{"slug":"account-settings","title":"Account Settings","description":"Manage your personal account settings, profile, and security preferences.","section":"Account & Billing","url":"https://docs.danubedata.ro/account-settings","markdown_url":"https://docs.danubedata.ro/account-settings.md","breadcrumbs":[{"title":"Account & Billing","slug":null},{"title":"Account Settings","slug":"account-settings"}],"headings":[{"level":1,"title":"Account Settings","id":"account-settings"},{"level":2,"title":"Profile Information","id":"profile-information"},{"level":3,"title":"Update Your Name","id":"update-your-name"},{"level":3,"title":"Update Your Email","id":"update-your-email"},{"level":3,"title":"Profile Photo","id":"profile-photo"},{"level":2,"title":"Security Settings","id":"security-settings"},{"level":3,"title":"Change Password","id":"change-password"},{"level":3,"title":"Two-Factor Authentication (2FA)","id":"two-factor-authentication-2fa"},{"level":4,"title":"Enable 2FA","id":"enable-2fa"},{"level":4,"title":"Recovery Codes","id":"recovery-codes"},{"level":4,"title":"Disable 2FA","id":"disable-2fa"},{"level":3,"title":"Passkeys","id":"passkeys"},{"level":3,"title":"Connected Accounts (Google & GitHub)","id":"connected-accounts-google-github"},{"level":3,"title":"Browser Sessions","id":"browser-sessions"},{"level":4,"title":"View Active Sessions","id":"view-active-sessions"},{"level":4,"title":"Log Out Other Sessions","id":"log-out-other-sessions"},{"level":3,"title":"Session Security","id":"session-security"},{"level":2,"title":"API Tokens","id":"api-tokens"},{"level":3,"title":"Create an API Token","id":"create-an-api-token"},{"level":3,"title":"Token Security","id":"token-security"},{"level":3,"title":"Revoke a Token","id":"revoke-a-token"},{"level":2,"title":"Notification Preferences","id":"notification-preferences"},{"level":3,"title":"Sign-In Alerts","id":"sign-in-alerts"},{"level":3,"title":"Suspicious Activity Alerts","id":"suspicious-activity-alerts"},{"level":3,"title":"Unsubscribe from Marketing","id":"unsubscribe-from-marketing"},{"level":2,"title":"Privacy & Data","id":"privacy-data"},{"level":3,"title":"Data Export","id":"data-export"},{"level":3,"title":"Account Deletion","id":"account-deletion"},{"level":2,"title":"Account Limits","id":"account-limits"},{"level":3,"title":"Request Limit Increases","id":"request-limit-increases"},{"level":2,"title":"Billing Information","id":"billing-information"},{"level":2,"title":"Account Security Best Practices","id":"account-security-best-practices"},{"level":3,"title":"Strong Authentication","id":"strong-authentication"},{"level":3,"title":"Session Management","id":"session-management"},{"level":3,"title":"API Security","id":"api-security"},{"level":3,"title":"Account Monitoring","id":"account-monitoring"},{"level":2,"title":"Troubleshooting","id":"troubleshooting"},{"level":3,"title":"Can't Log In","id":"cant-log-in"},{"level":3,"title":"Email Not Received","id":"email-not-received"},{"level":3,"title":"Can't Enable 2FA","id":"cant-enable-2fa"},{"level":2,"title":"Support","id":"support"},{"level":2,"title":"Next Steps","id":"next-steps"}],"format":"markdown","word_count":1407,"content":"# Account Settings\n\nManage your personal account settings, profile, and security preferences.\n\n## Profile Information\n\n### Update Your Name\n\n1. Navigate to **Profile** from the user menu\n2. In the **Profile Information** section, update your name\n3. Click **Save**\n\n### Update Your Email\n\n1. Go to **Profile**\n2. In the **Profile Information** section, enter your new email\n3. Click **Save**\n4. Verify your new email address via the confirmation email\n\n**Note**: Your old email will remain active until you verify the new one.\n\n### Profile Photo\n\nUpload a profile photo to personalize your account:\n\n1. Go to **Profile**\n2. Click **Select A New Photo**\n3. Choose an image from your computer\n4. Click **Save**\n\nSupported formats: JPG, PNG, GIF (max 2MB)\n\n## Security Settings\n\n### Change Password\n\nUpdate your password regularly for security:\n\n1. Navigate to **Profile**\n2. Go to the **Update Password** section\n3. Enter your current password\n4. Enter your new password\n5. Confirm your new password\n6. Click **Save**\n\n**Password Requirements**:\n- Minimum 8 characters\n- At least one uppercase letter\n- At least one lowercase letter\n- At least one number\n- At least one special character recommended\n\n### Two-Factor Authentication (2FA)\n\nAdd an extra layer of security to your account:\n\n#### Enable 2FA\n\n1. Go to **Profile**\n2. Find the **Two Factor Authentication** section\n3. Click **Enable**\n4. Scan the QR code with your authenticator app:\n   - Google Authenticator\n   - Authy\n   - 1Password\n   - LastPass Authenticator\n5. Enter the 6-digit code from your app\n6. Click **Confirm**\n7. **Save your recovery codes** in a safe place\n\n#### Recovery Codes\n\nRecovery codes let you access your account if you lose your phone:\n\n- Each code can be used once\n- Store them securely (password manager recommended)\n- Generate new codes if you use them all\n- Keep them offline for maximum security\n\n#### Disable 2FA\n\n1. Go to **Profile**\n2. Find the **Two Factor Authentication** section\n3. Click **Disable**\n4. Confirm with your password\n\n### Passkeys\n\nPasskeys (WebAuthn) let you sign in without a password, using your device's biometrics or a security key:\n\n1. Go to **Profile**\n2. Find the **Passkeys** section\n3. Click **Add Passkey** and follow your browser or device prompt\n4. Give the passkey a recognizable name (e.g., \"MacBook Touch ID\", \"YubiKey\")\n\nYou can register several passkeys and remove any you no longer use. Passkeys work alongside your password and two-factor authentication.\n\n### Connected Accounts (Google & GitHub)\n\nSign in with your Google or GitHub account instead of a password:\n\n- Use **Sign in with Google** or **Sign in with GitHub** on the login and registration pages\n- Link or unlink these providers from your **Profile** at any time\n- If an account link ever gets out of sync, it repairs itself automatically the next time you sign in\n\n### Browser Sessions\n\nManage active sessions across all your devices:\n\n#### View Active Sessions\n\nSee where you're logged in:\n- Device type (Desktop, Mobile, Tablet)\n- IP address\n- Last active time\n- Current session marked\n\n#### Log Out Other Sessions\n\nIf you suspect unauthorized access:\n\n1. Go to **Profile**\n2. Find the **Browser Sessions** section\n3. Click **Log Out Other Browser Sessions**\n4. Enter your password\n5. Click **Log Out Other Browser Sessions**\n\nThis logs you out from all other devices but keeps your current session active.\n\n### Session Security\n\nControl how long you stay signed in when you step away:\n\n1. Go to **Profile** > **Session Security**\n2. Choose your idle timeout: **24 hours** (the default) or **3 hours**\n3. Pick the shorter 3-hour window on shared or less-trusted devices for tighter security\n\nYour session clock resets with every action, so you're only signed out after genuine inactivity. Leave it on the default and your sessions behave exactly as before.\n\n## API Tokens\n\nManage API tokens for programmatic access:\n\n### Create an API Token\n\n1. Navigate to **API Tokens** from the user menu\n2. Click **Create API Token**\n3. Enter a descriptive name (e.g., \"CI/CD Pipeline\", \"Mobile App\")\n4. Select permissions:\n   - **Read**: View resources\n   - **Create**: Create new resources\n   - **Update**: Modify existing resources\n   - **Delete**: Remove resources\n5. Choose the token's scope:\n   - **This project only** (default): the token can only touch resources in your current project\n   - **All my projects**: account-wide access across every project you belong to\n6. Click **Create**\n7. **Copy your token immediately** - it won't be shown again!\n\n> New tokens default to **This project only**, and each token shows its scope in the list. A project-locked token is refused with a clear message if used against any other project. Existing tokens keep their account-wide access unless you recreate them.\n\n### Token Security\n\n- Treat tokens like passwords\n- Never commit tokens to version control\n- Use environment variables\n- Rotate tokens regularly\n- Delete unused tokens\n\n### Revoke a Token\n\n1. Go to **API Tokens**\n2. Click **Delete** next to the token\n3. Confirm deletion\n\nThe token becomes invalid immediately.\n\n## Notification Preferences\n\nChoose which notifications you receive, and whether they arrive by **email**, **in-app** (the Notification Center), or both. Preferences save per category:\n\n- **Account Activity**: Password changes and profile updates\n- **Security**: New sign-in alerts and suspicious-activity alerts (see below)\n- **Billing**: Invoices, receipts, payment failures, budget alerts\n- **Service Alerts**: Maintenance and incidents\n- **Marketing**: Product updates, tips, newsletters\n\nUpdate them:\n1. Go to **Profile** > **Notification Preferences**\n2. Toggle each category on or off, per channel\n3. Click **Save**\n\n### Sign-In Alerts\n\nGet notified whenever your account signs in from a new device. Turn the email and in-app alerts on or off independently under **Notification Preferences**.\n\n### Suspicious Activity Alerts\n\nIf we block a burst of failed sign-in attempts on your account, we alert you by email and in-app. Each alert names the IP address the attempts came from and confirms your account was not accessed. Repeated attempts from the same source are grouped, so a sustained attack won't flood your inbox. Control these with the **Suspicious Activity** toggle in **Notification Preferences**.\n\n### Unsubscribe from Marketing\n\nClick the unsubscribe link at the bottom of any marketing email.\n\n**Note**: You'll still receive critical account and billing emails.\n\n## Privacy & Data\n\n### Data Export\n\nRequest a copy of your data:\n\n1. Contact support via the dashboard\n2. Request a data export\n3. Receive a download link within 48 hours\n\nExported data includes:\n- Account information\n- Resource configurations\n- Billing history\n- Support tickets\n\n### Account Deletion\n\n**Warning**: This action is permanent and irreversible!\n\nBefore deleting your account:\n1. Delete all resources\n2. Download any needed data\n3. Export invoices for records\n\nTo delete your account:\n1. Go to **Profile** > **Delete Account**\n2. If anything still blocks deletion (for example, active resources or an unpaid balance), you'll see exactly what to resolve first\n3. Confirm with your password\n\nOnce the checks pass, your account and data are removed. We may ask for brief feedback on why you're leaving.\n\n## Account Limits\n\nView your current resource limits:\n\n1. Navigate to **Account Limits**\n2. View limits for:\n   - VPS Instances\n   - Database Instances\n   - Cache Instances\n   - Firewalls\n   - SSH Keys\n   - Snapshots\n\n### Request Limit Increases\n\nNeed higher limits?\n\n1. Go to **Account Limits**\n2. Click **Request Increase**\n3. Select the resource type\n4. Enter desired limit\n5. Provide justification\n6. Click **Submit Request**\n\nRequests are typically reviewed within 24-48 hours.\n\n## Billing Information\n\nManage billing separately for each project:\n\n- Payment methods\n- Billing address\n- Tax information\n- Invoices\n\nSee [Billing & Payments](https://docs.danubedata.ro/billing-overview) for details.\n\n## Account Security Best Practices\n\n### Strong Authentication\n1. Use a strong, unique password\n2. Enable two-factor authentication\n3. Use a password manager\n4. Don't share your password\n\n### Session Management\n1. Log out from shared devices\n2. Review active sessions regularly\n3. Log out unused sessions\n4. Use secure networks\n\n### API Security\n1. Use API tokens instead of passwords\n2. Give minimum necessary permissions\n3. Rotate tokens regularly\n4. Monitor API usage\n5. Revoke suspicious tokens\n\n### Account Monitoring\n1. Review account activity regularly\n2. Check login notifications\n3. Monitor resource changes\n4. Review billing for unusual charges\n5. Keep contact email current\n\n## Troubleshooting\n\n### Can't Log In\n\n**Forgot password?**\n1. Click **Forgot Password** on login page\n2. Enter your email\n3. Check your email for reset link\n4. Create a new password\n\n**Lost 2FA device?**\n1. Click **Use Recovery Code** on 2FA page\n2. Enter one of your recovery codes\n3. Disable 2FA and re-enable with new device\n\n**Account locked?**\n- Too many failed login attempts lock accounts for 15 minutes\n- Contact support if you need immediate access\n\n### Email Not Received\n\nCheck:\n1. Spam/junk folder\n2. Email filters\n3. Email address is correct\n4. Wait a few minutes (delays can happen)\n\nStill nothing? Contact support.\n\n### Can't Enable 2FA\n\n1. Ensure your device clock is synchronized\n2. Try a different authenticator app\n3. Clear browser cache\n4. Try a different browser\n5. Contact support if issues persist\n\n## Support\n\nNeed help with your account?\n\n- **Support tickets**: Through the dashboard — the fastest route\n- **Email**: support@danubedata.ro\n\n## Next Steps\n\n- [Two-Factor Authentication Guide](https://docs.danubedata.ro/account-settings)\n- [API Documentation](https://docs.danubedata.ro/api-authentication)\n- [Billing Settings](https://docs.danubedata.ro/billing-overview)\n- [Project Management](https://docs.danubedata.ro/account-projects)\n\n","prev":{"title":"Connecting via MQTT & STOMP","slug":"queue-mqtt-stomp","url":"https://docs.danubedata.ro/queue-mqtt-stomp","markdown_url":"https://docs.danubedata.ro/queue-mqtt-stomp.md","json_url":"https://docs.danubedata.ro/queue-mqtt-stomp.json"},"next":{"title":"Projects (Teams)","slug":"account-projects","url":"https://docs.danubedata.ro/account-projects","markdown_url":"https://docs.danubedata.ro/account-projects.md","json_url":"https://docs.danubedata.ro/account-projects.json"},"index_url":"https://docs.danubedata.ro/index.json"}