Skip to content
English
  • There are no suggestions because the search field is empty.

Account Security - Best Practice

Keeping your WriteUpp account secure

Protecting sensitive client and patient information is a shared responsibility. While WriteUpp takes steps to protect the platform and the information it holds, the security of individual user accounts also depends on keeping login credentials secure.

There are several simple things you can do to significantly reduce the risk of someone gaining unauthorised access to your account.

Use a unique password for WriteUpp

Never reuse your WriteUpp password for another website, application or service.

Data breaches happen across the internet every day. When usernames, email addresses and passwords are exposed, attackers may try those same credentials on other services.

This is sometimes known as credential stuffing.

Importantly, an attacker doesn't need to compromise WriteUpp to obtain your password. If you've used the same credentials somewhere else and that service is compromised, those details could potentially be used to access other accounts.

Choose a strong password

Passwords should be long, difficult to guess and unique.

Avoid using:

  • Names or dates that someone could associate with you
  • Common words or predictable sequences
  • Small variations of passwords you use elsewhere
  • The same password across multiple user accounts

You don't need to be able to memorise every password you use. A reputable password manager can generate long, unique passwords and securely store them for you. 👇

Use a password manager

Password managers make it much easier to use a different strong password for every service.

Many devices and browsers now include password management functionality, including Apple's Passwords app and Google Password Manager. Dedicated password management services like 1Password are also available.

Whichever solution you choose, the important thing is that you aren't relying on the same memorable password across multiple systems.

What does a "compromised password" warning mean?

Apple, Google and many password managers can alert you when a password you use has appeared in a known data leak.

For example, Apple may display a warning that a password has appeared in a data leak.

This doesn't necessarily mean someone has accessed that particular account. It means the password or credentials have been identified within compromised data and should no longer be considered secure.

If you receive a warning like this:

  1. Change the affected password as soon as possible.
  2. Don't reuse the old password.
  3. If you've used the same password elsewhere, change it on those services too.
  4. Replace it with a unique password, ideally generated by a password manager.

Enable two-factor authentication

Two-factor authentication (TFA) provides an additional layer of security beyond your password.

With TFA enabled, signing in requires an additional verification step. This means that knowing your username and password alone may not be enough for someone to access your account.

We strongly recommend using TFA wherever it is available, particularly for systems containing sensitive or confidential information.

Don't share user accounts

Everyone accessing WriteUpp should use their own user account.

Individual accounts help ensure that access can be appropriately controlled and that activity can be associated with the correct person.

If somebody no longer requires access to your practice, their account should be disabled promptly rather than allowing their login to continue being used.

Be alert to phishing

Passwords aren't only exposed through data breaches. Attackers may attempt to persuade you to provide your login details through convincing emails, messages or fake login pages.

Before entering your WriteUpp credentials:

  • Check that you're signing in to a genuine WriteUpp account.
  • Be cautious of unexpected messages asking you to log in urgently.
  • Don't provide your password to somebody who contacts you asking for it. The team here will never ask you to provide your password. 
  • If you're unsure about a message claiming to be from WriteUpp, contact our team.

Review your security regularly

Good account security isn't something you need to think about every day, but it is worth reviewing periodically.

We recommend:

  • Using a unique password for WriteUpp.
  • Storing passwords using a reputable password manager.
  • Acting immediately on compromised-password warnings.
  • Enabling two-factor authentication.
  • Ensuring everyone has their own WriteUpp user account.
  • Removing access when someone leaves your practice.
  • Remaining alert to phishing attempts.

These relatively small steps can make a significant difference in protecting your account and the sensitive information entrusted to your practice.