Your profile and security
Your name and photo, password, e-mail, devices and API keys.
Click your name in the top bar to open your profile. It has the public part (name, @handle, photo, bio, your public registries) and, for you, the Security & Password area.
Password and e-mail
- Change password: enter the current one and a new one of at least six characters. Your other sessions are signed out.
- Forgot password? On the sign-in page use Account Recovery: enter your e-mail or @handle and you get a one-time code (by e-mail on a Server with mail set up). Home, on the computer where it runs, shows the code on the screen.
- Change e-mail and delete account ask for your password and, when the server sends mail, also for a confirmation link.
Devices
The Devices tab lists every place you are signed in: browser and system, when you signed in and when it was last active. This device is marked. Sign out ends one session; “Sign out all other devices” ends the rest, at once.
API keys
If the operator has switched API keys on, you can issue keys for scripts and integrations: give the key a name, choose Read only or Read and write, set how long it lasts and confirm with your password. The key (starting cxk_) is shown once. Use it as “Authorization: Bearer cxk_…”. A key acts as you, within your rights, and can never manage accounts or issue other keys. Revoke stops it immediately.