Security Settings
Protect your account with passwords and two-factor authentication.
Keep your Own New account secure with strong passwords and two-factor authentication.
Accessing Security Settings
- Go to Settings → Security
- Manage your password, 2FA, and sessions
Changing Your Password
To update your password:
- Go to Settings → Security
- Click Change Password
- Enter your current password
- Enter your new password
- Confirm the new password
- Click Update Password
Password Requirements
Your password must be:
- At least 8 characters long
- Include a mix of letters and numbers
- Not be a commonly used password
Password Tips
- Use a unique password for Own New
- Don't reuse passwords from other sites
- Consider using a password manager
- Change your password if you suspect it's been compromised
Two-Factor Authentication (2FA)
Add an extra layer of security to your account by requiring a code from your phone when signing in.
Setting Up 2FA
- Go to Settings → Security
- Find the Two-Factor Authentication section
- Click Enable 2FA
- Open your authenticator app (Google Authenticator, Authy, etc.)
- Scan the QR code shown
- Enter the 6-digit code from your app
- Save your backup codes somewhere safe
- Click Confirm
Using 2FA
After enabling 2FA:
- Sign in with your email and password
- You'll be prompted for a code
- Open your authenticator app
- Enter the current 6-digit code
- You're signed in
Backup Codes
When you enable 2FA, you'll receive backup codes:
- Save these somewhere safe (not on your phone)
- Use a backup code if you can't access your authenticator
- Each code can only be used once
- Generate new codes if you run out
Disabling 2FA
If you need to turn off 2FA:
- Go to Settings → Security
- Click Disable 2FA
- Enter a code from your authenticator (or a backup code)
- Confirm the change
Note: We recommend keeping 2FA enabled for security.
Active Sessions
View and manage devices where you're signed in:
- Go to Settings → Security
- Scroll to Active Sessions
- See all devices with active sessions
Each session shows:
- Device type (desktop, mobile)
- Browser
- Location (approximate)
- Last activity
Signing Out Other Devices
If you see a session you don't recognise:
- Click Sign Out next to that session
- The device will be logged out immediately
- Consider changing your password if you didn't recognise the session
Sign Out Everywhere
To sign out all devices:
- Click Sign Out All Devices
- You'll be signed out everywhere except this device
- Other devices will need to sign in again
Account Recovery
Forgot Password
If you can't remember your password:
- Go to the sign-in page
- Click Forgot Password
- Enter your email address
- Check your email for a reset link
- Click the link and set a new password
Lost 2FA Access
If you can't access your authenticator:
- Use one of your backup codes
- Or contact support at [email protected]
- You'll need to verify your identity
Security Best Practices
- Enable 2FA — Adds crucial protection
- Use strong passwords — Long and unique
- Check sessions regularly — Look for unfamiliar devices
- Sign out on shared devices — Don't stay logged in
- Keep email secure — Your email is used for password resets
- Report suspicious activity — Contact support immediately
Deleting Your Account
If you need to delete your account:
- Go to Settings → Security
- Scroll to Delete Account
- Click Delete Account
- Confirm by entering your password or a code
- Your account will be permanently deleted
Warning: Account deletion is permanent and cannot be undone. All your data will be removed.
Note: You cannot delete your account if you're the only Owner of an organisation. Transfer ownership first.
Getting Help
For security concerns:
- Contact support immediately at [email protected]
- Report suspicious activity
- Change your password if you suspect compromise