Security Settings
Configure security and privacy settings for your GenerateBot account.
Enhance your account security with these configuration options.
Multi-Factor Authentication
Why Use MFA?
MFA adds an extra layer of protection:
- Prevents unauthorized access
- Protects against password theft
- Required for sensitive operations
Setting Up MFA
- Go to Settings → Profile
- Find Multi-Factor Authentication
- Click "Setup a new Factor"
- Choose your method:
- Authenticator App (Recommended)
- SMS (Where available)
- Follow setup instructions
- Save backup codes securely
Backup Codes
When setting up MFA:
- You'll receive backup codes
- Store these safely offline
- Each code works once
- Use if you lose your device
Disabling MFA
To remove MFA:
- Go to Settings → Profile
- Find your MFA factor
- Verify with current code
- Confirm removal
Note: We recommend keeping MFA enabled.
Session Security
Session Duration
Sessions automatically expire after:
- 24 hours of inactivity
- Or when you sign out
Active Sessions
View your active sessions:
- Go to Settings → Profile
- Find Active Sessions
- See devices and locations
- Sign out specific sessions if needed
Sign Out Everywhere
To end all sessions:
- Go to Settings → Profile
- Click "Sign Out All Devices"
- Re-authenticate on your device
Password Policies
Strong Passwords
Requirements:
- Minimum 8 characters
- Include uppercase letters
- Include lowercase letters
- Include numbers
- Special characters recommended
Password Changes
Change your password:
- Go to Settings → Profile
- Enter current password
- Enter new password
- Confirm new password
- Save changes
Password Recovery
If you forget your password:
- Click "Forgot Password" on sign-in
- Enter your email
- Check inbox for reset link
- Create new password
Privacy Settings
Profile Visibility
Control what others see:
- Display name
- Profile picture
- Account status
Data Collection
GenerateBot collects:
- Usage data for improvements
- Performance metrics
- Error reports
Opt-Out Options
Control data sharing:
- Marketing communications
- Feature announcements
- Product updates
Email Security
Verified Email
Keep your email verified:
- Required for password resets
- Notifications delivery
- Account recovery
Email Changes
When you change your email:
- Verification sent to new email
- Notification sent to old email
- Both must be confirmed
- Change completes after verification
API Security
API Keys (If Applicable)
If using API access:
- Store keys securely
- Never share publicly
- Rotate periodically
- Use environment variables
Rate Limiting
API requests are limited:
- Prevents abuse
- Ensures fair usage
- Contact support for higher limits
Best Practices
Account Security
✅ Recommended:
- Enable MFA
- Use unique password
- Keep email updated
- Review sessions regularly
- Sign out on shared devices
❌ Avoid:
- Sharing credentials
- Using public computers
- Ignoring security alerts
- Reusing passwords
Team Security
For team accounts:
- Enforce MFA for all members
- Review member access regularly
- Remove inactive members
- Use role-based permissions
Security Notifications
What You'll Receive
Email alerts for:
- New sign-ins
- Password changes
- MFA changes
- Suspicious activity
Responding to Alerts
If you didn't make a change:
- Secure your account immediately
- Change your password
- Review active sessions
- Contact support
Support
Security Concerns
Report security issues:
- Email: security@generatebot.com
- Include account details
- Describe the concern
- We respond within 24 hours
Account Recovery
If you're locked out:
- Use backup codes for MFA
- Try password reset
- Contact support with verification