Account Settings and Security
Update your profile, change your password, switch themes, and understand how sign-in security works.
Everything about your account lives in Dashboard → Account: your profile details, password management, and security. This guide walks through each section, plus the sign-in behaviors that occasionally surprise people — like the one-time email code — so you know what is normal.
Updating your profile
- Open Dashboard → Account.
- In Personal Information, edit any of the following:
- Display name — how your name appears in the dashboard (minimum 2 characters).
- Username — a short handle for your account (minimum 3 characters).
- Phone number — optional.
- Click Save Changes. The button only activates when you have actually changed something.
Your email address is shown but cannot be changed currently. If you need to move your account to a different email, open a support ticket and the team will help.
Changing your password
For security, password changes are not done inline — they go through a verification link sent to your registered email:
- On the Account page, find Security & Authentication.
- Complete the quick security check (a Cloudflare Turnstile widget — usually just one click).
- Click Update Password. A verification link is emailed to you.
- Open the link and set your new password. The link expires in 1 hour — if it lapses, just request a new one.
The same flow is available from the login page via Forgot password if you are locked out.
Switching themes
The theme toggle lives in the dashboard sidebar. You can choose Light, Dark, or System (which follows your operating system preference and switches automatically). Your choice is saved to your account, so it follows you across devices and browsers rather than living in a single browser's storage.
How sign-in security works
You can sign in two ways:
- Email and password — the standard flow.
- Google — one-click OAuth sign-in with your Google account.
Both flows are protected by Cloudflare Turnstile, which blocks bots without making you solve puzzles in most cases.
The occasional email one-time code
Sometimes after entering a correct password you will be asked for a one-time code sent to your email before the session is granted. This is expected, and it happens in exactly two situations:
- You are signing in from a new IP address — a different network than your last login (new office, phone hotspot, VPN, travel).
- It has been more than 30 days since your last sign-in.
Enter the code from the email and you are in; subsequent logins from the same network go straight through. If you see a code prompt you did not trigger, change your password using the flow above and contact support.
Where API keys live
API keys and webhook settings are not on the Account page — they are under Dashboard → Webhooks. There you can create keys for programmatic access (each key is shown once, then stored hashed), revoke keys, and configure your account-level completion webhook. See Getting started with the API for creating your first key and the dashboard webhooks guide for completion notifications.
Related settings elsewhere
- Purchases, plans, and invoice history: credits and billing.
- Referral links and commissions: the affiliate program.
- Anything you cannot self-serve: open a ticket.