Reset a forgotten password
- Open the sign-in page for the game panel or billing portal.
- Use the password-reset option for that service.
- Open the reset message only from the email account connected to Purpify.
- Choose a new password that you do not use on another website.
- Update your password manager and remove obsolete saved credentials.
Enable two-factor authentication
If two-factor authentication is available in your account security settings:1
Start two-factor setup
Open your account security settings and choose the available two-factor authentication option.
2
Register your authenticator
Scan the displayed QR code with a trusted authenticator app or enter the setup key manually.
3
Verify a code
Enter a current code to finish activation.
4
Store recovery codes
Save recovery codes in a password manager or another private location separate from the device running the authenticator.
If no two-factor option appears, use a unique password and protect the connected email account with two-factor authentication.
Protect panel and SFTP credentials
- Add people through Subusers instead of sharing your account.
- Use SFTP only with the host, port, and username shown by the game panel.
- Do not place passwords, database credentials, or tokens in screenshots, public logs, or Discord messages.
- Store secrets in a password manager rather than a shared text file.
- Review downloaded plugin, mod, and add-on files before giving them access to server secrets.
- Sign out on shared devices and do not let an SFTP client save credentials there.
Handle a compromised account
1
Secure your email first
Change the email password, enable its two-factor authentication, and review its active sessions and forwarding rules.
2
Reset Purpify passwords
Reset the affected game-panel or billing password from a trusted device. End other sessions when that option is available.
3
Remove unknown access
Review shared server users and remove accounts you do not recognize. Rotate database passwords, API keys, plugin tokens, and webhooks that may have been exposed.
4
Preserve evidence
Record unexpected invoices, file changes, console commands, user accounts, and approximate times before restoring data.
5
Contact support
Open a private support ticket from the Purpify website. Include your account email, affected service, approximate time, and evidence. Never include your password or authentication codes.
