Account Security: SSO, 2FA & Passkeys
How to secure your Seayora account with single sign-on, two-factor authentication, device verification, and passkeys (WebAuthn).
Your account holds financial and personal data, so Seayora offers several layers of protection. Turning them on takes minutes and dramatically reduces the risk of unauthorized access.
Sign-in options
- Email and password — use a strong, unique password.
- Single sign-on (SSO) — sign in with a supported identity provider such as Google.
- Passkeys (WebAuthn) — sign in with your device’s biometrics or security key, with no password to phish.
Two-factor and device verification
Enable two-factor authentication so a password alone isn’t enough to sign in. New or unrecognized devices may require an extra verification step, and you’ll be notified of logins from unfamiliar locations.
Good habits
- Never share your credentials or one-time codes.
- Review active sessions and sign out devices you don’t recognize.
- Report any suspected unauthorized access to Seayora immediately.
You are responsible for safeguarding your credentials; see the Terms of Service and Security page for details.
Session and device management
From your security settings you can see active sessions and connected devices, and sign any of them out remotely. Do this whenever you use a shared or public computer, or if you no longer recognize a listed device.
If you suspect a compromise
- Change your password immediately and sign out all other sessions.
- Enable two-factor authentication if it isn’t already on.
- Review recent account activity for anything unfamiliar.
- Contact Seayora support so we can help secure the account.
Frequently asked questions
Is two-factor authentication required?
It’s strongly recommended for every account and required for certain sensitive roles and actions. Even where it’s optional, turning it on is one of the single most effective things you can do to protect your account.
What’s the difference between a passkey and a password?
A passkey uses your device’s built-in biometrics or a hardware security key instead of a typed secret, so there’s nothing to phish or reuse across sites. It’s generally more secure and faster to use than a password.
Will I be notified of a new device login?
Yes — logins from an unrecognized device or unfamiliar location trigger a notification so you can confirm it was you, or act quickly if it wasn’t.
What should I do before selling or giving away a device I used to sign in?
Sign out of that device from your active-sessions list and reset your password if you’re unsure whether it’s fully wiped, so a future owner can’t reuse a lingering session.