Skip to main content

Account and password

Your DZBuild account is separate from your store. You sign in with an email address and a password, and the same account can own several stores. Everything below is on one page: /dashboard/account.

What is on the account page

CardWhat you can do
Account informationSee and change your email and phone number; see your registration date (read-only)
Change nameUpdate your first and last name, once per week
Change passwordReplace your password after confirming the current one
Two-factor authenticationTurn on a code from an authenticator app, and manage backup codes
Connected devicesSee the devices signed in to your account and end any session
Quick linksStore settings, notification settings, sign out

Your store name, logo and storefront settings are not here; they live in /dashboard/settings.

If you signed up with Google or Facebook

When you create an account with the Google or Facebook button, DZBuild generates a password for you and emails it to the same address, in a welcome message sent the moment the account is created. That password is what the page means by current password.

If you cannot find it, search your mailbox for dzbuild and check the spam folder. If it is nowhere, use Forgot password on the login page and set a new one; you can keep using the Google or Facebook button afterwards.

Changing your password

On /dashboard/account, fill the Change password card: current password, new password, confirmation. The new password must be at least 8 characters, and the two fields have to match.

When it is saved, DZBuild signs out every other device on your account and keeps the browser you are working in. You also get an email confirming the change, with the time and the IP address it came from. If that email arrives and it was not you, reset the password immediately and end the sessions you do not recognise.

Resetting a forgotten password

Use Forgot password on the login page, enter your account email, and pass the anti-bot check. If the address belongs to an active account, a reset link is sent to it; the page shows the same message either way, so it never reveals whether an address is registered.

The link has three rules that explain almost every "this link is invalid" error:

  • it is valid for 1 hour
  • it works once, and stops working after the password is changed
  • asking for a new link cancels the previous one, so always click the newest email

Finishing a reset signs out every session on the account, including devices you had marked as trusted for two-factor authentication. Sign in again on each device afterwards. If you no longer have access to the account email, contact support before changing anything else.

Changing your email or phone number

Both changes start the same way: click Edit on the row, type the new value, and enter your current password. DZBuild then sends a confirmation link, valid for 60 minutes, and the change only applies when you open it. While it is pending, the row shows a waiting notice with the new value.

Where the link is sent differs, on purpose:

  • Email change goes to the new address, so you prove the mailbox is yours. Because the email is your login identifier, confirming it signs out every other device; the browser that opened the link stays in, and you sign in with the new address from then on.
  • Phone change goes to the email already on the account, so the account owner approves it. The number is accepted as 8 to 15 digits, with an optional leading +.

You can start at most 3 of these requests every 10 minutes. If the new email already belongs to another DZBuild account, the link fails at the moment you open it and nothing changes.

Changing your name

The Change name card updates the first and last name shown in the dashboard and on invoices. It is limited to one change per week; until the week is up, the card shows how many days are left instead of the form.

Two-factor authentication

Two-factor authentication (2FA) is available on every plan, and each person turns it on for their own account. A store owner cannot enable it for a team member or require it.

  1. Open the Two-factor authentication card and click Enable 2FA.
  2. Scan the QR code with an authenticator app such as Google Authenticator or Authy, or type the manual key.
  3. Enter the 6-digit code the app shows to confirm.
  4. Save the 8 backup codes. They are displayed once, each one works a single time, and they are your way back in if you lose the phone.

At the next sign-in the login page asks for the code, with a Trust this device checkbox that skips the code on that browser for 30 days. You can switch the field to a backup code from the same page. Backup codes can be regenerated at any time from the account page, which replaces the old set. Turning 2FA off asks for your password and a valid code.

If you lose the authenticator app and all your backup codes, contact support with proof of identity; there is no self-service way around it.

Devices signed in to your account

The Connected devices card lists the sessions currently signed in, with the one you are using marked as this device. End session cuts one of them off immediately, and Sign out all other devices clears everything except the browser you are in. Use it after signing in on a shared computer, or the moment something looks wrong.

Deleting a store or your account

Neither deletion is self-service, and support handles both:

  • One store, keeping the others on the same account: ask support. It is the same request described in Multi-store.
  • The whole account: ask support and attach a screenshot of your account settings page showing the email address, and the phone number if you have one, linked to the account. The team confirms the request with you in the ticket, and the account is fully deleted after 30 days.

Export anything you want to keep before you ask, including order and customer data.

Frequently asked

Q: Can I sign in with my phone number instead of my email? A: No. The email address on your account is the login identifier; the phone number is contact information only.

Q: I signed up with Google and I never chose a password. What do I enter? A: The one that was emailed to you when the account was created. Search your mailbox for dzbuild, spam folder included, or reset it with Forgot password.

Q: Why was I signed out everywhere after changing my email? A: Because the email is what you sign in with. Changing it invalidates the other sessions on purpose; sign in again with the new address.

Q: Does DZBuild send a code by SMS? A: No. Two-factor codes come from an authenticator app on your phone, and every confirmation link is sent by email.

Q: Can two people share one account? A: Do not. Invite them instead with their own account and scoped permissions; see Team and permissions.