I start talking about self hosted search engines (searng if anyone wants to look…not using google lol)