> ## Documentation Index
> Fetch the complete documentation index at: https://docs.readyforcommerce.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Ready for Commerce is an ecosystem that currently contains two products, PIM and Repricer, standing on one shared foundation: one identity, one organization, one team, one bill. Do not call it a platform with features, and never hint at an unreleased product.
> PIM connects to Shopify, Amazon, Square, Google Merchant Center and BigCommerce. Repricer connects to Amazon, Walmart, Shopify, BigCommerce, eBay and Square. The two products do not share one list, and each integration is authorized separately inside each product. The roster grows on purpose, so describe what the product does and let a table carry which integrations do it today, instead of counting them or writing that only one does something.
> Integration is the word this product uses, and it is the default in the documentation: the connection, the account, the Integrations screen, the per-account settings and the sync state are all integrations. Channel is reserved for the narrow sense of a destination where a listing lives, as in a product being live on a channel or archived on the channel.
> Newegg is not a supported channel. Do not describe it.
> On Amazon, PIM manages the offer only: price, availability and condition. It does not publish listing content such as titles, descriptions, images or specifications.
> Sign-in is passwordless: a single-use code emailed to the user, or Google. There are no passwords anywhere, so never describe a password, a sign-up with a password, or an email confirmation link.
> There is no public API for customers and no customer-facing webhooks. There is no organization-wide activity feed and no audit export, but the PIM does keep version history on products, brands, categories, tags and specifications, with who changed what and a restore, so never write that changes are not recorded or that an edit cannot be undone. Do not describe capabilities that are not documented here.
> Never write that the products have no AI, and never write that anything is AI-powered. Both are wrong. The PIM's image Optimizer runs AI-backed transforms the seller starts on purpose: Upscale, Remove background, and the region selection behind Refine. The Repricer reads competitor prices off web pages on the server. No control, badge or tooltip in either product names AI, and the seller never writes a prompt, so describe what the buttons do in the app's own words instead of reaching for the word.
> A PIM product, brand, category or variant can be switched off per connected integration account. Hover the channel badge and the switch is beside the account name in the card that opens. It carries no visible caption, so never call it the Sync switch: Sync is only its accessible name. On a variant-grained provider, Amazon today, the switch moves into the variant editor. On a product it asks whether to delete it from the channel, archive it there, or leave it live. Disabling stops publishing, not reading. There is still no per-field sync toggle.
> The PIM's image Optimizer replaced a feature called Squarify, which no longer exists. It resizes to an aspect ratio or to exact dimensions, removes backgrounds, upscales, trims the transparent margin around a cutout and re-centers it, pads, fills and re-encodes, and it always publishes a new asset instead of changing the original. Nothing crops into the picture: the subject is always contained whole.
> The PIM has no repricing engine and never reacts to a competitor's price. It does build the price it publishes to each integration account from the seller's own fields, configured in that account's settings, so do not write that the PIM has no pricing rules.
> Neither product has an in-app notification center, bell or inbox. Notifications are delivered by email only.
> Billing is per organization and per product, and only the organization owner can see or change it. Team members are free and uncounted, so never describe seats or per-user pricing.
> The seller never picks a plan. Each product has twelve price tiers assigned automatically from usage: the PIM from catalog product count, which includes drafts and archived products, and the Repricer from trailing 30-day sales. Nothing is feature-gated by plan and exceeding a tier never blocks work, so never write that a feature requires a higher plan.
> A subscription that is past due or paused makes the product read-only, which stops repricing and blocks edits without deleting data. Only a canceled subscription locks the seller out. Nothing is ever charged without a payment method on file.
> Pages containing the text 'This page has not been written yet', or its Spanish equivalent 'Esta página todavía no está escrita', are placeholders. Do not treat their headings as documented behavior.

# Signing in and security

> There is no password to create or remember, and the code we email you opens every part of Ready for Commerce with a single sign-in.

Ready for Commerce has no passwords. You prove who you are by reading an email we send you, or by using Google, so there is nothing to choose, nothing to remember, and nothing to reset.

One sign-in covers everything you have. Your account, the PIM and the Repricer are on three separate addresses and share a single session, so once you are in you move between them without signing in again.

All of this starts at [account.readyforcommerce.com](https://account.readyforcommerce.com). While you are signed out, that address sends you to the sign-in screen. Once you are in, the `Security` page in your account is where you end sessions and check when you last signed in.

## Before you start

Your inbox is what stands in for a password here, so one thing matters before you sign in for the first time.

<Warning>
  Lose access to your email address and you lose access to your account. There is no password to fall back on, and no way to get back in on your own. Write to `support@readyforcommerce.com` if it happens.
</Warning>

While you can still read your inbox, you can move your account to a different address yourself. The `Email` field on the `Profile` page in your account does it, and [profile and preferences](/profile) covers the whole change.

## How to sign in

<Steps>
  <Step title="Open the sign-in screen">
    Go to [account.readyforcommerce.com](https://account.readyforcommerce.com). While you are signed out it sends you to the sign-in screen, which says `Sign in or create an account` under the logo. The same screen signs you in and creates the account, so a new address needs nothing extra.
  </Step>

  <Step title="Enter your email address">
    Type it into the `Email address` field, under the `or` divider, and click `Continue`. To use Google instead, click `Continue with Google` at the top of the same screen and you are done.
  </Step>

  <Step title="Open the email we send you">
    It comes from `no-reply@readyforcommerce.com` and has an 8-digit code and a `Sign in` button in it. Copy the code.
  </Step>

  <Step title="Type the code">
    Back on the sign-in screen, type the 8 digits into the boxes and click `Verify`.
  </Step>
</Steps>

That is the whole flow. You get your account, or the page that sent you to sign in, and you stay signed in for a year unless you sign out.

Everything below covers the two sign-in screens, the emails and your `Security` page one at a time. You do not need any of it to sign in.

## Every option in detail

### The sign-in screen

The sign-in screen is what [account.readyforcommerce.com](https://account.readyforcommerce.com) shows you while you are signed out. It gives you two ways in, one above the other.

| What you see | What it does |
| --- | --- |
| `Continue with Google` | A button at the top. Sends you to Google, and Google sends you back signed in |
| `or` | A divider. The two halves are alternatives, not steps |
| `Email address` | A field. Type the address you want the code sent to |
| `Continue` | A button under the field. Sends the code and moves you to the code screen |

`Continue` stays gray until what you typed looks like an email address. Click away from the field with something that is not one, and a message appears under it telling you so.

**Which one should you use.** Click `Continue with Google` when your account address is a Google address and that browser is already signed in to Google, because it gets you in with one click and no email at all. Type your address instead when you are on a computer that is not yours, or when you are not signed in to Google there. Both give you the same session, and you can use a different one every time.

The screen also runs a check that you are a person and not a robot. It settles on its own almost every time, and the only sign of it is `Continue` staying gray for a moment longer.

If you open the sign-in screen while you are already signed in, you never see it. You go right to your account, or to the page you were trying to open.

### The code screen

Once you click `Continue` on the sign-in screen, the screen changes in place. It says `Enter the code sent to your email` under the logo, and 8 empty boxes replace the `Email address` field.

| What you see | What it does |
| --- | --- |
| 8 boxes | One digit each. Numbers only, so a letter is rejected as you type |
| `Verify` | A button under the boxes. Gray until all 8 boxes are full |
| `Resend code` | A button that appears only after an attempt fails. Sends a new email |
| `Use a different email` | A link at the bottom. Takes you back to the field to fix the address |

`Resend code` turns into a countdown as soon as you use it, reading `Resend code in 60s` and counting down to zero, and it becomes a button again when it gets there.

Nothing on this screen is lost while you go and read your email. Leave the tab open, come back, and type the code into the boxes.

### Signing in with Google

`Continue with Google` is at the top of the sign-in screen, above the `or` divider. Clicking it sends you to Google, and Google sends you right back signed in. There is nothing to set up first.

Google may also show a prompt of its own while the sign-in screen is still loading, when that browser is already signed in to Google. Clicking that prompt signs you in with no code, the same as the button.

Signing up this way fills in your first and last name from your Google profile, so your name is right from the start instead of guessed from your address.

Google and the emailed code are not a choice you make once. Your account is known by its email address, so the same address works either way, and you can go back and forth as often as you like.

Google is the only outside sign-in there is. Apple, Microsoft, GitHub and company single sign-on are not available.

### Staying signed in

| What follows you across all three apps | What it means |
| --- | --- |
| Your session | Lasts a year. Signing out is the only thing that ends it early |
| Your active organization | Switch organization in your account, and both products switch with you |
| Your language | Choose it once, and every app and every email uses it |

Your language is even kept when you sign out, so the sign-in screen greets you in it next time.

### Signing out

`Sign out` is in the avatar menu at the top right of every one of the three apps: your account, the PIM and the Repricer. All three do the same thing.

That one click ends every session you have, on every device, not just the one you are using. So signing out on your laptop signs out your phone too, and you get sent back to the sign-in screen.

### Ending sessions from the Security page

To find the `Security` page: go to your account at [account.readyforcommerce.com](https://account.readyforcommerce.com), click your avatar at the top right, click your name to open `My Account`, and click `Security` in the sidebar, under `Account`.

| Button | What it does |
| --- | --- |
| `Sign out other devices` | Ends every session except the one you are using. You stay signed in here |
| `Sign out everywhere` | Ends every session including this one, and sends you back to the sign-in screen |

Both buttons ask you to confirm first, in a dialog over the page titled `Sign out?`. Confirming `Sign out other devices` leaves a message reading `Successfully signed out from all other devices.` at the bottom of the screen.

**`Sign out other devices` is the one to use** when you think someone else is in your account, or when you left yourself signed in on a computer you cannot get back to. It takes effect right away, and it is the only control here that treats your current device differently from the rest.

`Sign out everywhere` does the same thing as `Sign out` in the avatar menu. Use whichever you happen to be looking at.

### Checking your current session

The `Security` page in your account opens with a panel called `Current Session`, above the two sign-out buttons. It is everything the app knows about how you got in.

| Label | What it shows |
| --- | --- |
| `Sign-in method` | `Email code` if you used a code, or `Google` if you used Google |
| `Account` | Your email address, partly hidden |
| `Last sign-in` | The date and time you last signed in, in your own timezone and language, or `Unknown` |

<AccordionGroup>
  <Accordion title="How your email address is hidden on this panel">
    The first 2 characters of your address are kept, every character between them and the `@` becomes a dot, and the part after the `@` is left alone.

    So an address at `example.com` starting with `an` shows as `an•••@example.com`. It is enough to tell you which address you are looking at, and not enough for someone reading over your shoulder.
  </Accordion>

  <Accordion title="Which sign-in Last sign-in is counting">
    It is the last time anyone signed in to your account, on any device, and not the moment this browser signed in. So on a second computer it can show a time from a session you are not looking at.

    A brand-new account that has never finished a sign-in shows `Unknown` there instead of a date.
  </Accordion>
</AccordionGroup>

### Limits

| What | Limit |
| --- | --- |
| Code length | 8 digits |
| How long a code lasts | 15 minutes |
| How many times a code works | Once |
| Wait between resends | 60 seconds |
| How long your session lasts | 1 year |

### What you cannot do here

| You cannot | Do this instead |
| --- | --- |
| Set a password, or reset one | Sign in with a code or with Google |
| Add an authenticator app, an SMS code or recovery codes | Nothing to add. Every sign-in already goes through your inbox |
| Sign in with Apple, Microsoft, GitHub or company single sign-on | Use Google, or use a code |
| See a list of your open sessions, or where each one signed in from | Read `Last sign-in` on your `Security` page |
| End one device and leave the others alone | Click `Sign out other devices`, then sign in again on the one you want to keep |
| Disconnect Google from your account | Stop clicking the button. Your address keeps working with a code |
| Delete your account | An organization can be deleted, and [organizations](/organizations) covers it |

## The emails you get

Two emails come out of signing in. One lets you in, and one tells you it happened.

### The email that signs you in

It comes from `no-reply@readyforcommerce.com` within a few seconds of clicking `Continue`, and replies go to `support@readyforcommerce.com`. The subject is `Sign in to your account - Ready for Commerce`.

| What is in it | What to do with it |
| --- | --- |
| An 8-digit code | Type it into the boxes on the screen you left open |
| A `Sign in` button | Click it to go right in, in whatever browser opens it |
| A line saying the code expires in 15 minutes | Ask for another one if you are past it |

The code and the button are two ways into the same sign-in, so use whichever suits where you are reading. Neither works twice. Once you are in, clicking the button again opens the expired-link page.

Ask for several codes in a row and you get several separate emails, so take the code from the newest one.

<AccordionGroup>
  <Accordion title="The first email you ever get looks different">
    An address that has never signed in before gets `Verify your email - Ready for Commerce` instead, with a `Verify email` button in place of `Sign in`.

    It works exactly the same way: the same 8-digit code, the same 15 minutes, the same boxes on the screen. You only ever see it once.
  </Accordion>
</AccordionGroup>

### The email that tells you someone signed in

Every sign-in that works sends one email to your address, with the subject `New sign-in to your Ready for Commerce account`. If you get one that was not you, sign in and use `Sign out everywhere`.

| Row | What it shows |
| --- | --- |
| `Time` | When it happened, in the timezone saved on your `Profile` page |
| `Device` | The browser and the system, written broadly, like `Chrome on Windows` |
| `IP` | The address the sign-in came from |

`Device` reads `Unknown device` when the browser does not say enough to name it, and that on its own does not mean anything is wrong.

This email cannot be turned off. It appears as `New login alert` on the `Notifications` page in your account, under the `Security` heading, with its switch on and locked.

## When something goes wrong

### No email arrives

Check your spam folder first, then check the address you typed. Everything we send comes from `no-reply@readyforcommerce.com`, so searching your mail for that address finds it even when a filter moved it somewhere you were not looking.

If the address was wrong, click `Use a different email` at the bottom of the code screen and type it again.

### A link or a code has expired

Opening a sign-in link that is past its 15 minutes, or that someone already used, takes you to a page headed `Verification failed`, with a red banner reading `Link Expired or Invalid`.

You can start again without leaving it. Type your address into the `Email` field and click `Resend Code`. A green `New Code Sent` banner replaces the form, and the code is on its way. `Back to Login` at the bottom takes you to the sign-in screen instead.

### Your account is suspended

A suspended account cannot sign in, and the sign-in screen tells you so in a red banner. Every control on the screen locks at the same time: the `Email address` field, `Continue`, `Continue with Google`, the code boxes, `Verify` and `Resend code`.

If you are already signed in when it happens, you get signed out and get a page headed `Account Suspended`, telling you to contact support, with a `Back to Login` button.

There is no way to lift a suspension yourself. Write to `support@readyforcommerce.com`.

### Every message the sign-in screen can show

| Message | What happened |
| --- | --- |
| `That code is invalid or has expired. Request a new one below.` | The code was mistyped, already used, or older than 15 minutes. `Resend code` appears underneath |
| `Too many attempts. Try again in {seconds}s.` | Too many tries in a short time. The number counts down on its own, and the button comes back at zero |
| `Too many attempts. Please wait a moment and try again.` | The same thing, with no countdown to watch. Wait a few minutes, then try again |
| `Enter a valid email address, like name@example.com.` | What you typed is not an email address |
| `Please complete the CAPTCHA verification.` | The robot check had not finished when you clicked `Continue` |
| `CAPTCHA verification failed. Please try again.` | The robot check did not pass. Click `Continue` again |
| `Your account has been suspended. Please contact support if you believe this is an error.` | The account is suspended, and the whole form locks |
| `Something went wrong. Please try again.` | Something we did not expect. Trying again usually clears it |

## Where to go next

<Columns cols={2}>
  <Card title="Profile and preferences" icon="user" href="/profile">
    Your name, your email address, your language, and which emails you get.
  </Card>

  <Card title="Create your account" icon="user-plus" href="/quickstart">
    The first sign-in, and what naming your organization sets up.
  </Card>

  <Card title="Organizations" icon="building" href="/organizations">
    What your business owns, as opposed to what you own.
  </Card>

  <Card title="Team, roles and permissions" icon="users" href="/team">
    Who else can get in, and what they can open.
  </Card>
</Columns>
