Creating an Account
To create a new Featul account with email and password:- Navigate to the sign-up page
- Enter your email address
- Create a strong password that meets the requirements
- Click “Sign Up”
- Check your email for the verification OTP
- Enter the OTP to verify your email and complete sign-up
You’ll receive a welcome email after successfully creating your account.
Password Requirements
Featul enforces strong password requirements to protect your account:- Passwords must meet minimum length and complexity standards
- Common or compromised passwords are rejected
- Passwords are validated during sign-up and password changes
Email Verification with OTP
Featul uses one-time passwords (OTP) sent to your email for verification:Sign-Up Verification
When you create a new account:- An OTP is automatically sent to your email address
- Enter the 6-digit code in the verification form
- The code expires after a set period for security
- You can request a new code if it expires
Sign-In Verification
Every time you sign in:- After entering your email and password, an OTP is sent
- Enter the verification code to complete sign-in
- This prevents unauthorized access even if your password is compromised
OTP verification is required for both sign-up and sign-in to ensure maximum security.
Rate Limiting
To prevent abuse, OTP requests are rate-limited:- 5 OTP requests per minute
- If you exceed the limit, wait before requesting another code
Signing In
To sign in to your Featul account:- Navigate to the sign-in page
- Enter your email address
- Enter your password
- Click “Sign In”
- Check your email for the verification OTP
- Enter the OTP to complete sign-in
Password Reset
If you forget your password:- Click “Forgot Password” on the sign-in page
- Enter your email address
- Check your email for the password reset OTP
- Enter the OTP in the reset form
- Create a new password
- Your password is updated and you can sign in
Password Reset Security
- Password reset requests are limited to 3 per 5 minutes
- Reset OTPs expire after a short period
- You’ll be signed out of all devices after resetting your password
Changing Your Password
To update your password while signed in:- Go to your account security settings
- Click “Change Password”
- Enter your current password
- Enter and confirm your new password
- Click “Update Password”
Changing your password will sign you out of all other active sessions for security.
Security Recommendations
Use a Strong Password
- Use a unique password not used elsewhere
- Make it long and complex with mixed characters
- Avoid personal information that could be guessed
- Use a password manager to generate and store it
Enable Two-Factor Authentication
For maximum security, enable 2FA on top of email and password:- Sign in to your account
- Navigate to security settings
- Enable two-factor authentication
- Follow the setup instructions
Consider Using Passkeys
Passkeys offer stronger security and better user experience than passwords:- No password to remember or enter
- Phishing-resistant authentication
- Uses your device’s biometrics
- Faster sign-in experience
Monitor Your Sessions
Regularly check your active sessions:- Go to your account settings
- View all active sessions
- Revoke any unfamiliar sessions
- Sign out of public or shared devices when done
Rate Limits
Featul implements rate limiting to protect against brute-force attacks:| Action | Limit |
|---|---|
| Sign-in attempts | 5 per minute |
| Sign-up attempts | 5 per minute |
| Password reset requests | 3 per 5 minutes |
| Password reset completion | 5 per 5 minutes |
| OTP verification | 5 per minute |
Troubleshooting
Not Receiving OTP Emails
- Check your spam or junk folder
- Verify your email address is correct
- Ensure your email provider isn’t blocking Featul emails
- Request a new OTP if the previous one expired
Invalid Password Error
- Ensure your password meets all requirements
- Check that Caps Lock is not enabled
- Try resetting your password if you’ve forgotten it
Too Many Attempts
- Wait for the rate limit period to expire
- Check that you’re using the correct credentials
- Try again after a few minutes
Next Steps
Two-Factor Authentication
Add an extra layer of security with 2FA
Passkeys
Enable passwordless authentication