Profile and Password
Both live on the workbench “Settings / Personal Center” page.
Changing your username and avatar
On the “Profile” tab you can edit your username and upload or remove an avatar.
The username cannot be empty and is limited to 100 characters. A confirmation appears once it saves.
Avatars support JPG / PNG / WebP / GIF, with a source image up to 10MB. After selecting a file you crop it to 1:1; the crop is a local preview only until you click “Save Changes”. After upload they appear immediately on the profile page and in the top-right user menu.
The email address is read-only here — the field is disabled and cannot be edited.
Changing your password
Change your login password on the “Security” tab. Three fields are required:
- Current password
- New password (at least 6 characters)
- Confirm new password
If the two new password entries do not match, the form reports it and does not submit.
On success:
- The form clears and tells you to sign in again
- All active sessions on this and other devices are invalidated
- You are redirected to the login page; use the new password to sign in
Online devices and recent logins
The “Security” tab shows two kinds of information:
- Online devices: still-valid login sessions (region and device info; raw IP is not shown). You can sign out one device or all other devices.
- Recent login records: login audit history (region / device info / time), not a precise online list.
When you select “Sign out other devices”:
- Other devices lose their login state immediately
- This device stays signed in (a new credential is issued)
Session lifetime matches the login credential (72 hours). Expired sessions no longer appear as online.
Signing out of the current account also revokes the server-side session, so a copied or leaked credential becomes unusable immediately after logout.
Notification preferences
The “Notifications” tab manages in-app and email preferences. Toggles save immediately.
There are currently no product, marketing, or weekly email jobs. These switches only save preferences for use when the corresponding email capability is introduced.
| Switch | Effect |
|---|---|
| System notifications | Controls whether system in-app notices (e.g. export completed) appear in the bell |
| Announcements | Controls whether admin announcements / banners are shown |
| Product emails | Saves the product-update email preference |
| Marketing emails | Saves the promotional email preference (off by default) |
| Weekly digest | Saves the weekly-email preference |
Security emails (verification codes and password resets) ignore these switches and are sent only when the corresponding security action is triggered.
Turning off an in-app switch immediately removes that class of notice from the unread badge and banners (no need to wait for polling).
Features not available yet
- Two-factor authentication (2FA)
- Email change