The Settings > Security page shows your primary sign-in method and any backup password. Add, change, or remove each from here.
How you get into your account in the first place.
The Sign-in methodssection on Settings > Security shows your primary sign-in method and, when applicable, a backup password. Every Laureo account is pinned to a single primary method — Google, Microsoft, or email and password — and that is the method you sign in with from then on. See Primary and Backup Sign-In for the why.
The Password card sits at the top; the OAuth provider rows sit underneath.
Labeled Password if your primary is email and password, and Backup password if your primary is Google or Microsoft and you have added a fallback password. Status is Active when a password is set or Not set when you only sign in through a provider. The action button reads Change password when one is set; if you are OAuth-primary with no backup password, it reads Set backup password and routes you through the forgot-password flow.
Sign in with your Google account. The row shows either Linked or Not connected. When the Google row is your primary, a Primary badge appears next to the label and the Unlink button is disabled with a tooltip that reads "This is your primary sign-in method and cannot be unlinked." A green checkmark indicates a linked identity.
Sign in with your Microsoft or Azure AD account. Same row pattern as Google — shows Linked or Not connected, surfaces the Primary badge when applicable, and disables Unlink on the primary identity.
Email-primary users can attach one OAuth provider so they can sign in with the matching button on the sign-in page.
If your primary sign-in method is email and password, you can link oneOAuth provider — either Google or Microsoft. After linking, that provider button on the sign-in page works for you, but your account is still email-primary and the OTHER provider stays hidden. Linking a provider also creates an integration token that the inbox and calendar use, so you do not need to connect the integration separately. See Primary and Backup Sign-In.
Remove Google or Microsoft from your account.
If your primary is Google or Microsoft, you can add a backup password as a fallback.
OAuth-primary accounts are fully functional — you do not need a password. But adding a backup passwordgives you a second way in if your provider has an outage or your Google / Microsoft account changes. The action is on the Password card at the top of the Sign-in & verification section, and it routes through the forgot-password flow because it requires verification by email.
Rotate your password when you suspect it is compromised or just as routine hygiene.
What the warnings on this card actually mean.