Account and passwordless sign-in
Connect the extension, open the web workspace, and understand code and session expiry.
5 minIn this guide
Two code flows
Remote Free installations can open the web app with a five-minute, single-use extension code. Creating a new eight-character code invalidates the previous active one; generation allows 10 requests per five minutes per IP and account, and exchange allows 20 attempts per five minutes per IP. Paid and previously paid accounts can also request a six-digit email code; it expires after ten minutes and locks after five invalid attempts.
Sessions
Web sessions last 30 days and authenticated extension devices last 180 days. Codes expire for security.
Finish pairing from the extension Account tab
On a remote Free installation, open the extension options Account tab and generate the temporary code there, then copy it. Open the hosted sign-in page from that same tab so a successful exchange lands in the web workspace. Regenerating asks for confirmation first because unused codes for that account are replaced. Paste the code on pinar.dev rather than on a local workspace page.
Requesting an email code always looks the same, including for unknown addresses, so the form does not reveal whether an account exists. A real six-digit message is sent only to an eligible paid account. Sign-out on the Account tab ends the current web and extension sessions.
- If no email arrives, wait before retrying; codes expire, and too many attempts are delayed.
- Confirm the regenerate dialog before invalidating a code you still intend to type on the hosted sign-in page.
- Use Sign out on the Account tab when you need the current web or extension session ended immediately.