#1
I'm going to point you from the simplest to the most “annoying” thing you might want to implement to improve your security [Image: smart.gif] :

Password manager.

Primordial always without any excuse, never repeat password and the more complex the better.
  • ProtonPass
  • Bitwarden
  • KeePassXC
Double factor authentication.

If your password is compromised for some reason (Hacking of some kind) you should still have a 2FA to protect you.
A random code that is generated on your phone every 30seconds (You will need to back it up).
  • Aegis (Android)
  • 2FAS (iOS)
Proxymail (Email Alias).

A security breach could completely expose your email and make you a target for phishing, plus you can use your inbox as normal but increase your privacy.
  • SimpleLogin
  • Addy