Protect your Scriboflow account

Follow practical steps to protect your account and respond to unexpected access.

Last updated August 25, 2026

A few account practices can reduce the risk of someone gaining access to your organisation's contracts.

Protect your sign-in

  • Use a password that you do not use for another service.
  • Keep sign-in magic links and authenticator codes private.
  • Enable multi-factor authentication for an additional sign-in step.
  • Check the address of the page before entering your password or authenticator code.
  • Do not share a Scriboflow account. Invite each teammate with their own email address instead.

If you set a Scriboflow password, it must contain at least eight characters, including at least one letter and one number.

If you suspect unexpected access

  1. Open Settings and select Profile.
  2. Change your password.
  3. Enable multi-factor authentication if it is not already enabled.
  4. Open Settings > Organisation and review members and pending invitations.
  5. Remove unexpected members or revoke unexpected invitations if your role allows it.
  6. Contact Scriboflow and describe what you noticed and when.

Never include your password, magic link, authenticator setup key or six-digit authenticator code in a support message.

Support

Still need help?

Send us your question and the Scriboflow team will help you find the next step.

Contact Scriboflow