If Zone detects that your email account password has been leaked or is not sufficiently secure, we will notify you by email. The notification is sent to the contact email address associated with your ZoneID account.
What does “insecure password” mean?
An insecure password is usually either weak or reused:
-
A weak password is easy to guess (for example, short, simple, or a commonly used word).
-
A reused password is one that has previously been used for another service where user data has been exposed in a data breach.
What should you do next?
-
Change your email account password to a more secure one as soon as possible. You can find instructions here.
-
A secure password should be at least 10 characters long. We recommend using a password manager (such as 1Password, Bitwarden, etc.) to generate and store strong passwords.
-
Avoid using the following in your password:
- your name or company name
-
common passwords (e.g. Passw0rd!)
-
simple sequences (e.g. q1w2e3r4)
-
We also strongly recommend enabling two-factor authentication (2FA) for your email account.
-
2FA adds an additional layer of protection — even if someone learns your password, they will not be able to access the account without the second verification factor.
Has the password already been misused?
-
In webmail, you can review the mailbox security events to see whether there have been logins from suspicious locations. Instructions can be found here.
-
In My Zone mailbox management, check whether anyone has configured automatic email forwarding or copying messages to an external email address.