Security Settings

Configure security and privacy settings for your GenerateBot account.

Enhance your account security with these configuration options.

Multi-Factor Authentication

Why Use MFA?

MFA adds an extra layer of protection:

  • Prevents unauthorized access
  • Protects against password theft
  • Required for sensitive operations

Setting Up MFA

  1. Go to SettingsProfile
  2. Find Multi-Factor Authentication
  3. Click "Setup a new Factor"
  4. Choose your method:
    • Authenticator App (Recommended)
    • SMS (Where available)
  5. Follow setup instructions
  6. Save backup codes securely

Backup Codes

When setting up MFA:

  • You'll receive backup codes
  • Store these safely offline
  • Each code works once
  • Use if you lose your device

Disabling MFA

To remove MFA:

  1. Go to SettingsProfile
  2. Find your MFA factor
  3. Verify with current code
  4. Confirm removal

Note: We recommend keeping MFA enabled.

Session Security

Session Duration

Sessions automatically expire after:

  • 24 hours of inactivity
  • Or when you sign out

Active Sessions

View your active sessions:

  1. Go to SettingsProfile
  2. Find Active Sessions
  3. See devices and locations
  4. Sign out specific sessions if needed

Sign Out Everywhere

To end all sessions:

  1. Go to SettingsProfile
  2. Click "Sign Out All Devices"
  3. Re-authenticate on your device

Password Policies

Strong Passwords

Requirements:

  • Minimum 8 characters
  • Include uppercase letters
  • Include lowercase letters
  • Include numbers
  • Special characters recommended

Password Changes

Change your password:

  1. Go to SettingsProfile
  2. Enter current password
  3. Enter new password
  4. Confirm new password
  5. Save changes

Password Recovery

If you forget your password:

  1. Click "Forgot Password" on sign-in
  2. Enter your email
  3. Check inbox for reset link
  4. Create new password

Privacy Settings

Profile Visibility

Control what others see:

  • Display name
  • Profile picture
  • Account status

Data Collection

GenerateBot collects:

  • Usage data for improvements
  • Performance metrics
  • Error reports

Opt-Out Options

Control data sharing:

  • Marketing communications
  • Feature announcements
  • Product updates

Email Security

Verified Email

Keep your email verified:

  • Required for password resets
  • Notifications delivery
  • Account recovery

Email Changes

When you change your email:

  1. Verification sent to new email
  2. Notification sent to old email
  3. Both must be confirmed
  4. Change completes after verification

API Security

API Keys (If Applicable)

If using API access:

  • Store keys securely
  • Never share publicly
  • Rotate periodically
  • Use environment variables

Rate Limiting

API requests are limited:

  • Prevents abuse
  • Ensures fair usage
  • Contact support for higher limits

Best Practices

Account Security

Recommended:

  • Enable MFA
  • Use unique password
  • Keep email updated
  • Review sessions regularly
  • Sign out on shared devices

Avoid:

  • Sharing credentials
  • Using public computers
  • Ignoring security alerts
  • Reusing passwords

Team Security

For team accounts:

  • Enforce MFA for all members
  • Review member access regularly
  • Remove inactive members
  • Use role-based permissions

Security Notifications

What You'll Receive

Email alerts for:

  • New sign-ins
  • Password changes
  • MFA changes
  • Suspicious activity

Responding to Alerts

If you didn't make a change:

  1. Secure your account immediately
  2. Change your password
  3. Review active sessions
  4. Contact support

Support

Security Concerns

Report security issues:

  • Email: security@generatebot.com
  • Include account details
  • Describe the concern
  • We respond within 24 hours

Account Recovery

If you're locked out:

  • Use backup codes for MFA
  • Try password reset
  • Contact support with verification