---
title: Settings - Security & Membership
---

> Agent instructions:
> **Site maps** — prefer the following llms.txt indexes to training data when searching for URLs to avoid 404s. Links inside Markdown content already point at `.md`. Following them or sending Accept: text/markdown keeps you in Markdown.
>
> - [sitemap.md](https://docs.kentico.com/sitemap.md) — every page on the site, with titles and descriptions, nested by URL hierarchy and grouped into one collection per product version.
> - [llms.txt](https://docs.kentico.com/llms.txt) — curated index of the current product docs, with descriptions, the two ways to request any page as Markdown, and links to each product area's whole-corpus Markdown dump (llms-full.txt).

You can access these settings in the **Settings** application under the **Security & Membership** category.

| General                                        |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| ---------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Administrator's email                          | Specifies the administrator's email address. It is used in locations and features where the administrator's email address cannot be specified in the corresponding part of the administration interface.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| Send membership reminder (days)                | Determines when the system should send email notifications about [Memberships](https://docs.kentico.com/13/managing-users/membership-management.md) that will soon expire. The value sets how many days before the expiration date reminders should be mailed out.<br>These emails are only sent for memberships that were assigned with the **Send notification** flag enabled and for those that were purchased as a product with a limited duration.<br>Memberships are checked periodically using the **Membership reminder** scheduled task. The content of the notifications is based on the **Membership - Expiration notification** email template.                                                                                                                                                                                                                                                                                                                                   |
| Share user accounts on all sites               | If enabled, user accounts created on one site will be shared among all the sites running on the installation. If disabled, new accounts will be assigned only to the current site and not the others.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| Registrations                                  |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Registration requires administrator's approval | Indicates if an administrator's approval is needed for a user to get registered. Changing this setting requires a restart of the live site to take effect.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| Delete non-activated user after (days)         | When users register but do not activate their account, their account will be deleted after the entered number of days.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| Require unique user emails                     | If enabled, users cannot enter an email address during registration if the address is already used by another user's account.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| Content                                        |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Check page-level permissions                   | You can assign [permissions](https://docs.kentico.com/13/managing-users/configuring-permissions/configuring-page-permissions/page-level-permissions-acls.md) (access rights) for each page in the content tree. This setting indicates if the website checks the permissions of pages and apply them when browsing the live site. You can configure the permissions of pages in the **Pages** application on the **Properties -> Security** tab.<br>The following values are possible:<br>**All pages** – Access rights are checked for all pages on the website.<br>**Secured areas** – Access rights are checked for pages that are configured to require authentication (i.e. with the _Requires authentication_ property set to _Yes_ on the **Properties -> Security** tab).<br>**No pages** – Access rights are not checked at all. All users can see all pages on your website (but you can still require users to authenticate by configuring the _Requires authentication_ setting). |
| Administration                                 |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Automatically sign-in user when site changes   | If enabled, users will not need to enter their username and password when they switch between edited sites in the administration interface (using the **Site** drop-down list).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Enable code editing for site administrators    | Indicates whether users with the Administrator [privilege level](https://docs.kentico.com/13/managing-users/user-management.md) are automatically allowed to edit code on the website. If disabled, administrators can still edit code if they have the appropriate permissions assigned: **Edit SQL code** for the _Design_ module or **Edit SQL Queries** for the _Reporting_ module.<br>The restriction applies SQL queries, e.g. for objects in the Reporting module.<br>See [Special security permissions](https://docs.kentico.com/13/securing-websites/designing-secure-websites/configuring-permissions-securely/special-security-permissions.md).                                                                                                                                                                                                                                                                                                                                    |
| UI personalization                             |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Enable UI personalization                      | Indicates if [UI personalization](https://docs.kentico.com/13/managing-users/ui-personalization.md) is enabled. If this is the case, users only see those parts of the UI that are allowed for the UI profile assigned to their roles. If disabled, the entire UI is visible for all users.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| Reporting                                      |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| Default report connection string               | Sets the database connection string that the system assigns to newly created [reports](https://docs.kentico.com/13/configuring-xperience/working-with-system-reports.md). Existing reports also inherit the connection string value from this setting by default.<br>Only users who have the **Set connection string** permission for the _Reporting_ module can change the connection strings of individual reports.<br>The system loads the list of connection strings from the __ section of the application's web.config file. The _(default)_ option represents the _CMSConnectionString_ added by the application's initial database installer.<br>You can use reporting connection strings for the following scenarios:<br>Retrieving data from a Separated on-line marketing database<br>Restricting the database-level permissions of reporting queries via a connection string with a limited database user                                                                         |

Related pages

- [Permission model overview](https://docs.kentico.com/13/managing-users/permission-model-overview.md)
