Notice where the login stops
If the password form returns, recover the login email or password. If a six-digit code or authenticator challenge appears, the password has normally been accepted and the problem is 2FA.
Basic checks
Use the Client Area credentials, not Plesk or mailbox credentials
- Open billing.uk-cheapest.co.uk directly and check the browser address before entering credentials.
- Use the email address assigned to the WHMCS login. An account contact or mailbox address is not necessarily a login.
- Type the password once or use a password manager; repeated submissions can invalidate a session or trigger protection.
- Try a private window or another browser if the form loops, then allow cookies for the billing site.
Password recovery
Request one reset and use the newest message
Open Forgotten password, enter the login email and wait for the message. Check junk mail and do not request several resets in quick succession: an older link may stop working after a newer request.
A reset message cannot reveal whether an email address has an account. This protects client privacy. If no message arrives, check other addresses previously used with UKC.
Two-factor challenge
Use the newest code once and wait
UKC Email 2FA sends a six-digit code to the login email. It remains valid for ten minutes. Type, paste or autofill the code, submit once and allow the page to finish. If an eligible UK mobile is recorded, a delayed SMS fallback may be offered.
For an authenticator app, enable automatic date and time on the device. A saved backup code can be used through Login using Backup Code.
2FA recovery guideNo access to the email
Do not create a replacement account for existing services
If you no longer control the login email, support must verify account ownership before changing access. A new account will not automatically contain the existing domains, invoices or hosting services.
After access is restored
Review My Details, account users, the login email, mobile number and 2FA recovery method. Use a unique password and never send a password or live verification code to support.
Still locked out?
Tell support the account name, likely login email, one domain or service on the account, the exact stage that fails and the message shown. Do not send passwords, card details, backup codes or live 2FA codes.
Request account recovery