Ensuring Security for Your TokenSpot Account
If you detect an unauthorized sign-in attempt, an active session from an unfamiliar device or other suspicious activity, we recommend that you check access to your account and its security settings as quickly as possible.
Below you will find step-by-step instructions on making sure you still have control over your TokenSpot account.
Step 1. Make sure you can log in to your TokenSpot account
Try logging in to your TokenSpot account using your browser.
- If you can log in, proceed to Step 2.
- If you cannot log in via browser but still have access to your account using the TokenSpot app on at least one of your devices, proceed to Step 2.
- If you can neither log in to your account via browser nor access it using the TokenSpot app, contact TokenSpot Customer Support (ссылка) for assistance as quickly as possible.
Step 2. Check active sessions
You can use your Profile page to view active sessions and devices that have access to your TokenSpot account.
Follow these instructions:
-
- Log in to your account on TokenSpot.com.
- Go to Profile (upper-right corner).
- Open Sessions.
- View devices connected to your account.
If you recognize all of the devices on the list, no additional action is required.
If you spot a device/session that you do NOT recognize, do the following:
- Click on ‘End Session’ next to the unknown device/devices.
- Reset your password and enable two-factor authentication following the instructions in Step 3.
Step 3. Reset your password and enable twofactor authentication
Resetting Your Password
If you detect an unauthorized session, or suspect your login data might have been compromised, you need to reset your password using your Profile page.
- Go to Account Information.
- Open Security settings, then go to Password.
- Click on ‘Reset.’
- Follow on-screen instructions to set a new password.
Your new password must:
- be complex,
- be different from your previous password,
- not be used on other services or platforms,
- not contain any obvious combinations, simple character sequences or personal data.
If you were using your compromised password on other websites or apps, we recommend that you reset it there, too.
Enabling Two-Factor Authentication
Two-factor authentication (2FA) provides an additional layer of protection for your account by requesting a onetime code in addition to entering your password for signing in. You will need to install an authenticator app (Google Authenticator, Authy, etc.) on your device for generating one-time passwords.
After you reset your password and enable 2FA, you may need to log in to your account on your devices once again using your new credentials.
Additional Security Feature: Login Confirmation
You can activate additional protection for your account by setting it to request confirmation every time you log in.
Go to Profile → Sessions and check the Browser Authorization box.
With this feature enabled, our platform will send you a confirmation request every time someone tries to log in to your TokenSpot account. This way, if someone else tries to log in to your account, you will be the first to know.
Additional Security Recommendations
Even if you do not detect any suspicious activity targeting your account, we recommend that you regularly check your security settings and follow these basic rules:
- Regularly check active sessions on your account using your TokenSpot Profile, and terminate any suspicious sessions and devices that you no longer use.
- Use a strong, unique password for your TokenSpot account, and do not reuse it on other services.
- Enable twofactor authentication (2FA).
- Pay attention to notifications from TokenSpot regarding login attempts and other security-related events.
Protect Devices You Use to Trade on TokenSpot:
- Keep your device’s operating system, browser and applications updated.
- Use builtin operating system protection.
- Regularly scan your device for malware using a reliable antivirus.