Account Security
How to keep your Kumari AI account secure and what to do if something looks wrong
Your account security is your responsibility as much as ours. This page covers how to change your password while logged in, how to manage active sessions, and what to do if you suspect unauthorised access.
Managing Active Sessions
Kumari AI tracks active login sessions across your devices. To review or revoke them:
Go to Account Settings → Security
Click your profile avatar and select Account Settings, then open the Security tab.
View active sessions
You'll see a list of devices and locations where your account is currently signed in.
Revoke a session
Click Sign Out next to any session you don't recognise or no longer use. To sign out of everything at once, select Sign Out All Devices.
I Think Someone Accessed My Account
If you notice activity you don't recognise unusual conversations, credit usage you didn't trigger, or a login from an unfamiliar location take these steps immediately:
Change your password right away
Go to Account Settings → Security and update your password. This invalidates all existing sessions.
Sign out all devices
On the same Security page, click Sign Out All Devices to force any active unauthorised session to end.
Check your email for unexpected activity
Look for any password reset or login emails you didn't initiate. If found, your email account may also be at risk secure that too.
Contact support
Reach out to support@kumari.ai with details of what happened. We can investigate and help restore your account if anything was modified without your consent.
I Received a Password Reset Email I Didn't Request
This means someone entered your email address on the reset form intentionally or by mistake. Your account is not compromised by this alone. The reset link only works if someone physically clicks it and completes the form.
You can safely ignore the email. If this happens repeatedly, contact support@kumari.ai.
Best Practices
- Use a unique password don't reuse passwords from other services
- Use a password manager to generate and store strong credentials
- Regularly review your active sessions and revoke any you don't recognise
- Never share your login credentials or reset links with anyone