Account Settings
Manage your personal account settings, profile, and security preferences.
Profile Information
Update Your Name
- Navigate to Profile from the user menu
- In the Profile Information section, update your name
- Click Save
Update Your Email
- Go to Profile
- In the Profile Information section, enter your new email
- Click Save
- Verify your new email address via the confirmation email
Note: Your old email will remain active until you verify the new one.
Profile Photo
Upload a profile photo to personalize your account:
- Go to Profile
- Click Select A New Photo
- Choose an image from your computer
- Click Save
Supported formats: JPG, PNG, GIF (max 2MB)
Security Settings
Change Password
Update your password regularly for security:
- Navigate to Profile
- Go to the Update Password section
- Enter your current password
- Enter your new password
- Confirm your new password
- Click Save
Password Requirements:
- Minimum 8 characters
- At least one uppercase letter
- At least one lowercase letter
- At least one number
- At least one special character recommended
Two-Factor Authentication (2FA)
Add an extra layer of security to your account:
Enable 2FA
- Go to Profile
- Find the Two Factor Authentication section
- Click Enable
- Scan the QR code with your authenticator app:
- Google Authenticator
- Authy
- 1Password
- LastPass Authenticator
- Enter the 6-digit code from your app
- Click Confirm
- Save your recovery codes in a safe place
Recovery Codes
Recovery codes let you access your account if you lose your phone:
- Each code can be used once
- Store them securely (password manager recommended)
- Generate new codes if you use them all
- Keep them offline for maximum security
Disable 2FA
- Go to Profile
- Find the Two Factor Authentication section
- Click Disable
- Confirm with your password
Passkeys
Passkeys (WebAuthn) let you sign in without a password, using your device's biometrics or a security key:
- Go to Profile
- Find the Passkeys section
- Click Add Passkey and follow your browser or device prompt
- Give the passkey a recognizable name (e.g., "MacBook Touch ID", "YubiKey")
You can register several passkeys and remove any you no longer use. Passkeys work alongside your password and two-factor authentication.
Connected Accounts (Google & GitHub)
Sign in with your Google or GitHub account instead of a password:
- Use Sign in with Google or Sign in with GitHub on the login and registration pages
- Link or unlink these providers from your Profile at any time
- If an account link ever gets out of sync, it repairs itself automatically the next time you sign in
Browser Sessions
Manage active sessions across all your devices:
View Active Sessions
See where you're logged in:
- Device type (Desktop, Mobile, Tablet)
- IP address
- Last active time
- Current session marked
Log Out Other Sessions
If you suspect unauthorized access:
- Go to Profile
- Find the Browser Sessions section
- Click Log Out Other Browser Sessions
- Enter your password
- Click Log Out Other Browser Sessions
This logs you out from all other devices but keeps your current session active.
Session Security
Control how long you stay signed in when you step away:
- Go to Profile > Session Security
- Choose your idle timeout: 24 hours (the default) or 3 hours
- Pick the shorter 3-hour window on shared or less-trusted devices for tighter security
Your session clock resets with every action, so you're only signed out after genuine inactivity. Leave it on the default and your sessions behave exactly as before.
API Tokens
Manage API tokens for programmatic access:
Create an API Token
- Navigate to API Tokens from the user menu
- Click Create API Token
- Enter a descriptive name (e.g., "CI/CD Pipeline", "Mobile App")
- Select permissions:
- Read: View resources
- Create: Create new resources
- Update: Modify existing resources
- Delete: Remove resources
- Choose the token's scope:
- This project only (default): the token can only touch resources in your current project
- All my projects: account-wide access across every project you belong to
- Click Create
- Copy your token immediately - it won't be shown again!
New tokens default to This project only, and each token shows its scope in the list. A project-locked token is refused with a clear message if used against any other project. Existing tokens keep their account-wide access unless you recreate them.
Token Security
- Treat tokens like passwords
- Never commit tokens to version control
- Use environment variables
- Rotate tokens regularly
- Delete unused tokens
Revoke a Token
- Go to API Tokens
- Click Delete next to the token
- Confirm deletion
The token becomes invalid immediately.
Notification Preferences
Choose which notifications you receive, and whether they arrive by email, in-app (the Notification Center), or both. Preferences save per category:
- Account Activity: Password changes and profile updates
- Security: New sign-in alerts and suspicious-activity alerts (see below)
- Billing: Invoices, receipts, payment failures, budget alerts
- Service Alerts: Maintenance and incidents
- Marketing: Product updates, tips, newsletters
Update them:
- Go to Profile > Notification Preferences
- Toggle each category on or off, per channel
- Click Save
Sign-In Alerts
Get notified whenever your account signs in from a new device. Turn the email and in-app alerts on or off independently under Notification Preferences.
Suspicious Activity Alerts
If we block a burst of failed sign-in attempts on your account, we alert you by email and in-app. Each alert names the IP address the attempts came from and confirms your account was not accessed. Repeated attempts from the same source are grouped, so a sustained attack won't flood your inbox. Control these with the Suspicious Activity toggle in Notification Preferences.
Unsubscribe from Marketing
Click the unsubscribe link at the bottom of any marketing email.
Note: You'll still receive critical account and billing emails.
Privacy & Data
Data Export
Request a copy of your data:
- Contact support via the dashboard
- Request a data export
- Receive a download link within 48 hours
Exported data includes:
- Account information
- Resource configurations
- Billing history
- Support tickets
Account Deletion
Warning: This action is permanent and irreversible!
Before deleting your account:
- Delete all resources
- Download any needed data
- Export invoices for records
To delete your account:
- Go to Profile > Delete Account
- If anything still blocks deletion (for example, active resources or an unpaid balance), you'll see exactly what to resolve first
- Confirm with your password
Once the checks pass, your account and data are removed. We may ask for brief feedback on why you're leaving.
Account Limits
View your current resource limits:
- Navigate to Account Limits
- View limits for:
- VPS Instances
- Database Instances
- Cache Instances
- Firewalls
- SSH Keys
- Snapshots
Request Limit Increases
Need higher limits?
- Go to Account Limits
- Click Request Increase
- Select the resource type
- Enter desired limit
- Provide justification
- Click Submit Request
Requests are typically reviewed within 24-48 hours.
Billing Information
Manage billing separately for each project:
- Payment methods
- Billing address
- Tax information
- Invoices
See Billing & Payments for details.
Account Security Best Practices
Strong Authentication
- Use a strong, unique password
- Enable two-factor authentication
- Use a password manager
- Don't share your password
Session Management
- Log out from shared devices
- Review active sessions regularly
- Log out unused sessions
- Use secure networks
API Security
- Use API tokens instead of passwords
- Give minimum necessary permissions
- Rotate tokens regularly
- Monitor API usage
- Revoke suspicious tokens
Account Monitoring
- Review account activity regularly
- Check login notifications
- Monitor resource changes
- Review billing for unusual charges
- Keep contact email current
Troubleshooting
Can't Log In
Forgot password?
- Click Forgot Password on login page
- Enter your email
- Check your email for reset link
- Create a new password
Lost 2FA device?
- Click Use Recovery Code on 2FA page
- Enter one of your recovery codes
- Disable 2FA and re-enable with new device
Account locked?
- Too many failed login attempts lock accounts for 15 minutes
- Contact support if you need immediate access
Email Not Received
Check:
- Spam/junk folder
- Email filters
- Email address is correct
- Wait a few minutes (delays can happen)
Still nothing? Contact support.
Can't Enable 2FA
- Ensure your device clock is synchronized
- Try a different authenticator app
- Clear browser cache
- Try a different browser
- Contact support if issues persist
Support
Need help with your account?
- Support tickets: Through the dashboard — the fastest route
- Email: support@danubedata.ro