The entry to the login device management page is in the OKX App's Security Center. If you find an unknown device, just click [Remove Authorization] to kick it out, and its login access will be immediately revoked.
Step 1: Find the "Device Management" Entry
Both web and App paths are in the security settings, but the App side's operation path is more complete.
App: Open OKX App, tap [Me] at the bottom right, enter [Security Center]. Find [Authorization Management] or [Device Management] under the "Login & Devices" or "Security Settings" category.
Web: Log in to OKX official website, click the avatar icon at the top right to enter [Account Center], in the [Security Center] menu find [Device Management].
Completion standard: Enter the device management page, you can see a list of all currently logged-in devices, including device name, login time, IP location, etc.
Step 2: Identify and Remove Unknown Devices
The device list shows detailed information of each device. Pay attention to device name and IP location. If you see an unfamiliar device name, or a login location that is clearly wrong (for example, you are in Hangzhou but there is a Xiaomi tablet from Beijing logged in at 3am), that is a suspicious device.
How to do it
In the device list, find the suspicious device and click the [Remove] or [Revoke Authorization] button on the right.
The system will ask for two-factor verification (SMS code or Google Authenticator). Enter the code and confirm.
The device will be immediately forced offline, and all login credentials will be invalid.
Completion standard: The suspicious device disappears from the list, leaving only your current device and those you clearly recognize as your own commonly used ones.
High risk warning: Removing an unknown device only cuts off current access, but does not fix the password leak problem. If you see an abnormal device, your password may have been leaked. After removing the device, you must change your login password immediately, and check whether your Google Authenticator (GA) has been tampered with.
Step 3: Check Login History, Lock Down Abnormal Time Periods
After removing the device, on the device management page you can also view more detailed login records, including login type (Web/App/API), operating system version, browser information. If you find a large number of abnormal logins during a certain time period, it means your account information has been leaked. Simply deleting devices is not enough — you also need to change your password and reset 2FA.
Verification after the operation: After removing the unknown device, close all browser tabs and re-log in on a device you have confirmed as safe. Confirm you can receive the verification code normally. If you find that new unknown devices still appear after removal, your account password has been leaked. You must immediately change the password, reset Google Authenticator, and check for any abnormal API keys.


