Verify a new email account
After registration, Shows sends a six-digit code to the supplied email address. Open the verification page, confirm the email, and enter the code. Codes expire after 15 minutes and stop working after repeated incorrect attempts.
If a code does not arrive, check spam and the spelling of the address before requesting another. Resends are deliberately limited to protect accounts and email delivery. Shows staff will never ask you to send your password or verification code by email.
Reset a forgotten password
Choose Forgot password on the sign-in page and enter your account email. The response is intentionally the same whether an account exists, which prevents address harvesting. If the account exists, the private reset link expires after one hour and can be used only once.
Requesting a newer reset link invalidates older unused links. After setting a new password, return to sign in. Never forward a reset URL because possession of that URL grants temporary password-change access.
Protect your session
Use a unique password and sign out on shared devices. Shows clears local account state when the API rejects an expired or invalid session. Google sign-in is verified against the configured Shows client before an application session is created.