Overview
This article covers the steps you and your team can take to keep your SimplePart Control Panel account secure, including setting a strong password, using two-factor authentication (2FA), and recognizing phishing attempts. SimplePart is PCI DSS Level 1 certified — the highest standard for payment security — and account security is a shared responsibility between SimplePart and your dealership.
Before you begin
- Each employee who accesses the Control Panel should have their own login. Do not share credentials between staff members. Contact Client Services to set up additional user accounts.
- 2FA is required for all Control Panel users. You cannot opt out.
Choose a strong password
When creating or updating your Control Panel password:
- Use a mix of uppercase and lowercase letters, numbers, and special characters
- Avoid easily guessed information such as your name, dealership name, or birthdate
- Do not reuse passwords from other websites or accounts
If you need to reset your password, see Resetting your password or contact Client Services.
Set up two-factor authentication (2FA)
2FA requires a verification code in addition to your password each time you log in. This ensures your account stays protected even if your password is compromised.
How the login process works
- Go to secure.simplepart.com/manage and enter your username and password, then click Login
- When prompted, enter the mobile phone number or email address you want to use for verification
- If you have already completed setup, you will receive a code automatically at your registered contact
- Enter the verification code sent to your phone or email, then click Verify
- You will be taken to the Control Panel dashboard
Note: Do not navigate away from the verification page before completing Step 3. Clicking the SimplePart logo or using the browser back button will cancel the session and require you to start over.
2FA FAQs
Can I opt out of 2FA? No. 2FA is required for all Control Panel users.
I use my brand's Single Sign-On (SSO) portal — do I still need 2FA? Yes. All SimplePart Control Panel users must complete 2FA setup, regardless of SSO.
What if I don't have a mobile phone? Email authentication is available as an alternative. Contact Client Services to configure this.
How often do I need to verify? Every 30 days, or sooner if your device or login method changes.
My session expired and I used Refresh Login — why was I asked to verify again? When a Control Panel session expires, logging back in via Refresh Login is treated as a new session. You will be prompted to verify again. This is expected behavior and ensures your account stays protected.
I manage multiple staff members — how do I make sure everyone is enrolled? Each employee must have their own Control Panel login and complete their own 2FA enrollment. Contact Client Services to create accounts for additional users.
Will 2FA work outside the US? Yes. Both SMS and email verification are supported internationally.
I lost my device or need to change my phone number or email — what do I do? Contact Client Services to update your authentication details.
Troubleshooting 2FA
-
I entered the correct code but it isn't being accepted
- Verification codes expire quickly. Request a new code and enter it promptly without navigating away from the page
-
I'm not receiving a verification code
- Check your spam or junk folder if you're expecting an email. Wait up to 2 minutes before requesting a new code. If the issue continues, contact Client Services to confirm your registered contact details
-
I was redirected back to the login page after entering my code
- Your session may have timed out during verification. Return to secure.simplepart.com/manage and log in again from the beginning
-
The verification screen disappeared
- If you clicked away from the page or hit the browser back button, your session was reset. Start the login process again
Keep your credentials private
- Never share your username or password via email, chat, or text
- Update your password immediately if you believe it has been shared or compromised
- If a staff member leaves your dealership, contact Client Services to deactivate their account
Recognize phishing attempts
Phishing emails are fraudulent messages designed to look like they are from a trusted source. Their goal is to trick you into sharing your login credentials or clicking a malicious link.
If you receive a suspicious message:
- Do not click any links or download attachments
- Do not reply to the sender
- Forward the message to your IT team or contact Client Services to verify whether it is legitimate
SimplePart will never ask for your password via email.
How SimplePart protects your account
- PCI DSS Level 1 certification ensures payment data and sensitive information meet the highest industry standards
- Encryption, firewalls, and continuous monitoring protect against unauthorized access
- Suspicious orders are actively flagged and investigated to prevent fraud
Need help?
Our in-house Client Services team is available Monday-Friday, 8 a.m. to 8 p.m. EST to help you with any questions or issues. You can reach us in the following ways:
👉 Submit a request through this support form
📞 Call us at 1 (888) 843-0425
📧 Email us at support@simplepart.com
We’re ready to help you get the most out of your SimplePart experience!