Chykalophia Docs
Give us access

Give us access to your Sucuri account

How to give us access to your Sucuri website firewall and malware-monitoring account so we can respond to security alerts and clean infections.

Time
5 minutes
Difficulty
Beginner
You’ll need
Your Sucuri dashboard login

Sucuri is a website security service: a firewall that sits in front of your site, plus continuous malware scanning and cleanup. If Sucuri protects your site, we need access to read alerts, tune firewall rules, and act quickly if something is flagged.

Quick summary

Sucuri does not have invitations or extra users: it allows one email address per account, and that account can cover any number of sites. So this is one of the few tools where you have to share the login. Turn on two-factor authentication in your Sucuri account settings, then send us the login using our secure password guide, and give us the one-time code when we need to sign in.

Step-by-step instructions

Sucuri's service has two sides, and the dashboard has a tab for each:

  • Website Firewall — filters traffic before it reaches your site, and caches it through Sucuri's network.
  • Website Monitoring — scanning, monitoring, and malware cleanup. Sucuri's Security Platform plans include the firewall as well.

Either way, one login covers everything on the account.

Find out whose email is on the account. Sucuri allows a single email address per account, so whoever signed up is the only user. There is no invite screen and no second seat to give us.

Turn on two-factor authentication. Sign in at dashboard.sucuri.net and switch on two-factor authentication in your account settings. Do this before you share anything, so a shared password on its own is not enough to get in.

Send us the login securely. Use a self-destructing link or your password manager, never email or chat — see how to share a password safely.

Confirm which sites the account covers. If the account protects more than one domain, tell us which one we're working on.

Tell us it's done. Post in your ClickUp task. We'll sign in, ask you for the one-time code, and check that the firewall is passing traffic correctly.

Don't change the firewall DNS record without telling us

The Sucuri firewall works by pointing your domain's A record at Sucuri's network. If that record is changed or reverted, your site either bypasses the firewall entirely or goes offline. Always check with us first — see DNS access.

Common questions

What can you do with this access?

The work we need it for: read malware scan results, read the reports and audit logs, allowlist IP addresses, adjust firewall settings, clear the firewall cache, and request a malware cleanup.

Be aware that because Sucuri has one login per account, a shared login is not a limited role. Anything the account can reach, we can reach, including the billing section. We stay out of it, and we never change your plan or payment details — but if that bothers you, say so and we'll look at the alternative below.

Can we have our own login instead?

No. Sucuri's own answer to this is that there is only one email address per account, and that agencies wanting a different arrangement should talk to Sucuri's sales team. If you would rather not share your login at all, tell us and we'll ask Sucuri what they can offer for your setup.

Do I still need a security plugin if I have Sucuri?

Usually not two overlapping ones. A firewall service like Sucuri and a plugin-based scanner like Wordfence do similar jobs in different places, so running both tends to produce duplicate alerts and more to maintain. We'll recommend one primary approach — see security monitoring.

Who owns the Sucuri subscription?

Whoever's payment method is on the account. We recommend the subscription sits in your name so it survives any change of agency — see transferring ownership to you.

Need a hand?

If you're stuck, email support@chykalophia.com and we'll help. Include your website address and a screenshot if you can.

Learn more

Last updated

On this page