Password and Security Settings

Secure your DealerBe account with strong passwords and advanced security features

🔐 Account Security Overview

Critical protection: Your account contains sensitive business and financial information

Multi-layer security: Combine strong passwords with additional security measures

Regular maintenance: Update passwords and review security settings periodically

Industry compliance: Meet automotive industry security standards

🔑 Password Management

Changing Your Password

1. Navigate to Account Settings from your dashboard

2. Select "Security" from the settings menu

3. Click "Change Password" in the password section

4. Enter current password for verification

5. Create new password meeting security requirements

6. Confirm new password and save changes

Strong Password Requirements

Minimum 12 characters (recommended 16+)

Mix of uppercase and lowercase letters

Include numbers and special characters

Avoid personal information (names, dates, addresses)

Unique to DealerBe - don't reuse other passwords

Consider using a passphrase with random words

🛡️ Two-Factor Authentication (2FA)

Setting Up 2FA

1. Go to Security Settings in your account

2. Enable Two-Factor Authentication

3. Choose your method: SMS, authenticator app, or email

4. Follow setup instructions for your chosen method

5. Save backup codes in a secure location

2FA Methods

📱 Authenticator apps: Google Authenticator, Authy (most secure)

📧 Email codes: Sent to your registered email

📞 SMS codes: Text messages to your phone

🔑 Backup codes: One-time use emergency codes

🔍 Login Activity Monitoring

Viewing Login History

Access location: Security Settings → Login Activity

Information shown: Date, time, IP address, device, location

Review frequency: Check monthly or after suspicious activity

Alert setup: Enable notifications for new device logins

⚠️ Suspicious Activity Signs

• Logins from unfamiliar locations

• Access from unknown devices

• Login attempts at unusual times

• Multiple failed login attempts

• Changes you didn't make to your account

• Unexpected password reset emails

📧 Email Security Settings

Email Management

Primary email: Main contact for account communications

Backup email: Secondary email for account recovery

Email verification: Confirm ownership of new email addresses

Change notifications: Alerts sent when email is updated

Security Notifications

Login alerts: New device or location notifications

Password changes: Immediate notification of updates

Security settings: Changes to 2FA or security features

Suspicious activity: Potential security threats

🔐 Session Management

Active Sessions

View active sessions: See all devices currently logged in

Session details: Device type, browser, location, last activity

Remote logout: End sessions on other devices

Logout all: End all sessions except current one

✅ Session Best Practices

• Always log out on shared or public computers

• Review active sessions monthly

• End sessions on old or unused devices

• Use "Remember Me" only on personal devices

• Set automatic logout for inactive sessions

🚨 Account Recovery

Password Recovery Process

1. Click "Forgot Password" on the login page

2. Enter your email address associated with the account

3. Check your email for reset instructions

4. Click the reset link (valid for 24 hours)

5. Create a new password meeting security requirements

Account Lockout

Automatic lockout: After 5 failed login attempts

Lockout duration: 30 minutes for security

Early unlock: Use password reset to unlock immediately

Support contact: Contact support for persistent issues

🛠️ Advanced Security Features

IP Restrictions

Whitelist IPs: Restrict login to specific IP addresses

Office networks: Limit access to business locations

VPN detection: Optional blocking of VPN connections

Geographic limits: Restrict access by country/region

Device Management

Trusted devices: Mark frequently used devices as trusted

Device limits: Maximum number of concurrent devices

New device alerts: Notifications for unrecognized devices

Device removal: Revoke access for lost or stolen devices

📅 Security Maintenance Schedule

Regular Security Tasks

Monthly Tasks

• Review login activity

• Check active sessions

• Update recovery information

• Test 2FA functionality

Quarterly Tasks

• Change password

• Review security settings

• Update backup codes

• Audit device access

📞 Security Support

Questions about security settings or need help with account access?