Security

How your team signs in, how long they stay signed in, and how clients reach your storefront

Sessions

A session always ends — whichever limit is hit first. Changing a password, deactivating a user or reassigning their role signs that person out of every device immediately; those are not optional.

Password Policy

Require letters and numbersRejects an all-letter or all-digit password
Require a symbolAt least one of !@#$%^&*
Block the last 5 passwordsStops a reset from landing back on the old password

Client Access

Clients never get a password. They open a private storefront with an access code, or a one-time link you email them.


Active Sessions

User Device IP Started Last Active
Supplier Admin Owner
Chrome · Windows 73.118.44.9 Today 08:12 Just now This device
Maria Garcia Sales Manager
Safari · macOS 73.118.44.31 Today 07:55 4 min ago
Carlos Mendez Warehouse
Chrome · Android 104.28.19.203 Today 06:40 22 min ago
Dana Whitfield Salesperson
Chrome · Windows 198.51.100.77 Yesterday 16:03 18 hours ago

Revoking signs that device out on its next request. Every sign-in, revoke and policy change here is written to the Activity trail.