# My account: profile, appearance and security

<Lead>
In the **Account** area (Konto) you manage everything that belongs to you as a person: profile, appearance, security, your own usage and your workspaces. These settings belong to your account and apply in all workspaces.
</Lead>

## Account or workspace settings?

The account area is available to every role and only affects you. The workspace settings under **Settings**, by contrast, affect the whole office and are open to owners and admins only. More: [Workspace and roles](/help/grundlagen/workspace-und-rollen).

## Profile

Under **Account > Profile** you maintain your name, contact details and regional settings.

<DefinitionList>
  <DefItem term="Profile picture">
    JPG, PNG or WebP, up to 5 MB. The picture is displayed with a round crop; during upload you choose the crop yourself by dragging and zooming. Without a picture the platform shows your initials.
  </DefItem>
  <DefItem term="Name and salutation">
    First and last name as they appear in team, activity and assistant. The salutation choice makes sure the assistant and emails address you correctly.
  </DefItem>
  <DefItem term="Email">
    Your sign-in address. The profile only displays it; you change it under **Account > Security**. It is not a master datum like your name but the key to your account, so changing it takes more than a text field.
  </DefItem>
  <DefItem term="Phone and job title">
    Optional, for team contact: your phone number with country prefix and your role in the team (pick from the list or type freely).
  </DefItem>
  <DefItem term="Language and time zone">
    The interface language and the time zone that governs every time shown to you.
  </DefItem>
</DefinitionList>

<Info title="Managed accounts">
If your account is managed by the workspace and your admin maintains job title or phone number centrally, those fields are read-only for you. Changes are then made by your admin under **Settings > Members**.
</Info>

## Appearance

Under **Account > Appearance** you configure how the interface behaves for you. All switches take effect immediately, without an extra save.

<DefinitionList>
  <DefItem term="Light or dark">
    Light, dark or auto, each per device. Auto follows the system setting. The switch **Auf allen Geräten anwenden** (apply on all devices) binds the choice to your account: your next login picks it up automatically.
  </DefItem>
  <DefItem term="Reduce motion">
    Calms the interface and turns animations off. Applies to your account, in addition to the system setting.
  </DefItem>
  <DefItem term="Start page after login">
    Where the platform takes you after signing in.
  </DefItem>
  <DefItem term="Show small credit amounts">
    Off by default. When enabled, the interface also shows amounts below 10 credits, such as the cost line under assistant replies. Billing is always correct either way; the display is pure information. Background: [Understand and top up credits](/help/howto/topup-credits).
  </DefItem>
  <DefItem term="Floating assistant">
    Shows the assistant button on every page. One click opens a docked chat panel that knows the current page. When off, the assistant stays reachable via the Assistant area.
  </DefItem>
</DefinitionList>

## Security

Under **Account > Security** you find:

- **Change email:** the address you sign in with. See below.
- **Change password:** runs securely via the sign-in service. You enter your current and your new password and confirm with your second factor.
- **Two-factor authentication:** connect an authenticator app, generate recovery codes and manage trusted devices. Covered in detail in [Secure your sign-in](/help/howto/account).
- **Sign-in history:** the most recent sign-ins for your address, each marked as successful or failed. If you spot unusual sign-ins: change your password immediately.
- **Security activity:** a tamper-proof log of security-relevant events, in both directions. It shows what you did yourself (data export, requested account deletion) and what your office's administration changed about your access (password reset, sign-in address changed, signed out everywhere). Changes made by someone else are marked **durch die Verwaltung**. Entries cannot be altered afterwards.

<Info title="Honestly labeled: these building blocks are coming">
The overview of active sessions and connected accounts (Google, Microsoft, Apple) are visible on the page but marked as **Folgt** (coming) and not yet available.
</Info>

## Changing your email address

Your sign-in address is the key to your account. It carries not only the sign-in but every way back in: forgotten password, sign-in code, confirmation codes. Changing it changes all of that at once, which is why we ask for more than usual.

### How it works

<Steps>
  <Step title="Enter the new address and your password">
    Under **Account > Security**, choose **Change email**. You enter the new address and confirm with your current password.
  </Step>
  <Step title="Enter the code sent to the new address">
    We send a six-digit code to the new address. That proves it exists and belongs to you. Without this step a typo would lock you out of your own account.
  </Step>
  <Step title="Confirm with your second factor">
    If you use an authenticator app or the email code as your second factor, it is asked for here. Only then is the new address applied.
  </Step>
</Steps>

Your current address stays active until the last step. After the change we sign you out on all other devices; the session you are working in stays.

### If that was not you

As soon as someone requests a change, a message goes to your **previous** address, before anything changes. It contains a link that stops the request.

The same link also undoes the change after it has been applied. It stays valid for **30 days** and works without signing in, because whoever needs it cannot reach the account any more. One click restores the old address and ends every session of the account. After that you set a new password.

<Warning title="Do not delete that email">
Until you are sure the change came from you, that message is your way back. It is the only place where an unwanted address change can still be stopped.
</Warning>

### Employee accounts

If your access was created by your office, the sign-in address belongs to the workspace rather than to you personally. The path is then closed by default, and the page says so. Your office's administration changes the address under **Settings > Members**; both addresses receive a message about it afterwards.

You still change your own password in that case.

More on the platform's security concept: [Data storage and security](/help/grundlagen/datenhaltung-und-sicherheit).

## Usage & credits

Under **Account > Usage & Credits** you see your personal usage in the current workspace: your assigned allowance (if the owner set one), your daily and weekly limits, and your latest credit movements. Plan and invoices are managed by the workspace owner.

## Workspaces

Under **Account > Workspaces** you manage your memberships:

- **Overview:** every workspace you are a member of, with your role in each.
- **Default workspace:** define which workspace is your starting point after login.
- **Invitations:** accept or decline open invitations here.
- **Leaving:** you can leave a workspace at any time and lose access to it.

<Warning title="Sole owners cannot simply leave">
If you are the sole owner of a workspace, you first have to transfer ownership or delete the workspace before you can leave it.
</Warning>

## Frequently asked questions

<Faq>
  <FaqItem q="Does my light or dark mode apply to the whole team?">
    No. Light or dark is your personal choice per device. The workspace's platform design is chosen centrally by owners and admins and applies to all members.
  </FaqItem>
  <FaqItem q="Why can I not change my job title or phone number?">
    Your account is managed by the workspace and your admin maintains these fields centrally. Contact your administrators.
  </FaqItem>
  <FaqItem q="Is two-factor authentication available yet?">
    Yes. Under **Account > Security** you can connect an authenticator app, generate recovery codes and manage trusted devices. The walkthrough lives in [Secure your sign-in](/help/howto/account).
  </FaqItem>
</Faq>
