Account Security Best Practices
Protect your BiomeHosting account with these security recommendations.
Strong Passwords
Password Requirements
- Minimum 12 characters
- Mix of uppercase and lowercase letters
- Include numbers and special characters
- Avoid common words or phrases
- Don't reuse passwords from other sites
Creating a Strong Password
- Use a password manager
- Generate random passwords
- Use passphrases (multiple words)
- Include special characters
- Make it unique to BiomeHosting
Two-Factor Authentication (2FA)
2FA is not currently available. For account security, we recommend using a strong, unique password. If you need assistance with account security, please contact our support team.
Authenticator Apps
- Google Authenticator: Popular and reliable
- Authy: Cloud backup available
- Microsoft Authenticator: Integrated with Microsoft accounts
- 1Password: Password manager with 2FA
Backup Codes
- Save backup codes in secure location
- Use if you lose access to authenticator
- Each code can only be used once
- Generate new codes if needed
Account Recovery
Email Verification
- Verify your email address
- Keep email account secure
- Use email for password resets
- Update email if it changes
API Keys
Secure API Keys
- Generate strong API keys
- Don't share API keys publicly
- Rotate keys regularly
- Revoke unused keys
Key Permissions
- Only grant necessary permissions
- Use read-only keys when possible
- Monitor key usage
- Revoke compromised keys immediately
Login Security
Login Security
- Review login history regularly
- Report suspicious activity
- Change password if compromised
Session Management
- Log out when done
- Don't stay logged in on shared computers
- Use private browsing when appropriate
- Clear browser cache regularly
Phishing Protection
Recognizing Phishing
- Check sender email address
- Look for spelling errors
- Verify URLs before clicking
- Don't enter password on suspicious sites
Reporting Phishing
- Forward phishing emails to support
- Don't click suspicious links
- Report fake BiomeHosting websites
- Warn other users if possible
Regular Security Checks
Monthly Checklist
- [ ] Review login history
- [ ] Check for unknown devices
- [ ] Update password if needed
- [ ] Review API keys
- [ ] Verify email address
- [ ] Check payment methods
If Your Account is Compromised
- Change Password Immediately
- - Use a completely new password
- - Don't reuse old passwords
- Revoke All Sessions
- - Log out from all devices
- - Revoke API keys
- Contact Support
- - Report the incident
- - We'll help secure your account
- - Review account activity
- Enable 2FA
- - Add extra security layer
- - Prevent future compromises
Stay safe! For security concerns, contact support immediately.
