Skip to content

User Profile

Your user account is personal and independent of any Project — one login can be a member of many Projects and Organizations. Everything about it lives under the avatar menu in the top-right corner of the dashboard: User Profile, plus My Projects, Personal Contracts, Support, and Logout.

User Profile → Update Personal Information:

SettingNotes
Given / family nameMax. 50 characters each; letters, spaces, hyphens, and apostrophes
Preferred e-mailChoose among your verified email addresses — used for sign-in, invitations, and account mail
LanguageEnglish or Deutsch
Timezone & localeControl how dates, times, and numbers are displayed
ThemeLight, Dark, System preferences, or Daytime (follows the clock)

Your account can hold multiple email addresses:

  • Add new e-mail sends a confirmation mail to the address; the link is valid for 1 hour. Pending verifications are listed with Resend confirmation mail and Delete actions — resending invalidates the earlier link.
  • Per address you choose a usage: Send notifications or No notifications.
  • The preferred e-mail is protected — to remove or mute it, first pick another preferred address under Personal Information. The last remaining address can’t be removed.

Invitations to Projects and Organizations are matched against your verified addresses, and SSO sign-ins link to the address your identity provider reports.

  • Passwords must be at least 12 characters — length is the only rule, so a passphrase works nicely.
  • Change Password requires your current password.
  • Forgot password? on the sign-in page emails you a reset link valid for 15 minutes.
  • If you signed up through SSO only, your account has no local password — Set Password adds email/password sign-in as a fallback.

Two second factors are available; you can use either or both. With any of them active, sign-in asks for the second factor after your password.

  1. Enable TOTP shows a QR code (plus a manual-entry key) for your authenticator app — Google Authenticator, Authy, or any TOTP app (6-digit codes, 30-second rotation).
  2. Confirm with a code from the app.
  3. Save your 8 recovery codes (XXXX-XXXX-XXXX format) — copy, download, or print them. They’re shown only once, and each works exactly once as a login fallback if you lose your phone.

You can regenerate recovery codes at any time (all old codes become invalid — the profile warns you when fewer than 3 remain) and disable TOTP if you no longer want it.

Add Key registers a hardware security key or platform authenticator — YubiKey, Apple Touch ID, Windows Hello, or a passkey synced by your device. Keys can be named (max. 50 characters), renamed, and deleted; there’s no limit on how many you register.

Some plans enforce MFA for all members of a Project — in that case, set up one of the factors above before you can work with that Project.

If you sign in through a company identity provider (Single Sign-On), the linked identities appear under Federated Sign-In with their provider and linked email. You can unlink an identity — unless it’s your only way in: set a local password (or keep another identity) first. Signing in with the provider again relinks it automatically by verified email.

Payment methods are stored on your user account and then selected per Project — because the invoice recipient of a Project pays with one of their methods.

  • Supported: credit/debit card and SEPA direct debit (up to 20 methods). Adding one opens a secure Stripe setup page — card data never touches TrustComponent.
  • One method is the default; after adding your first method the dashboard offers to attach it to Projects where you’re the invoice recipient, and to pay any open bank-transfer invoices.
  • Deleting a method requires typing its last 4 digits — and isn’t possible while any Project still uses it (the dashboard lists which ones).

Your profile also shows outstanding line items and all invoices addressed to you, with PDF download.

Latest Logins / Clients lists the browsers and devices that signed in to your account — browser and OS, IP address, approximate location, and the login times per device. It’s a read-only audit trail; you’ll also get a notification email whenever a sign-in happens from a new device or new location.

  • Notify me about changes and projects — one opt-in for product news and important changes to your Projects.
  • Transactional notifications go to your addresses marked Send notifications (see Email addresses).
  • Export Personal Data downloads everything we store about you as a ZIP (GDPR data disclosure).
  • Personal Contracts (avatar menu → Personal Contracts) lists agreements concluded with you personally — these are set up by our support or sales team. Project-level contracts like the DPA live in the Project under Governance → Contracts.
  • Account deletion: leave or delete all Projects and Organizations you’re a member of, then contact support — deletion removes your user, sessions, and login history immediately (invoicing data is retained as legally required).

The Support page (avatar menu) is where you open tickets with our team — pick a type (Technic, Product, Finance, Legal, Privacy, or Other), a subject, and your message; replies show up in the ticket thread and by email.