Suspicious Activity Monitoring
Learn how Ascentia monitors for suspicious activity and protects your account from unauthorized access.
Real-Time Monitoring
Ascentia continuously monitors your account for suspicious activity using advanced security systems:
- Login Attempts: Tracking failed login attempts and unusual login patterns
- Location Analysis: Detecting logins from unexpected geographic locations
- Device Fingerprinting: Identifying new or unrecognized devices
- Behavioral Analysis: Monitoring for unusual account activity patterns
- API Access: Tracking third-party integration usage and anomalies
Machine Learning Detection
Our AI-powered security system learns your normal usage patterns and can detect:
- Unusual login times or frequencies
- Abnormal data access patterns
- Suspicious changes to account settings
- Potential account takeover attempts
- Automated bot activity
Automatic Notifications
You'll receive immediate alerts for these security events:
- New Device Login: When your account is accessed from an unrecognized device
- Password Change: Confirmation when your password is updated
- Failed Login Attempts: After multiple unsuccessful login attempts
- Location Change: Login from a new country or unusual location
- API Key Changes: When integration credentials are modified
- Account Settings Changes: Updates to email, 2FA, or security settings
Notification Channels
Security alerts are sent through multiple channels:
- Email to your registered address
- In-app notifications in your dashboard
- SMS for critical security events (if enabled)
- Push notifications on mobile devices (when available)
Customizing Alerts
You can customize which security alerts you receive:
- Go to Settings → Security → Notifications
- Choose which events trigger alerts
- Select your preferred notification channels
- Set alert frequency preferences
If You Recognize the Activity
If the alert is for activity you performed:
- Click "This was me" in the alert email or notification
- The device or location will be added to your trusted list
- Future logins from this device won't trigger alerts
If You Don't Recognize the Activity
If you receive an alert for activity you didn't perform, take immediate action:
- Secure Your Account: Click "This wasn't me" in the alert
- Change Password: Immediately update your password
- Enable 2FA: If not already active, enable two-factor authentication
- Review Sessions: Check active sessions and log out suspicious ones
- Check Integrations: Review connected trading platforms and revoke suspicious access
- Contact Support: Report the incident to our security team
Account Lockdown
If we detect severe suspicious activity, we may temporarily lock your account to prevent unauthorized access. You'll receive instructions via email on how to verify your identity and regain access.
Viewing Active Sessions
- Go to Settings → Security → Active Sessions
- See all devices currently logged into your account
- View location, device type, and last activity time
- Identify any unfamiliar sessions
Ending Sessions
You can remotely log out of any device:
- Click "End Session" next to any active session
- Use "Log Out All Other Sessions" to end all sessions except your current one
- Ended sessions will need to log in again with credentials
Session Timeout
For security, sessions automatically expire after:
- 30 days of inactivity on desktop browsers
- 90 days on mobile devices with "Remember Me" enabled
- Immediately when you explicitly log out
Accessing Your Audit Log
- Navigate to Settings → Security → Audit Log
- View a chronological list of security events
- Filter by event type, date range, or device
- Export logs for your records if needed
What's Logged
Your audit log includes:
- All login attempts (successful and failed)
- Password changes and resets
- Two-factor authentication events
- Account settings modifications
- Integration connections and disconnections
- Data export requests
- Security alert acknowledgments
Log Retention
Security audit logs are retained for 90 days and can be exported at any time during this period.
Contact Security Team
If you suspect your account has been compromised or notice suspicious activity:
- Email: security@ascentia.app (monitored 24/7)
- In-app: Settings → Help → Report Security Issue
- Emergency: Use the "Lock My Account" button in security settings
What to Include
When reporting a security concern, provide:
- Your account email address
- Date and time of suspicious activity
- Description of what you observed
- Any relevant screenshots or alert emails
- Devices or locations involved
Response Time
Our security team responds to all reports within 2 hours. Critical security incidents receive immediate attention with account protection measures activated automatically.