> ## Documentation Index
> Fetch the complete documentation index at: https://docs.performax.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Security

> Protect your account and manage irreversible actions.

Use the Security tab to protect your Performax account and manage irreversible account actions.

## Password

Change your password from **Settings → Security → Change Password**.

Before saving, Performax asks for:

* Current password
* New password
* Password confirmation

Use at least 8 characters with a number. If the current password is wrong, the change is rejected and your existing password stays active.

## Email address

Change your login email from **Settings → Security → Change Email**.

Performax asks you to re-authenticate before changing the email. After saving, check the new inbox for the confirmation message. Your old email may remain active until the confirmation step completes.

## Two-factor authentication

Two-factor authentication uses a time-based one-time password app.

Setup flow:

1. Open **Settings → Security**.
2. Click **Set up 2FA**.
3. Scan the QR code with an authenticator app.
4. Enter the 6-digit code.
5. Save the recovery code somewhere private.

Expected result: the Security tab shows 2FA as enabled, and future sign-ins can ask for the authenticator code.

Disable 2FA only from your own trusted session. If you lose access to the authenticator app, contact support from the email attached to your account.

## Account deletion

Account deletion is permanent. It removes your account data, including trades, notes, strategies, AI conversations, profile settings, and connected exchange credentials.

Delete your account from **Settings → Security → Delete Account**. Performax asks for your password before deletion. If you have an active paid subscription, cancel it first.

After deletion, do not reconnect old API keys. Rotate or delete those keys directly on the exchange side as well.

## API keys and support

Support should never ask for:

* API secret
* API passphrase
* Withdrawal permissions
* Trading permissions
* Authenticator codes
* Password

When asking for help, send only:

* Exchange name
* Account label shown in Performax
* Error message
* Time of the failed action
* Screenshot with balances, emails, and keys hidden

Use `support@performax.ai` for account-security issues.
