Give each person the correct level of Customer Portal access without sharing the account owner's login.
Customer Portal security protects billing information, services, domains and support history. Use a unique password, keep recovery methods current and treat unexpected sign-in messages as potentially fraudulent until verified.
Key information
| Account owner | The primary customer identity responsible for the account, billing relationship and high-risk changes. |
|---|---|
| User | A person invited to sign in with their own email address and granted selected account permissions. |
| Contact | A contact record that may receive selected notices or hold details for a department or individual, depending on WHMCS configuration. |
Before you start
- List the people who genuinely need access and the tasks each person performs.
How to use this service
- Keep the account owner under a controlled organisational email address rather than an employee's private address where possible.
- Invite each administrator or colleague using their own email address so actions are attributable and their access can be removed independently.
- Grant only the permissions required for billing, domains, services or support. Avoid giving full access merely to let someone read one ticket or invoice.
- Use contacts for notification or administrative purposes supported by the portal, but do not assume a contact automatically has sign-in access.
- Review users after staff, trustee, committee or agency changes and remove access immediately when it is no longer required.
- Test that critical renewal and security notices reach more than one authorised person without creating shared credentials.
Confirm the result
- Every active user is identifiable, authorised and limited to required permissions.
- The account owner and recovery address remain controlled by the customer organisation.
Common problems
| Symptom | Likely cause | What to do |
|---|---|---|
| An invited user cannot see a service or invoice. | The user was invited but not granted the corresponding account permission. | Edit the user's permissions rather than sharing the owner password. |
| A former user still receives notices. | Their contact record or notification preferences remain active even if sign-in access was removed. | Review both users and contacts, then remove or update every obsolete record. |
When to contact Tudor Internet
Open a ticket through the Customer Portal when the checks above do not resolve the issue, when an action is unavailable for your service, or when continuing could risk data loss or service interruption. Include the following so the request can be investigated efficiently:
- The customer account email address
- The affected invoice, service, domain or ticket number
- The exact message and the time it appeared
Related articles
- Add or manage account users and contacts
- Update account and billing details
- Secure your Tudor Internet account
- Enable two-factor authentication
- Recognise a fake Tudor Internet login or payment message
Last reviewed: 2026-07-18.