Audit Trail
The Audit trail is a log of all the activity on your Raytio account for transparency. It can be located under My Account
The Audit trail is a log of all the activity on your Raytio account for transparency. It can be located under My Account
1. To Change your Raytio password, navigate to the Account Settings page under My Account. Select Change Password.
Your email address can only be changed from the web safe.
Your master password can only be changed from the web safe.
Before you create an account please refer Personally Identifying Email
Your account can only be deleted from the web safe. Deleting your SecretSafe account permanently deletes your account and all data that is associated with it. SecretSafe does not "soft delete" any data.
If you forget your password, your encrypted data will no longer be usable by you. To avoid losing all of your data, you can export a backup copy of all your encryption keys now. After resetting your password, import your keys from the backup and your data will still be available to you.
Raytio supports the Web Authentication (WebAuthn) standard to enable a hardware token to be associated with your Raytio account which enables a check to be performed that the account and data is being accessed only by someone without access to that hardware. This also enables biometric authentication using fingerprint or face recognition for example. Other names for this type of authentication include passkeys, FIDO keys or Yubikeys.
Unlike most services that you use on the internet, due to the way SecretSafe works there is no way to reset your master password in the event that you forget it. This is because your SecretSafe master password is used for more than just authentication (logging in). Your safe's data is also securely encrypted with your master password, therefore it is impossible to unlock or recover your safe without it.
If you have lost access to the device or method that you use for two-step login (2FA) you can recover your account using your two-step login recovery code.
If you recently reset your password, you can regain access to your encrypted data by uploading your key backup file here. This is only possible if you previously exported your raytio-backup-keys.txt file.
When Creating a Raytio account, it is highly recommended that you use an email that doesn't identify you personally.
Two-step login (or two-factor authentication) greatly increases the security of your account by requiring you to complete a secondary step while logging into SecretSafe (in addition to your master password). Even if someone were to discover your master password, they could not log into your SecretSafe account without access to the secondary step. You can read more about two-step login here. We recommend that all users activate and use two-step login with their SecretSafe account.
SecretSafe supports two-step login by using a third-party authenticator app such as Authy, Google Authenticator, or FreeOTP.
SecretSafe has partnered with Duo Security to bring two-factor authentication to SecretSafe logins, complete with inline self-service enrollment and authentication prompt (offering SMS, phone call, U2F security keys, and push notifications with the Duo Mobile app).
SecretSafe supports two-step login via email. A verification code will be emailed to you during login.
SecretSafe supports two-step login via FIDO U2F. Any FIDO U2F certified device will work. We recommend a YubiKey.
SecretSafe supports two-step login via YubiKey. Any YubiKey that supports OTP capabilities can be used. This includes all YubiKey 4 and 5 series devices as well as YubiKey NEO and YubiKey NFC.
To make changes to your Raytio account, visit the Account Settings page.
The State Transitions and Actions table allows definition of the actions that will be taken when the state of application instance changes. For example it is possible to send an email when the state of an instance changes to "Received" (which means that the data receiver has viewed the shared data).
You can increase the security of your Raytio account by enabling a time-based one-time password (TOTP). This is commonly known as Two Factor Authentication because it combines your Raytio password with another device such as your mobile phone to secure your account. When two factor authentication is activated, you put in your password, then use a code on your mobile device to complete the sign-in.
You may find a notice in your account regarding the need to update your encryption key. Rest assured that this does NOT mean that your account has been compromised or is in danger or being compromised. This notice appears on accounts that registered when SecretSafe was using an older encryption scheme.