Use Active sessions to review where your account is signed in and end sign-ins you no longer need. This is useful after using a shared computer, losing a device, or noticing a session you do not recognize.
Manage your account lets you sign out of all other sessions while keeping the session you are using. It also has a separate Sign out action for your current session.
Open your active sessions
- Open the profile page on the site where you have an account, normally
/profile. For your cedros.ai account, open Manage your account. - If you see Log in to manage account, sign in and return to the profile page.
- Choose Security.
- Find Active sessions, below the password and two-factor authentication controls.
- Select Refresh sessions to load the current list. If Show all … sessions appears, select it to expand the list.
These sessions belong to your account on that site. They are not a list of every device signed in to Google, Apple, or another Cedros-powered website.
If you use a separate built-in administrator login and do not have this account page, ask the site owner which session controls apply. A customer account and an administrator account can use different sign-in systems.
Understand what the list shows
Browser and device. A row may say something like Chrome on macOS. These labels are derived from the information the browser supplied; they are not a verified device name or a person's identity. Unknown browser or Unknown device means the available information could not be identified.
Current session. This badge marks the session you are using to view the list. It appears first and is the one kept when you sign out of all other sessions. Another row with the same browser and operating system is not necessarily the current session.
IP. An IP address appears when it is available. Treat it as a clue, not proof of who signed in. Compare the whole entry with your known sign-ins rather than judging it from the address alone.
Started. This is when that session began. It is not the time the person last used the account.
Expires soon. This indicates that the session is approaching its recorded expiry time. Use the sign-out controls if you want to end a session; you do not need to wait for it to expire.
The same browser can have multiple sessions. Repeated browser names therefore do not automatically mean someone else accessed your account. The list initially shows up to three entries; expand it before deciding which sign-ins you recognize.
This is a list of active sessions, not a complete history of account activity. An entry disappearing does not provide a record of what happened during that session.
Sign out of all other sessions
Before you start, save unfinished work in other signed-in windows or devices you still control. Those sessions will need to sign in again.
Keep a working sign-in method available, including your authenticator or an unused recovery code if your account uses MFA. Although this action keeps your current session, you will still need those details to return on other devices.
- In Security → Active sessions, select Refresh sessions and identify Current session.
- Select Sign out of all other sessions.
- Read the Sign out of all other sessions? dialog. It confirms that your current session stays signed in.
- Select Sign out in the dialog to proceed. Choose Cancel if you do not want to end the other sessions.
- Wait for All other sessions have been revoked. Then check the updated list.
After a successful operation, the list should contain only your current session unless another sign-in has occurred since the request. Use Refresh sessions if you need to check again.
On another device you own, reload a page that requires sign-in. Its old session should no longer grant access, and you may be asked to sign in again. A page already open on that device may continue to show previously loaded content until it makes another request; seeing that content alone does not establish that the session is still valid.
This ends sessions; it does not change your password or remove a connected sign-in method. Someone who can still authenticate to your account may sign in again. If you suspect unauthorized access, also follow If you do not recognize a session.
Sign out of the session you are using
Use Sign out at the top of Manage your account when you have finished on the current browser or device.
Save your work first, then select Sign out. Return to the profile page and check that it asks you to Log in to manage account. Closing a tab is not the same as signing out.
Other tabs sharing the same sign-in may also become signed out. This action is separate from ending sessions on other devices.
If you want to leave no existing sessions signed in, first complete Sign out of all other sessions and verify its result. Then use the profile page's Sign out action for the remaining current session.
Sign out of one other device
To remove an unfamiliar session from the Active sessions list, use Sign out of all other sessions. There is no individual sign-out button beside each session.
If you still have the other device, open the correct site's profile there and use Sign out on that device. Return to your current device and select Refresh sessions to check the list.
If you cannot access the other device, use Sign out of all other sessions from a trusted device. This also signs out other sessions you may want to keep; you can sign back in to those afterward.
Do not assume two similar browser rows correspond to the same physical device. Use Current session to identify the session the bulk action will retain.
If you do not recognize a session
An unfamiliar browser label or IP address is a reason to review the entry, not proof by itself that the account was compromised.
Start from a device you trust. Consider recent sign-ins, another browser, and shared devices you used. If you cannot account for the session:
- Sign out of all other sessions and verify the result.
- Review Connected accounts for unexpected sign-in methods. Follow Updating your profile and sign-in methods to remove a method safely while retaining a working way in.
- If you use a password and think it may have been exposed, change it. If you rely on an external provider, review that provider account's security as well.
- Review or set up MFA or a passkey, and keep your recovery arrangements available.
- Contact the site administrator if unexpected sessions return or you notice changes you did not make.
Signing out sessions does not erase files already downloaded or undo actions already performed. Describe any suspicious account or site changes when you ask for help.
Troubleshooting
The sign-out button is missing
Sign out of all other sessions appears only when the loaded list contains a session other than the current one. Select Refresh sessions before assuming an expected session is absent.
If the list cannot load, address the error first. No active sessions found is not a successful sign-out confirmation.
The list will not load or refresh
Check your connection and select Refresh sessions. Wait for Refreshing… to finish and read any error shown.
If Cedros asks you to sign in again, use the correct site and account. If you cannot sign in, use Resetting your password and recovering access.
A stale list or a loading error is not evidence that other sessions have ended.
Cedros reports that sign-out failed
If you see Could not sign out of other sessions. Please try again., do not assume the operation succeeded. Check your connection, refresh the list, and retry if other sessions remain.
If it continues to fail, note the error text and time, then ask for help. Avoid repeated rapid attempts.
Sign-out succeeded, but the updated list could not load
Cedros can confirm that other sessions were signed out while also reporting that the refreshed list could not be loaded. These are separate outcomes.
Select Refresh sessions to verify the current list. You do not need to repeat the sign-out action solely because the follow-up refresh failed.
Another session appears after sign-out
Refresh the list and consider whether you or another authorized user signed in again after the request. Ending sessions does not block future sign-ins.
If the entry remains unexplained, follow the security steps above. If an old session still grants access to protected pages after reloading, report that behavior with the site address, browser, time, and exact steps.
For help, use Getting help and reporting a problem. Crop unrelated account details and IP addresses from screenshots unless support specifically needs them. Never send passwords, session tokens, sign-in links, authenticator codes, or recovery codes.