Articles in “Security” category
36 articles.
2026 (36)
- Does Zerodha solicit fund transfers to personal accounts?
Zerodha never solicits fund transfers to a personal or third-party account. Client money moves only from your registered bank or UPI to the regulated broker …
- How to change your Zerodha user ID
No. The Zerodha user ID is registered on the exchange to track every transaction, so it is permanent and cannot be changed or customised. You can recover it, …
- How to disable TOTP on Zerodha Kite
Disable external TOTP on Kite under My profile, Password & security, Disable external TOTP, then enter your password. You cannot remove 2FA fully; it reverts to …
- How to enable biometric login on Kite (Touch ID, Face ID, fingerprint)
Enable biometric login on Kite by setting a fingerprint or Face ID in your phone settings, then tapping Enable now at Kite login. The OS holds the biometric; …
- How to enable device lock on the Kite app
Enable device lock on the Kite app by setting an OS screen lock (PIN, pattern, or biometric) and tapping Enable now at login. It is the mandatory 2FA, not a …
- How to fix Kite logging out when switching apps
Kite logs out when you switch to copy a TOTP because the OS power saver kills it in the background. Turn off Low Power Mode, set Kite to Not optimised, or use …
- How to fix not receiving emails from Zerodha
Check spam and other folders, whitelist Zerodha's authorised domains, clear a full inbox, and update a wrong or office email; office domains often block Zerodha …
- How to fix the Invalid TOTP error on Zerodha Kite
The Invalid TOTP error on Kite is a device clock drift. Set your authenticator phone to automatic or network-provided time, enter a fresh 30-second code, and …
- How to freeze and unfreeze your Zerodha demat account
Freeze your own Zerodha CDSL demat account or specific ISINs against debit, credit, or both using the freeze/unfreeze request form, then lift the freeze the …
- How to log in to Zerodha Console
Log in to Console at console.zerodha.com with Login with Kite, using your Kite user ID, password, and app code. Console shares one credential set with Kite.
- How to log in to Zerodha when your mobile is lost
Lost your registered mobile and cannot get the SMS OTP? Set up a TOTP authenticator to log in to Kite, then update your mobile number through the …
- How to recover a forgotten Kite PIN
Forgot your 6-digit Kite PIN? Reset it through Forgot user ID or password, verify by OTP, and set a fresh PIN. The PIN is your second factor, not the password.
- How to recover a lost TOTP on Zerodha Kite
Lost your phone or deleted the authenticator? Reset on Kite via Forgot user ID or password, verify with email or SMS OTP, then re-enrol TOTP under Method 2.
- How to remove the temporary OTP on Kite
You cannot remove the OTP login step on Kite; SEBI and NSE mandate 2FA. You can switch the temporary OTP for an authenticator TOTP under Password & security.
- How to reset the Zerodha support code (ZPin)
Reset the Zerodha support code, the four-digit ZPin that authenticates you on a call to support, through Console after an OTP check. View it in Kite or Console.
- How to respond to a Zerodha email asking you to authorise your holdings
Without DDPI, a delivery sale needs you to authorise the holdings via CDSL TPIN; complete it through the email link before 7:00 PM the same day so the trade …
- How to respond to an additional-documents email from Zerodha
If Zerodha emails you for additional documents during onboarding or re-KYC, verify the email is genuine, then upload via your own login at support.zerodha.com …
- How to revoke connected apps on Kite
Revoke access for apps like Sensibull, smallcase and Streak connected via Kite Connect. Open Apps under My Profile on Kite web or Connected Apps on the Kite …
- How to secure an Indian trading and demat account: best practices
Best practices to secure an Indian trading and demat account: external TOTP over SMS, device hygiene, phishing and vishing defence, DDPI over POA, and Console …
- How to set up TOTP on Zerodha Kite
Set up time-based OTP on Kite with Google Authenticator or Authy: open My profile, scan the QR or copy the key, enter the code with your password, click Enable.
- How to set up your password on Zerodha
Zerodha never emails a ready-made password. You set your own from the welcome-email link, then create a 6-digit PIN or TOTP for two-factor authentication.
- How to stop unsolicited stock-tip SMS and report them
Stop unsolicited stock-tip and guaranteed-return SMS using TRAI DND on 1909, report spam and fraud, and complain to SEBI. Zerodha does not send stock tips by …
- How to unblock a blocked Kite account
Kite blocks the account after five wrong password attempts. There is no unblock button; resetting your password through Forgot user ID or password unblocks it …
- How to verify a call or SMS claiming to be from Zerodha
Verify a call, SMS, or person claiming to be from Zerodha by matching the number to the official list. Zerodha never asks for your OTP, password, or a fund …
- How to verify whether an email is genuinely from Zerodha
Check the sender domain against Zerodha's eleven authorised domains, never click login links from email, and cross-verify any request inside …
- Kite app code vs external TOTP vs SMS OTP: which second factor to use
Kite offers three second-factor login methods: the in-app app code, an external authenticator TOTP, and SMS OTP. External TOTP is the most secure and reliable. …
- Kite app code: what it is and how it works as a login factor
The Kite app code is a 30-second TOTP shown in the Kite mobile app that you type into Kite web as your second login factor. Here is how it works and where to …
- Why Zerodha blocks Rediffmail email IDs
Zerodha restricts Rediffmail email IDs because of cyberattacks on those accounts and frequent email-delivery failures. Switch to a deliverable provider. Here is …
- Zerodha client password and credential policy
Zerodha sets no password in the welcome email; the client creates one at first login, then a mandatory second factor (App Code or TOTP) is added under SEBI …
- Zerodha email: your registered mobile number is blocked
Zerodha emails you when your registered mobile number is blocked or inactive on TRAI's list. It can freeze the demat account. Here is why, and the update fix.
- Zerodha IP address shared alert
Zerodha sends an IP-shared alert when multiple accounts log in from the same device or network, under an NSE compliance rule. Here is what it means and what to …
- Zerodha login from a different city alert
Zerodha sends a login-from-different-city email when you sign in from a new city or IP address. Here is what triggers it, when to worry, and what to do.
- Zerodha multiple incorrect 2FA notification
Zerodha sends a notification after multiple incorrect 2FA entries, and the account blocks after 5 wrong attempts. Here is the threshold and the unblock route.
- Zerodha new device login notification
Zerodha sends a new-device notification the moment your Kite password is entered on an unfamiliar device, before 2FA. Here is how to verify it and secure the …
- Zerodha official social media handles and how to spot fakes
Zerodha's verified social media handles and domains, the table of official accounts on X, Instagram, YouTube and more, and how to spot impostor handles using …
- Zerodha trade SMS and email alerts from the exchanges
The SMS and email you get after every Zerodha trade come from NSE, BSE and MCX, not the broker, under a SEBI investor-protection mandate. Here is what they …