AdvancedSecurity best practicesKeep your application and users secure with these guidelines.Secure your accountEnable two-factor authenticationProtect your dashboard account with 2FA using TOTP authenticator apps or email verification. Required for all non-free accounts.Limit team permissionsGrant team members only the permissions they need. Use product-specific permissions for fine-grained control.Secure your appUse hardware ID bindingPrevent account sharing by enabling HWID binding in app settings. Users will be locked to their first login device.Rotate API keys regularlyIf your API key is compromised, regenerate it immediately in App settings. Update all deployed clients.Monitor activityMonitor authentication logsWatch the activity feed for suspicious logins, failed authentication attempts, and unusual patterns.Track file downloadsMonitor download counts per subscription to detect unusual activity or file sharing.Never shareYour app API key (ap_...)Dashboard account credentialsFile encryption keys (automatically handled by the C++ client)