A phone is stolen from a table at a coffee shop, pulled from a hand at a traffic light, or lifted from a bag on a crowded commuter train. The device is the small loss. The real exposure is everything it unlocks: the wallet apps, the mobile banking, the messaging account through which your contacts can be approached in your name, and the email address that can reset every other password you own. In Indonesia, where daily life runs through a phone number more than through a card, the number itself is often the target. This checklist covers what to do in the first hour, in which order, and what to prepare now so that hour is survivable. It also covers replacing a device without emptying your savings, including through apps such as I am Beezy that pay for the content you consult.
Prepare now, because the first ten minutes decide everything
Everything useful you can do after a theft depends on information you either wrote down beforehand or did not. Nobody memorises an IMEI while chasing a motorbike. Spend twenty minutes this week and the crisis version of this article becomes a formality.
Record the identifiers you cannot recover later
Write down the device IMEI, the serial number, the model and the purchase invoice reference, and store them somewhere that is not on the phone: a password manager, an email to yourself, a note in a cloud account you can reach from a computer. The IMEI is what allows a device to be reported and blocked at network level, and it is printed on the original box as well as being retrievable in the phone settings while you still have it.
Separate the recovery chain from the device
If your email, your authentication app and your phone number all live on the same handset, losing it hands over the entire chain at once. Keep a second recovery route that does not depend on that device: a backup email you can access from a computer, printed one-time recovery codes stored at home, and a trusted contact where the platform offers it. An account whose only recovery route is the stolen phone is an account you have already lost.
What should you do in the first hour?
Order matters more than speed. Doing the right things in the wrong sequence gives an attacker exactly the window they need, because the phone number is the key that reopens the accounts you just secured.
| Order | Action | Why it comes at this point |
|---|---|---|
| 1 | Block the SIM with your mobile operator | The number is what receives every reset code |
| 2 | Freeze wallet and banking access through the bank hotline | Stops transfers before passwords are changed |
| 3 | Sign out all sessions on email and messaging | Cuts the attacker off from the recovery chain |
| 4 | Locate, lock or erase the device remotely | Useful only once the accounts are already secured |
| 5 | File a police report | Required for insurance, disputes and IMEI reporting |
| 6 | Warn your contacts on another channel | Prevents the scam sent in your name from working |
Block the line before anything else
Call your operator — Telkomsel, Indosat Ooredoo Hutchison, XL or Smartfren all have customer lines reachable from any phone — and have the number suspended, then arrange a replacement SIM at a service outlet with your identity document. Until the line is blocked, every password reset code for every account you own is being delivered to a stranger. Borrow a phone and do this from the street; it does not wait until you get home.
Freeze the money before you change passwords
Bank and wallet providers publish a permanent hotline for exactly this. Call it and have access frozen. Doing this before password changes matters because changing a password often triggers a verification message to the phone number, which the thief still controls if step one has not been completed. If your accounts are protected only by a PIN that someone watched you type, assume the PIN is known.
File the report, even if you expect nothing from it
A report filed at the police service desk gives you a document, and that document is what banks, insurers and your operator ask for when you dispute a transaction or claim a replacement. It also creates the trace needed if the device resurfaces. Bring your identity card and the identifiers you stored earlier.
Which of your accounts gets attacked first?
Thieves who go beyond reselling the handset follow a predictable order, and it is not the order most people expect. Knowing it tells you where to spend your preparation effort.
Messaging, because it monetises fastest
Taking over a messaging account requires only the verification code sent to the number, and it opens an immediate scam: messages to your contacts asking for an urgent transfer, from an account that genuinely belongs to you. This is the attack that costs your friends money rather than you. Enable the two-step verification PIN that messaging apps offer, because it blocks re-registration of your number on another device even when the code is intercepted.
Digital wallets and mobile banking
Wallet balances and linked accounts are the direct target. Enable biometric or PIN confirmation for every payment rather than relying on the phone unlock alone, and turn on transaction notifications through email as well as the app, so that an alert still reaches you when the phone does not. Review which merchants and services have a standing authorisation to charge your wallet; those survive a device change.
Email, because it is the master key
Email is last in a thief's sequence and first in importance. Whoever controls it can reset almost everything else at leisure, days after you have stopped worrying. Protect it with a hardware or app-based second factor rather than an SMS code, since SMS is precisely what a stolen line defeats, and check its recovery settings twice a year.
Locking the device and the line properly
Device-level measures matter, but they work only if they were configured before the theft and only in combination with the account steps above.
Remote lock and erase
Both major mobile platforms provide a remote service to locate, lock and erase a registered device from any browser. It requires the feature to have been enabled and the device to reach a network at some point. Use lock before erase: a locked device may still report its position, while an erased one usually stops. Never attempt to recover a device yourself by going to a location shown on a map.
IMEI reporting in the Indonesian system
Indonesia operates a national registry that ties device identifiers to network access, which is why a device bought abroad has to be registered to work with a local SIM. The same architecture is what makes a reported stolen identifier much less useful on local networks. Report the theft with your IMEI through your operator and keep the police report, since that is the document the process relies on.
Change the passwords in the right order afterwards
Once the line is blocked and the money is frozen, work from the master key outwards: email first, then messaging, then wallets and banking, then everything that used the compromised email as a recovery address. Do this from a computer, not from a borrowed phone, and enable a second factor as you go rather than promising yourself you will return to it.
Replacing the device without emptying your savings, with I am Beezy
The security work is free. The replacement is not, and it lands without warning on a month that was already planned. That is the part that turns a bad afternoon into a bad quarter.
Why a small daily income absorbs an unplanned expense
I am Beezy pays for consultation rather than for any task you have to schedule: you look at content — videos, articles, sponsored placements — and each qualifying consultation generates a small amount credited to your account. Built up steadily, it gives you a supplementary daily income that can go towards a replacement handset instead of a consumer loan taken in a hurry. The alternative most people fall into is buying a cheaper device on credit at the worst possible moment.
How the money reaches you
Payouts run through PayPal, so link and verify that account early rather than on the day you need the money. Identity verification on a new payment profile is the usual reason a first transfer is slow, and it is trivially avoidable by doing it in advance — ideally from a computer, so it is not one more thing depending on a phone.
The prevention checklist to run this weekend
Run this once and the whole scenario above becomes a manageable inconvenience rather than a financial event.
| Check | Where | Time needed |
|---|---|---|
| IMEI and serial stored off the device | Password manager or backup email | Minutes |
| Two-step PIN on messaging apps | App privacy settings | Minutes |
| Non-SMS second factor on email | Account security settings | Under an hour |
| Recovery codes printed and stored at home | Each critical account | Under an hour |
| Remote find and erase enabled | Device settings | Minutes |
| Bank and wallet hotlines saved elsewhere | Written note, wallet card | Minutes |
Reduce what the phone can do on its own
Hide message previews on the lock screen, disable the quick access shortcuts that reach wallets without authentication, and set the screen to lock quickly. These small settings decide how much a thief can do in the minutes before you notice anything is missing.
Rehearse the first hour once
Read the checklist out loud, confirm you know how to reach your operator and your bank without your phone, and check that your recovery email actually opens from a computer. A recovery plan you have never tested is a plan you do not have. Then put the note somewhere you will find it under stress, and build the small financial cushion that turns a stolen handset into an expense rather than a crisis — a steady daily income through I am Beezy is one straightforward way to start that fund.
