Your Gunly admin controls your inventory, customer data, and order flow. A compromised account can cause real damage. This article covers the basics every dealer should set up.
Use a strong, unique password
Pick a password that is:
At least 14 characters
Mix of letters, numbers, and symbols
Not used on any other site
Use a password manager (1Password, Bitwarden, Dashlane) so you do not have to remember it.
To change your password, go to Help › Users › Profile › Account Management and click Set New Password.
Turn on two factor authentication (2FA)
Two factor authentication adds a second step to login, so a stolen password is not enough to break in. Strongly recommended for every user with admin access.
To enable it:
Go to Help › Users › Profile and scroll to Two-Factor Options.
Check Enable Authenticator App (recommended).
Install an authenticator app on your phone (Google Authenticator, Authy, 1Password, Microsoft Authenticator).
Scan the QR code shown on screen with the app.
Type the 6 digit code from the app into the Authentication Code field and click Verify.
Click Update Profile at the bottom.
Save your recovery codes
Once 2FA is on, check Enable Recovery Codes and click Generate new recovery codes. Print or save these somewhere safe. They are your way back in if you lose your phone.
Email as a backup
Check Enable Email under Two-Factor Options to let WordPress email you a code if your authenticator app is unavailable. It is less secure than the app but better than no fallback.
Use Application Passwords for integrations
If you connect a third party tool to your Gunly store (analytics, accounting, custom scripts), do not give it your real password. Use an Application Password instead.
To create one, go to Help › Users › Profile › Application Passwords:
Type a name that describes what the password is for (e.g., "Zapier integration").
Click Add New Application Password.
Copy the password shown. It appears only once.
Paste it into the third party tool.
Revoke any application password from the same screen if you stop using the tool or suspect it was leaked.
Limit who has admin access
Only give admin access to people who truly need it. For everyone else, use a lower role (Editor, Shop Manager, Author) so they can do their job without touching billing or critical settings.
Manage users in Help › Users › All Users. Click any user to change their role.
If you think your account is compromised
Change your password immediately.
Revoke all application passwords.
Generate new 2FA recovery codes.
Contact us in the chat or open a ticket from Help › Support so we can review activity logs.
Need more help?
For anything not covered here, message us in the chat from your admin or open a ticket from Help › Support.

