2 min read
What's happening
Your account lists the devices and sessions signed in, with a device type, rough location and last-seen time. Locations are only estimates and can look wrong even for your own logins, so weigh the device and timing too — a Windows PC in another city at 3am is a very different signal from a slightly-off town on your own phone.
What to do
If in any doubt, choose sign out on that session, or sign out of all other devices, then change your password and confirm 2FA. If it looks like a genuine intruder, report it — see reporting suspected fraud. Full detail in managing devices and sessions.
Related reading

Managing trusted devices and active sessions
Your account keeps a list of the devices and browsers currently signed in. Reviewing it — and removing…
Read →
Setting up an authenticator app for two-factor authentication
Two-factor authentication adds a second step to sign-in: after your password you enter a six-digit code from…
Read →
Reporting suspected fraud to Credit Corp
If you spot something wrong — a scam pretending to be us, a strange login, an unexpected change — report it…
Read →
Account takeover
Account takeover is when a criminal gains control of your account using stolen, guessed or phished…
Read →Funding for UK limited companies
Credit Corp lends to your company, not to you personally — short-term working capital with no personal guarantee. See what your business could access.