Your epoe.io account can be signed in on more than one place at once — browsers, and the ePOE desktop overlay. The Devices & sessions page shows you every one, and lets you cut off any you don't want. Signing out of the desktop app now genuinely ends its session on the server, not just on the machine in front of you.
The Devices & sessions page
It lives on the website, under Settings → Security → Devices & sessions (open epoe.io in your browser and sign in). Each row is one place your account is active:
- A browser or the ePOE overlay — with its rough location by IP and when it was last active.
- API tokens, if you have created any — with when each was last used.
The place you are reading from is marked Current and labelled This device; it has no Revoke button, because you would only be signing yourself out. The raw session identifier is never shown — revoking uses an opaque handle, so the list can't leak anything useful to someone reading over your shoulder.
Revoking a device
Next to any device that is not the current one, press Revoke. That session is ended immediately: whoever was using it is signed out and has to sign in again. Use it the moment you see something you don't recognise, or after signing in on a friend's machine and forgetting to sign out.
Sign out everywhere else
Sign Out Everywhere Else (it asks you to confirm first) revokes every session and token except the one you are using. It is the one button to press if you think your account may be compromised, or you just want a clean slate: after it runs, only your current device remains signed in.
App sign-out ends the server session
In the desktop app, Settings → Account → Log Out now tells the server to end that session as well as clearing it locally. Before, logging out only forgot the session on the machine; now the same session disappears from the Devices & sessions list too. So logging out of ePOE on a machine you are lending out, or done with, actually revokes it — you don't also have to go to the website and revoke it by hand.
Your Path of Exile session is separate from all of this — it is stored encrypted on the machine and is managed under Settings → Connections, not here.
Related
- Signing in for the ways into your account, and how it differs from your Path of Exile session.
- Cloud Settings Sync for what your account carries between those devices.