Update basic information
1
Change username
In the Personal info section, click the edit button next to your username, enter a new username, and save.
2
Change password
In the Security section, click Change password. Enter your current password, then the new password, and confirm. Sessions on other devices are invalidated after the change.
3
Bind or change email
In the email section, click Bind or Change email. Enter the email address, click Send verification code, and submit the code you receive.
Enable two-factor authentication (2FA)
Two-factor authentication adds a second layer beyond your password. At sign-in you also enter a rotating code from a mobile authenticator app such as Google Authenticator or 1Password.1
Open 2FA settings
Find Two-factor authentication in the right-hand card and click Enable.
2
Scan the QR code
Use an authenticator app to scan the QR code shown on the page, or enter the key manually.
3
Enter the code to confirm
Enter the six-digit code from your authenticator and click Confirm to finish binding.
4
Save recovery codes
The system shows a set of recovery codes one time. Save them somewhere safe. If you lose your authenticator, you can use a recovery code to sign in and disable 2FA.
Register a Passkey for passwordless sign-in
Passkeys let you sign in with fingerprint, face, or your device PIN. They are more secure and faster than passwords.1
Open Passkey settings
Find the Passkey sign-in section in the right-hand card and click Bind Passkey.
2
Complete registration on your device
Follow the browser prompt to register using your device’s fingerprint, face, or security key (for example a YubiKey).
3
Sign in with a Passkey
Next time, choose Sign in with Passkey on the sign-in page.
Bind a third-party account
If you already have a password-based account, you can link one or more third-party accounts (GitHub, Discord, and others) and use either sign-in method afterwards.1
Open the binding UI
In the Settings section of your profile, find the provider you want to bind.
2
Complete OAuth authorization
Click Bind to jump to the provider’s authorization page. Approve the request and you are redirected back with the binding complete.
You can unbind third-party accounts at any time. To avoid losing sign-in access, keep at least one working sign-in method (a password and ideally at least one bound third-party account).