Account & security
Sessions, sign-in history and "This wasn't me
See every device signed in to your account, sign any of them out, read 180 days of sign-in history, and lock your account down if someone got in.
Your devices
Settings → Sessions lists every signed-in device: browser, system, the full IP address, an approximate location, how it signed in and with which second factor. Use Sign it out on any of them, or Sign out other devices.
Sign-in history
Below your devices is 180 days of history: sign-ins, failed attempts, lockouts, password and email changes, passkeys and two-factor changes. Filter by Sign-ins, Failed or Changes.
New-device alerts
When a browser that has never signed in to your account does — or you sign in from a new country — you get an alert in the app and by email. The email has a This wasn't me button.
"This wasn't me"
From Settings → Sessions or the email, it:
- signs out every session (and removes their push notifications),
- stops running code and closes live editing sessions,
- starts a password reset on this browser.
Email links open a page that asks before acting, because some email scanners open every link.
Session length
In Settings → Security choose how long a session lasts without use — 30 days, 7 days, 1 day, or until the browser closes.
Still have a question about this?
Assist answers from this article — in any language.
Was this helpful?