Account Security and Settings
Last updated: October 2024•4-6 min read•Difficulty: Intermediate
Keep your FeatureShark account secure and properly configured with these essential security practices and settings.
Password Security
Creating a Strong Password
Your password should:
- Be at least 8 characters long
- Include uppercase and lowercase letters
- Contain numbers and special characters
- Avoid common words or personal information
Changing Your Password
- Go to Account Settings → Security
- Click Change Password
- Enter your current password
- Enter and confirm your new password
- Click Update Password
Password Requirements
- Minimum 8 characters
- Maximum 100 characters
- Cannot reuse last 5 passwords
- Must be changed every 90 days (Enterprise only)
Two-Factor Authentication (2FA)
Enabling 2FA
- Navigate to Account Settings → Security
- Click Enable Two-Factor Authentication
- Choose your method:
- Authenticator App (recommended)
- SMS Text Messages
- Follow the setup instructions
- Save backup codes in a secure location
Using Authenticator Apps
Recommended apps:
- Google Authenticator
- Authy
- Microsoft Authenticator
- 1Password
Backup Codes
- Generated when you enable 2FA
- Use if you lose access to your device
- Each code can only be used once
- Generate new codes if you run out
Disabling 2FA
⚠️ Security Warning: Only disable 2FA if absolutely necessary.
- Go to Security Settings
- Click Disable 2FA
- Enter your password and current 2FA code
- Confirm the action
Login Activity
Monitoring Your Account
The Login Activity section shows:
- Recent login attempts
- IP addresses and locations
- Device and browser information
- Success/failure status
Suspicious Activity Signs
Watch for:
- Logins from unknown locations
- Failed login attempts
- Unfamiliar devices or browsers
- Login times that don't match your usage
Securing Compromised Accounts
If you suspect unauthorized access:
- Change your password immediately
- Enable 2FA if not already active
- Review team member access
- Check billing and usage logs
- Contact support for assistance
Account Information
Personal Details
Keep these updated:
- Full name
- Email address
- Phone number
- Time zone
- Language preferences
Updating Email Address
- Go to Account Settings → Profile
- Click Change Email
- Enter your new email address
- Verify the new email
- Confirm the change
Profile Picture
- Upload a custom image
- Supports JPG, PNG, GIF formats
- Maximum file size: 2MB
- Recommended size: 200x200 pixels
Team and Access Management
Team Member Roles
- Owner: Full account access
- Admin: Most permissions except billing
- Member: Standard user access
- Viewer: Read-only access
Inviting Team Members
- Go to Team Settings
- Click Invite Member
- Enter email address
- Select role and permissions
- Send invitation
Managing Permissions
Control what team members can do:
- View/edit projects
- Manage feature requests
- Access analytics
- Modify settings
- Invite other members
Removing Team Members
- Find the member in your team list
- Click Remove next to their name
- Confirm the action
- They'll lose access immediately
API and Integration Security
API Keys
- Generate keys in Integrations → API Access
- Each key has specific permissions
- Regenerate keys if compromised
- Delete unused keys regularly
Webhook Security
- Use HTTPS endpoints only
- Verify webhook signatures
- Implement rate limiting
- Monitor webhook logs
Third-Party Integrations
- Review connected services regularly
- Revoke access for unused integrations
- Check permissions granted to each app
- Monitor integration activity logs
Data and Privacy Settings
Data Export
- Export your data anytime
- Includes feature requests, votes, and comments
- Available in JSON or CSV format
- Processing time: 24-48 hours
Account Deletion
⚠️ Warning: This action cannot be undone.
To delete your account:
- Cancel any active subscriptions
- Export your data (if needed)
- Go to Account Settings → Delete Account
- Enter your password and confirmation text
- Click Delete Account Permanently
GDPR Compliance
- Request data export
- Ask for data deletion
- Update consent preferences
- Contact privacy@featureshark.com
Session Management
Active Sessions
View and manage:
- Current login sessions
- Device and location info
- Last activity timestamp
- Session duration
Ending Sessions
- Sign Out Everywhere: Ends all active sessions
- Individual Sessions: End specific sessions
- Useful if you lose a device
Session Security
- Sessions expire after 30 days of inactivity
- Renewed with each login
- Automatically ended on password change
Notifications and Alerts
Security Notifications
Receive alerts for:
- New device logins
- Password changes
- 2FA modifications
- Suspicious activity
Managing Notifications
- Go to Notification Settings
- Choose delivery methods:
- Email notifications
- In-app alerts
- SMS messages (if enabled)
- Select which events to monitor
Best Security Practices
Regular Maintenance
- Update passwords quarterly
- Review team access monthly
- Check login activity weekly
- Update contact information as needed
Device Security
- Use up-to-date browsers
- Enable automatic updates
- Don't save passwords on shared devices
- Log out when using public computers
Network Security
- Avoid public Wi-Fi for sensitive actions
- Use VPN when necessary
- Ensure HTTPS connection
- Be cautious of phishing attempts
Getting Security Help
If you have security concerns:
- Immediate threats: security@featureshark.com
- General questions: support@featureshark.com
- Privacy matters: privacy@featureshark.com
Our security team responds to urgent matters within 2 hours during business hours.
Was this helpful?
Still need help? Contact our support team