Account & security¶
Manage your account from the panel at app.echorelay.dev.
Two-factor authentication (2FA)¶
Turn on 2FA under your account settings for an extra layer on sign-in. You'll get one-time backup codes when you enable it — save them somewhere safe; they're how you get back in if you lose your authenticator.
Reset your password¶
Forgot your password? On the sign-in page, choose Forgot your password? and enter your account email. If an account exists for that address, we'll email you a link to set a new one — the link expires after a short time and can only be used once.
If you have 2FA enabled, you'll still need a code from your authenticator app (or a backup code) to finish — resetting your password never skips your second factor.
For your security, finishing a reset signs you out everywhere: every active session ends and all trusted devices are forgotten, so the next sign-in starts fresh (with 2FA if you use it). We also email you whenever your password changes — if that wasn't you, contact [email protected] right away.
Sessions & devices¶
Your account area shows where you're signed in and your recent security activity (sign-ins, key changes, billing actions). If you see something you don't recognise, change your password and review your trusted devices.
API keys & rotation¶
Each project has one inbound key. You can rotate it any time from the project's keys area:
- Rotation issues a new key and keeps the old one working for a short overlap so you can switch your senders over without downtime.
- After the overlap, the old key stops working — update your senders before then.
- You can also revoke a key immediately if it's been exposed.
Projects¶
Each plan includes a set number of active projects. When you reach the limit, archive a project you're no longer using to free up a slot, or upgrade your plan for more — see pricing and your panel for the exact numbers on each plan.
Archiving is reversible: an archived project stops serving traffic and keeps its configuration, and you can restore it later (as long as you're within your plan's limit again). If you downgrade, your existing projects keep running — you just won't be able to create or restore another until you're back within the new plan's limit.
Team members¶
Invite teammates to a project from the panel. Each person signs in with their own account; you control who has access. Seats are managed under Billing.
Roles — who can see and do what¶
When you invite someone, you give them a role on that project. Roles let you share exactly as much as a person needs — your accountant can watch the bill without seeing how your relay is wired, and a contractor can manage keys without touching billing.
- Owner — full control. Everything an Editor can do, plus managing members and their roles, billing and the plan, key policy, and archiving the project. Billing is owner-only. (The person who created the project starts as its owner.)
- Editor — runs the project's setup: endpoints, targets, and transforms, and can create or rotate the relay keys your senders use. Sees everything except member and billing management.
- Viewer — read-only. Can see the configuration, usage, request history, and billing status, but can't change anything.
- Billing — for a finance teammate or accountant. Sees usage and billing status only, and can't see where your requests are forwarded or your request history (which can contain your data) — and can't change anything. Good for "let them watch the spend, not the internals."
You set the role when you invite someone and can change it later from the project's members area. Change a role and it takes effect on their next action — across the panel, the API, and MCP alike.
Your data (GDPR)¶
- Export: request a full export of your data from Account → Your data. We email you a secure, single-use link when it's ready.
- Close your account: you can close your account from the account area. Closing is permanent — it erases your personal data immediately. We retain only what the law requires us to keep (invoice and accounting records for the statutory period). Read the confirmation carefully before proceeding.
See our privacy policy and DPA for the full detail.
Contact support¶
Can't find an answer here? Email [email protected] from the address on your account. Including your project name and a request id (from your request history) helps us help you faster.