Account & security

Sessions, sign-in history and "This wasn't me

See every device signed in to your account, sign any of them out, read 180 days of sign-in history, and lock your account down if someone got in.

1 min readUpdated 27 Sept 2026

Your devices

Settings → Sessions lists every signed-in device: browser, system, the full IP address, an approximate location, how it signed in and with which second factor. Use Sign it out on any of them, or Sign out other devices.

Sign-in history

Below your devices is 180 days of history: sign-ins, failed attempts, lockouts, password and email changes, passkeys and two-factor changes. Filter by Sign-ins, Failed or Changes.

New-device alerts

When a browser that has never signed in to your account does — or you sign in from a new country — you get an alert in the app and by email. The email has a This wasn't me button.

"This wasn't me"

From Settings → Sessions or the email, it:

  • signs out every session (and removes their push notifications),
  • stops running code and closes live editing sessions,
  • starts a password reset on this browser.

Email links open a page that asks before acting, because some email scanners open every link.

Session length

In Settings → Security choose how long a session lasts without use — 30 days, 7 days, 1 day, or until the browser closes.

Still have a question about this?

Assist answers from this article — in any language.

More in Account & security