Sign-in and security
How you sign in to SendBeam, how to reset a password, and how to protect the account with an authenticator app.
One SendBeam login can hold several workspaces, so your sign-in details belong to you rather than to any one workspace. This page covers signing in, resetting a forgotten password, and adding a second step with an authenticator app. All of it lives under Account settings → Security, reached by clicking the account name at the foot of the sidebar.
Signing in
Go to the sign-in page and enter the email address you registered with. SendBeam then offers two ways to prove it is you:
- Your password — type it and click Sign in.
- A one-time link by email — click Email me a one-click sign-in link and SendBeam sends a sign-in link to that address. Open it and you are signed in, without typing a password. Useful on a machine where you do not want to type one, and the way back in if your password manager is on the other device.
Signing out is a button in the sidebar, under your account name.
If you forget your password
- On the sign-in page, click Forgot password?.
- Enter your email address and click the button. SendBeam emails you a six-digit code.
- Type that code on the page that is waiting for it, along with the new password you want (at least 8 characters), and save.
- You are told the password has been updated, and can sign in with it straight away.
The code is sent to the address on the account and nowhere else, so keep access to that mailbox. If the email does not arrive, check the spam folder and ask for another one.
Two-factor authentication
Two-factor authentication (2FA) asks for a six-digit code from an app on your phone in addition to your password, so that knowing the password is not enough to get into the account. SendBeam uses the standard authenticator (TOTP) method, which works with Google Authenticator, 1Password, Authy, or any other app that shows a rolling six-digit code. It is optional, and we recommend it for anyone who can send email to your audience.
Setting up an authenticator app
- Open Account settings → Security and click Set up authenticator.
- Scan the QR code with your authenticator app. If you cannot scan — the app is on the same device, say — use Can't scan? and type the key shown beside the code into the app by hand.
- The app starts showing a six-digit code for SendBeam. Enter the current one and click Verify and switch on.
- The Security page now shows On. If the code was not accepted, a fresh QR code is offered so you can try again — an authenticator that is a little out of step usually just needs its clock set to update automatically.
Signing in once it is on
After your password, SendBeam asks for the code from the app before it lets you in. Open the app, read the current six digits and enter them. The same screen offers Sign in as a different user if you reached it with the wrong account.
Turning it off
On the Security page, enter the code your app is showing now and click Remove. The current code is required on purpose: taking the second step off is exactly what someone who had stolen a session would want to do, and asking for the code means they cannot. You are asked to confirm, and can enrol again at any time.
If you lose the device
Get in touch through the contact form and we will help you back into the account; then you can set the authenticator up again on the new device.
Whose settings these are
Security is part of account settings, not workspace settings, and it only ever shows your own sign-in. A workspace admin cannot see, change or switch off another person's password or authenticator — not from the Team page and not from anywhere else. What an admin can do is take someone's access to the workspace away: see Team management.
Roles and what they can change
Each workspace has three roles: owner, admin and member. Admins can do everything members can, plus manage the team, sender details and sending domains, API keys, webhook endpoints and the workspace export. The owner — exactly one per workspace, holding an admin seat — is additionally the only person who can delete the workspace, change the account's plan or open the billing portal, and can transfer ownership to another member. Roles are per workspace, so the same login can be an admin in one workspace and a member in another.
None of those roles reaches your sign-in. Your password and your authenticator are yours in every workspace you belong to, and they follow your login when you are invited to another one. See Team management for what each role can do, and Settings and workspaces for the rest of the settings.