Skip to content

Account security

Wedding Computer has no passwords. Accounts use an emailed sign-in link or a passkey, and integrations use separate credentials with different scopes. This guide explains what you can control from the app.

Enter your account email on the sign-in page and Wedding Computer sends a short-lived link. A normal sign-in link expires after 15 minutes. Treat it like a password while it is valid: do not forward it or paste it into another service.

Your email account remains a recovery path even after you add a passkey. Protect that mailbox with its own strong password, multi-factor authentication, and recovery settings.

If you request a link but did not receive it, check spam and wait for the request cooldown before trying again. Wedding Computer uses neutral responses and rate limits so the form does not reveal whether an address has an account.

Open Your profile → Passkeys and choose Add a passkey. Depending on your device, this can use Touch ID, Face ID, Windows Hello, a synced password manager, or a hardware security key.

The account page lists each passkey’s name, when it was added, and when it was last used. Remove a passkey you no longer control. Removing a passkey does not disable email sign-in.

A passkey is a convenient, phishing-resistant way to sign in, but Wedding Computer does not currently combine a passkey and email link as two required factors. Do not describe it as mandatory two-factor authentication.

A successful sign-in creates a browser session that can remain active for up to 30 days. Sign out ends the session in the browser you are using.

To revoke every browser session, open Your profile → Browser sessions and choose Sign out on every device. This includes the current browser, so you will need to sign in again. Use it after losing a device, using a shared computer, or seeing activity you do not recognise.

Open Your profile → Email address, enter the new address, and follow the verification link sent there. The change is not applied until the new mailbox is verified, and Wedding Computer notifies the old address after a successful change.

If you receive that notification but did not make the change, sign out every device and contact help@wedding.computer immediately.

Calendar, contacts, Obsidian, and AI connections

Section titled “Calendar, contacts, Obsidian, and AI connections”

Private calendar links and integration credentials do not belong in a public document, chat, screenshot, analytics tool, or source-code repository.

  • Personal wedding calendar: under Your profile, replace the URL to invalidate the old copy, or disable it completely. Anyone holding the current URL can read that feed.
  • Calendar and contact connections (Pro): under Settings → Calendar & contacts, revoke only the named device or app that should stop syncing. These credentials are read-only and scoped separately to calendar or contacts.
  • OAuth AI connections (Pro): the same settings page lists connected OAuth apps. Revoke a grant you no longer recognise or use.
  • Integration token (Pro): the advanced token powers MCP, Obsidian/Vault sync, and native integration clients. Calendar and contact feeds now use their own scoped connection credentials. Rotating or revoking the integration token disconnects every client still using that broad token.
  • Enquiry API key (Pro): manage this separately under Forms → Enquiry → Enquiry API. It can read your enquiry-form schema and create leads, but it cannot read CRM contacts or weddings. Rotate it if it appears outside the trusted automation that uses it.

New calendar, contact, integration, and enquiry credentials are shown only during a limited reveal. Wedding Computer keeps a secure hash afterward, so losing the displayed value means creating or rotating the connection rather than revealing the old secret again.

Some public workflows intentionally use an unguessable link instead of requiring an account:

  • an RSVP link opens one guest unit;
  • a booking link opens one invoice and its booking flow;
  • a calendar subscription link opens the feed encoded in that URL.
  • an operational-packet link opens the current packet and remains valid until a manager revokes or replaces it.

Share each only with its intended recipient. Removing a workspace member does not retrieve copies they already downloaded, and revoking one kind of link does not revoke the others.

For files, choose the narrowest per-file sharing option that works. For guest data, review the Guests app visibility before adding allergy, dietary, address, or seating information.

If a device or credential may be compromised

Section titled “If a device or credential may be compromised”
  1. From a trusted device, choose Sign out on every device.
  2. Remove any passkey you do not recognise or no longer control.
  3. Revoke or rotate the affected calendar, contact, OAuth, integration, and enquiry credentials.
  4. Review the members of each wedding and remove access that is no longer appropriate.
  5. Secure the email account used for Wedding Computer.
  6. Contact help@wedding.computer with the time and type of suspicious activity. Do not email tokens or private links.