Skip to content

Settings & Preferences


This page covers your personal settings — profile, phone & text messages, security, notifications, and integrations — plus a map of the organization-level settings Owners and Admins manage.

Settings has three tabs: Account, Notifications, and Integrations. (Team management lives under Organization → Users; opening the old Team tab takes you there.)

Account

Settings → Account is organized into three sections — Profile, Phone & text messages, and Security — with a security health strip at the top.

Security health strip

The strip at the top of the Account tab tells you if anything needs attention, with a one-click action for each:

  • Verify your email address — password changes stay locked until you do. Click Resend email to get a fresh verification link.
  • Two-factor authentication is off — add an authenticator app so a stolen password isn't enough to sign in. Click Turn on.
  • Two-factor authentication is required for admins — admins are prompted to set it up now to keep using admin features.
  • When everything is in order it reads "Your account is secure" with a summary (email verified, two-factor on).

Profile

  • Update your name, title, phone, and address. Members of a firm see a note that their name and email are managed by the firm.
  • Your email is your sign-in address — it shows a Verified tag and can't be changed from this page; contact support to change it.
  • Change your profile picture (JPG or PNG, max 1 MB — it's shown to clients on requests you send).

Edits raise an Unsaved changes bar — click Save changes to apply or Discard to throw them away.

Phone & text messages

  • Delivery preference — how you receive document-request messages.
  • Text message consent — two optional toggles, Marketing texts and Service texts, that record your consent to receive text messages from FileOnion. Both require a phone number on file (saving is blocked with "Add a phone number above to receive text messages" otherwise), and you can revoke either at any time by turning it off. Reply STOP to any message to opt out, or text HELP for assistance.

Changing your password

In the Security section:

  1. Current password — enter your current password for verification.
  2. New password — enter the new password. It must be at least 12 characters and include an uppercase letter, a lowercase letter, a number, and a symbol.
  3. Click Update password.

If you sign in through your organization's single sign-on provider, your password is managed there instead.

Verify your email first

Password changes are locked (the section shows a Locked tag) until your email address is verified. Use Resend email in the security strip, click the link, and the section unlocks.

Two-factor authentication (2FA)

Two-factor authentication requires a code from an authenticator app (such as Google Authenticator, Authy, or 1Password) when signing in. Each user enrolls from their own security settings; Admin accounts may be prompted to enroll when they sign in.

To enroll:

  1. On Settings → Account, under Two-factor authentication, click Turn on (or Set up in the security strip).
  2. Scan the QR code with your authenticator app.
  3. Enter the 6-digit code your app shows to verify.

Checkpoint

The Security section lists Authenticator app as your active method, and your next sign-in prompts for a code after your password.

To turn it off, click Remove next to the authenticator app entry.

Notifications

Settings → Notifications controls the emails you receive. Changes save automatically — there is no Save button.

  • Where notifications go — shows the email address every notification below is sent to. It's your sign-in address and can't be changed separately.
  • Client activity — three toggles for emails about your requests:
    • A client uploads a file — sent when someone adds a document to one of your requests.
    • A client opens a request — sent the first time a request you sent is viewed.
    • Someone comments — sent when a client or teammate comments on a request or file.
  • SecuritySign-in from a new device: emailed when your account is accessed from a device you haven't used before. (Requires a verified email address.)

Email vs. the in-app bell

These toggles control email. In-app notifications — the bell in the header — are always on, for you and for your clients. See Dashboard → Notifications for how the bell works.

Integrations & API keys

Settings → Integrations lists the services you can connect to your account, including Google, Dropbox, Box, Zapier, and Docketwise — connect or disconnect them here. On Professional and Enterprise plans, the same tab also shows API Keys and Webhooks sections for the REST API and automation integrations. See Integrations and the API guide.

Settings for clients

Portal clients get a simplified settings page headed Your details — the same profile, phone, and text-message consent cards, without the firm-side tabs. See The Client Experience.

Billing

Billing is managed by the account Owner from the organization's Billing tab: current plan, seats, payment method (Stripe), and invoices. See Billing.

Teams

Team membership and team-scoped visibility are organization-level features managed under Organization → Teams. See Teams & Sharing.

Organization settings (Owners and Admins)

Owners and Admins have an Organization page with tabs for firm-wide administration:

  • Overview — your organization's name, plan, status, and usage at a glance.
  • Users — invite, manage, and remove members; bulk import. See Team Members & Roles.
  • Teams — create and manage teams. See Teams & Sharing.
  • Branding — your logo and brand colors on client-facing emails and the portal (Professional and Enterprise).
  • Usage — seats, storage, and file-size limits for your plan.
  • Billing — plan and payment management (Owner).
  • Integrations — organization-wide integrations.
  • Audit Log — who did what and when (Professional and Enterprise). See Security.
  • Roles — role permissions; custom roles on Enterprise. See Team Members & Roles.
  • Features — feature toggles available to your organization.