Training Track

Twelve missions that cover everything a customer will ever ask you to do with Keeper. Each one is checked automatically from the practice account's activity.

Tammy Test · scenario: tuneup · 2FA off · 1 passkey(s)

1 of 12 complete

1
Create a new account and let Keeper generate the password

Customers sign up for new services all the time. The habit to teach: never type a password at sign-up — let Keeper generate it and save the record right then.

How to do it

Go to Create account (link on the sign-in page). Fill in a name and email, put the cursor in the Password box, click the Keeper icon and choose Generate. Keeper offers to save the new record. Finish the on-screen email verification step. (This mission counts if any account in the lab was created this way.)

Sign in and let Keeper save the login

Every customer visit starts here: the customer signs in and Keeper offers to save the record. If Keeper never asks, nothing else works.

How to do it

Sign in at /login with the username and password your trainer gave you. When KeeperFill pops up, click Save. Open the Web Vault and find the new record.

3
Change the password using Keeper's generator

The core of the Security Tune-Up: replace a weak, reused password with a long random one that only Keeper remembers.

How to do it

My Account → Security → Change password. Put the cursor in the New password box, click the Keeper icon, use Generate, and let Keeper update the record. A generated password is 16+ characters — that is what this check looks for.

4
Sign out, then sign back in using Keeper autofill

Proves the record was updated in Keeper. If Keeper still has the old password, the customer is locked out tomorrow.

How to do it

Sign out. On the sign-in page click the Keeper icon in the password box and pick the record. Do not type the password by hand.

5
Turn on two-factor and store the code in Keeper

Two-factor stops a stolen password from being enough. Keeper can hold the 6-digit code generator so the customer never needs a separate app.

How to do it

Security → Two-factor authentication → Turn on. Open the record in Keeper, edit it, add a Two-Factor Code field, and paste the secret (or scan the QR). Enter the code Keeper shows to confirm. Save the recovery codes into the record's notes.

6
Sign in using the code Keeper fills in

Customers hate 2FA until they see Keeper fill the code for them. This is the moment they buy in.

How to do it

Sign out and sign in again. After the password, the site asks for a 6-digit code. Click the Keeper icon in that box and fill it (Keeper also copies the code to the clipboard).

7
Add a passkey and save it to Keeper

Passkeys are the future: nothing to type, nothing to phish. Keeper stores them so they work on any device the customer signs into Keeper on.

How to do it

Security → Passkeys → Add a passkey. When the browser asks where to save it, Keeper (the KeeperFill window) should offer to store it. Give it a name like "Keeper passkey".

8
Sign in with the passkey

Shows the customer what passwordless feels like: no password, no code.

How to do it

Sign out. On the sign-in page click Sign in with a passkey, then choose the Keeper passkey in the prompt.

9
Remove a passkey that does not belong to the customer

Old phones, ex-employees, and unknown devices show up in passkey lists all the time. Part of a tune-up is deleting what should not be there.

How to do it

Security → Passkeys. Find the passkey you did not create (your trainer planted it) and click Remove. If there is none, ask your trainer to add a stale one.

10
Turn 2FA off, then back on with a fresh secret

When a customer loses their phone you often have to reset 2FA. Practice the full cycle and update the Keeper record with the new secret.

How to do it

Security → Two-factor → Turn off (needs your password). Then turn it on again — a new secret is generated. Replace the Two-Factor Code field in Keeper with the new secret, or the old codes will fail.

11
Break glass: sign in with a recovery code

Recovery codes are the last resort when 2FA is unavailable. You need to know where they are and how they work before a customer is panicking.

How to do it

Sign out. Sign in with the password, and on the 2FA screen choose Use a recovery code. Paste one of the codes you saved in Keeper's notes. Each code works once.

12
Lock yourself out, then get unlocked

Customers lock themselves out constantly. Know what it looks like and what the fix is (an admin unlock, or a reset).

How to do it

Sign out and enter the wrong password 8 times. Read the message. Then ask your trainer to unlock you from the Trainer Admin, or wait for them to reset your account.

Recent activity on admin

Sep 5, 2026, 11:04 PMlogin.passwordSigned in with password
Sep 5, 2026, 11:03 PMadmin.createdAccount created (scenario: Customer needs a security tune-up)
Simple Technologies · Login Lab — a training sandbox. Nothing here is a real account. · Guides · Training Track