Skip to main content
Getting started

Account and Login

Complete guide to account creation, login methods, OAuth, sessions, password resets, email verification, passkeys, logout, account recovery, and common errors.

This guide covers everything you need to know about creating and managing your Ottili ONE account, signing in, and keeping your session secure.

All account, login, and security actions happen on the Ottili ONE dashboard at [dashboard.ottili.one](https://dashboard.ottili.one). The public website (ottili.one) links you there for every auth step.

Creating Your Account

Sign Up with Email

1. Go to [dashboard.ottili.one/signup](https://dashboard.ottili.one/signup)

2. Enter your email address and create a password (minimum 8 characters)

3. Check your inbox for a verification email from no-reply@ottili.one

4. Click the verification link to confirm your email address

5. Complete your profile with your name and role, then create or join a company

Email Verification

Email verification is required for full platform access. The verification link expires after 24 hours. If you don't receive the email:

  • Check your spam or junk folder
  • Request a new verification link from the login page
  • Make sure the email address you entered is correct
  • Add no-reply@ottili.one to your contacts

If your session reaches the dashboard before verifying, you may see a verification prompt. Use the Resend verification email* action on that screen.

Login Methods

Password Login

Use your email and password to sign in at [dashboard.ottili.one/login](https://dashboard.ottili.one/login). After login:

  • Your session stays active while you keep using the dashboard
  • You remain signed in across browser restarts until the session expires
  • Sessions expire after an idle timeout and an absolute maximum lifetime (configurable by your organization)

Sign in with Google or Microsoft

If your workspace has Google or Microsoft OAuth enabled:

  • Click Continue with Google* or Continue with Microsoft* on the login page
  • Authorize the Ottili ONE app with your provider
  • Your account is linked automatically on first sign-in
  • You can manage connected OAuth accounts from Account → Security*

If a Google- or Microsoft-linked account tries to sign in with a password, the login page tells you to use the matching provider instead.

Sign in with Ottili (Ottili SSO)

Ottili ONE supports OAuth so connected products can use your Ottili account for single sign-on:

  • Ottili Coder*: use your Ottili credentials for developer workflows
  • LD3*: sign in with your Ottili account for AI-assisted content workflows
  • Other apps*: look for a Sign in with Ottili* button

When no session exists, the OAuth flow redirects you to the dashboard for consent, then returns you to the app with authorized access.

Passkeys (Passwordless Sign-In)

Passkeys (WebAuthn) let you sign in with a device biometric or PIN instead of a password. They are supported where your workspace has them enabled:

  • Register a passkey under Account → Security* in your dashboard
  • Name the passkey (for example, "Work laptop") so you can recognize it later
  • At sign-in, choose the passkey option and confirm with your device
  • Remove or rename a passkey anytime from the same Account → Security* screen

Passkeys are phishing-resistant because they are bound to dashboard.ottili.one and cannot be reused on a fake site.

Multi-Factor Authentication

Where your workspace enables it, you can add an extra verification step under Account → Security*:

  • Enroll a second factor (authenticator app or compatible method)
  • The second factor is required on new devices or after sensitive changes
  • If you lose access to your second factor, use account recovery (below) and contact support

Password Management

Changing Your Password

1. Go to Account → Security* in your dashboard

2. Choose Change password*

3. Enter your current password

4. Enter and confirm your new password

5. Confirm the change

After changing your password, active sessions on other devices are revoked for security.

Resetting Your Password

If you forget your password:

1. Click Forgot password* on the [login page](https://dashboard.ottili.one/login)

2. Enter your email address

3. Check your inbox for a reset link

4. Click the link and set a new password

5. Sign in with your new password

Password reset tokens are single-use and expire after a configurable time. If the link has expired, request a new one.

Password Requirements

  • Minimum 8 characters
  • Recommended: a mix of letters, numbers, and special characters
  • Must not match your email address
  • Change periodically for best security

Company Access and Multi-Tenancy

Joining a Company

If someone invites you to their company:

1. Accept the invitation from your email

2. Sign in or create your Ottili ONE account

3. Open the company workspace with your assigned role

4. Your permissions are set by the company admin

Switching Between Companies

If you belong to multiple companies:

1. Click your profile icon in the top right

2. Select Switch company*

3. Choose the company you want to access

4. You see that company's data and settings

Company Roles

Your access level depends on your assigned role:

  • Owner*: Full control, can manage billing and team members
  • Admin*: Can manage most settings and team members
  • Developer*: Can access developer tools and APIs
  • User*: Standard access to assigned features

Session Management

Session Timeout

Sessions use two timeout mechanisms:

  • Idle timeout*: the session expires after a period of inactivity (configurable, typically 30 minutes to 8 hours)
  • Absolute timeout*: a maximum session lifetime regardless of activity (configurable, typically 7 days)

When your session expires, you are prompted to sign in again.

Signing Out

To sign out:

1. Click your profile icon in the top right

2. Click Log out*

3. Your session is closed on the device you used

Always sign out when using a shared or public computer.

Sign Out Everywhere

If you suspect unauthorized access:

1. Go to Account → Security*

2. Choose Sign out all devices* (or revoke individual sessions under Sessions*)

3. This ends all active sessions immediately

4. You sign in again on each device

You can review active sessions and device details under Account → Sessions*.

Account Recovery

Use these steps to regain access to your account:

  • Forgot password*: use the reset link on the login page (see Password Management above)
  • Unverified email*: request a new verification link from the login page or the in-dashboard prompt
  • Account locked from too many attempts*: wait for the lockout to expire, or reset your password to clear it
  • Lost second factor (MFA)*: use the account recovery option on the login page, then contact support to re-enroll
  • No access to your email*: contact support with the email address on the account so we can verify ownership

For security, recovery actions may require additional verification, and some changes are logged to your audit history.

Security Features

Brute Force Protection

The platform protects against password guessing:

  • Too many failed login attempts temporarily lock your account
  • Lockout duration increases with repeated failures
  • You can wait for the lockout to expire or reset your password

Fraud Protection

Suspicious activity triggers additional security measures:

  • Unusual login locations or patterns may require verification
  • High-risk actions may be flagged for review
  • Security events are recorded for audit trails

Device Management

View and manage devices with access to your account:

1. Go to Account → Security* or Account → Sessions*

2. Review active sessions and connected devices

3. Revoke access for any device you do not recognize

4. You are notified about new sign-ins

Common Errors

Cannot Sign In

  • Incorrect password*: use Forgot password* to reset it
  • Account locked*: wait for the lockout to expire or reset your password
  • Email not verified*: check your inbox or request a new verification link
  • Browser issues*: clear cookies for dashboard.ottili.one or try a different browser

Verification Email Not Arriving

  • Check spam or junk folders
  • Confirm the email address is correct
  • Add no-reply@ottili.one to your contacts
  • Request a new verification link from the login page

OAuth Sign-In Fails

The login page shows specific messages for common cases:

  • Google/Microsoft sign-in was cancelled*: you closed the provider window; try again
  • Security check failed (state mismatch)*: the OAuth handshake expired; reload and try again
  • Sign-in is not available right now / callbacks not configured*: that provider is temporarily disabled for this dashboard; use email and password instead
  • This account uses Google/Microsoft sign-in*: use the matching provider button, not the password field
  • Could not complete Google/Microsoft sign-in*: the provider returned an error; wait a moment and retry

If the issue persists, sign in with your password and contact support.

Session Issues

  • Frequent sign-outs*: check your session timeout settings with your admin
  • Cannot stay signed in*: make sure cookies are enabled for dashboard.ottili.one
  • Old devices still listed*: use Sign out all devices* under Account → Security* to clear them

Getting Help

If you hit an issue not covered here:

  • Review the [troubleshooting section](/docs/troubleshooting)
  • Use the dashboard help menu to contact support
  • Email support@ottili.one with details about your issue

For security questions or suspected unauthorized access, contact support immediately.

Was this article helpful?