Help centre › Team, roles & security
IP allow-list and shared login protection
Only let your team in from approved networks, and stop shared logins.
Updated 7 October 2026
IP allow-list (Enterprise)
- Open Settings › Security › IP allow-list.
- Enter allowed IP addresses or ranges, one per line, or press Add my current IP.
- Switch the allow-list on and press Save allow-list.
Anyone signing in from anywhere else is signed out and blocked, and it's recorded on your audit trail. It also applies to API keys. Suppliers responding to your tenders are not affected. You can't save a list that doesn't include your own IP, so you can't lock yourself out.
Shared logins
Every person should have their own login. TenderLock checks for the same login used from two places at once. Choose:
- Flag it: record it on the audit trail and notify account owners and super admins, or
- One person per login: also sign the other device out straight away.
Support access
TenderLock support can never see your account unless an owner allows it under TenderLock support access. Sessions are read-only, time-limited and recorded on your audit trail.
