Review active devices and sign out sessions you do not recognize. Keep sign-in methods current, enable the strongest supported multi-factor option, and remove a passkey or device when it is no longer controlled by you.
Workspace owners can apply shared policies such as session duration, credential hygiene, release channel, and API-key controls. Evaluate the effect on integrations and automation before tightening a policy.
Treat an unfamiliar session, unexpected credential change, or unexplained role change as a security event. Revoke access first, then review activity and affected integrations.
⌘I
Assistant
Responses are generated using AI and may contain mistakes.