Your Bokko account protects business and guest data, so sign-in hygiene matters. The dashboard supports email/password and social sign-in (Google, Apple). Under Settings → Security you can manage your password, enable two-factor (TOTP) authentication, and revoke active sessions. Sensitive account actions may also require recent reauthentication and/or a TOTP code.
How sign-in works
- Email and password sign-in is supported.
- Google sign-in is supported.
- Apple sign-in may also be available depending on the current configuration.
Manage your password from the dashboard
- Send a password reset email — Under Settings → Security you can have Bokko email a reset link to the address linked to your account.
- Change your password in-app — If you signed in with email and password, you can change your password directly under Settings → Security (Bokko may ask for recent reauthentication).
- Social sign-in (Google/Apple) — If you registered with SSO, your password lives in your Google or Apple account; there is no Bokko-side password to change.
Two-factor authentication (TOTP / 2FA)
Under Settings → Security you can enable TOTP-based two-factor authentication (Google Authenticator, 1Password, Authy, etc.). Once enabled, Bokko may ask for your current 6-digit code both at sign-in and before sensitive actions (such as deleting your account or cancelling a deletion request). Backup codes can be regenerated.
Revoke active sessions
Under Settings → Security, the Sessions block has a Sign out everywhere button that signs out every device currently signed in to your account in one step. If you lose a device or notice suspicious activity, start here and then change your password.
Recent reauthentication
Before high-impact actions (such as deleting your account, changing your password, or disabling 2FA) Bokko can ask you to confirm your current password again — and, if it is enabled, your TOTP code. This is a security check that applies even when you are already signed in.
Security tips
- Do not share your sign-in credentials with others.
- Use a unique, strong password if you sign in with email and password.
- Enable TOTP-based two-factor authentication under Settings → Security.
- Protect your Google or Apple account as well (strong password + 2FA) if you use social sign-in.
- If you notice suspicious access: revoke all sessions, change your password, and contact support.