Account → Account Security
Manage your sign-in security from a single page. Cards use two columns on wider screens, with equal heights within each row. Rows size to their content. Cards stack on smaller screens.
| Card | Availability | What you can do |
|---|---|---|
| Change my password | Local accounts only | Change your password using the current password and a new one that meets the displayed requirements. |
| Authenticator App | TOTP users only, excluding the built-in recovery account | View enrollment status and unused recovery codes, replace your authenticator, or regenerate recovery codes. |
| My API key | All users | Generate, replace, or revoke your personal API key. |
| My SSH public keys | All users | Register or delete the public keys you sign in to the SSH gateway with. |
| My Active sessions | All users | Review login sessions and revoke access from a device. |
Email MFA users do not see the Authenticator App card. Their sign-in continues to require the email code selected by their provider’s administrator.
Changes take place directly in the cards. Sensitive operations can ask for confirmation or your current credentials. Save newly generated API keys and recovery codes before closing their dialogs.