Account recovery
We run the recovery. You keep the keys.
Every provider has its own way back into a lost or stolen account, and most people meet it for the first time on their worst day. We know the processes. We prepare each request, run it with you step by step, and keep a dated record, while your password and your codes stay with you.
If it is happening now
Contact us from a device and account the other person has never accessed. Do not change passwords yet: the order matters, and the primary email comes first. In immediate danger, call 911.
The one rule
No one at Unscathed, and no tool we use, holds your password or types a code for you. A code sent to your phone or your email is for your eyes and your device. If anyone asks you to read a code aloud or forward one, including someone who says they are from Unscathed, it is a scam: hang up and contact us through this site.
We do not need your password to start. Our contact form refuses one if it is typed in, and so do we.
How a recovery runs
-
Map what unlocks what
The primary email resets most other accounts, the phone number receives most codes, and the rest hang off those two. We work out the order before anyone touches anything.
-
Prepare each request
We open the provider's own recovery process and fill it from what you can tell us: the account identifier, the recovery contact that used to be on file, earlier case numbers, the dates and devices you remember. Nothing secret goes in.
-
Run it with you
On a call or over a shared step list, each step is handed to the person who has to take it. The one step only you can do, such as a code on your phone or an ID photo you upload yourself, happens on your device.
-
Escalate when the automated path says no
Appeal routes, support forms, and a second attempt with better evidence, with a record of what was already tried so nothing is repeated.
-
Take the intruder out
Once you are back in: trusted devices, open sessions, forwarding rules, connected apps, and changed recovery contacts are cleared, and the account moves to security keys or passkeys.
-
Close out
A dated record of each step, written so a bank, insurer, or attorney can follow it.
Accounts we work
The ones that are stolen most, and the ones that hurt most when they are.
- Email: Google, Microsoft, Apple, Yahoo, and the address on your own domain
- Phone lines: SIM swaps and port-outs, and the carrier account behind them
- Banks, cards, and payment apps, worked alongside your bank's own fraud process
- Social and creator accounts: Instagram, Facebook, TikTok, X, YouTube, LinkedIn
- Marketplaces and seller accounts, and the payouts attached to them
- Domains, websites, and the registrar and hosting accounts that control them
- Government logins: IRS, Social Security, Login.gov, ID.me, and state benefits
- Password managers and cloud backups, which are recovered last and secured first
For someone you represent
A parent, a guardian, an executor, or counsel can engage us for someone else, with the authorization on file. The steps only the account holder can take still happen with that person, or with whoever holds legal authority for them, and the record shows who did what.
After the recovery
An account that was taken once is usually taken again through the same route. Recovery is the first part of restoration: the phone line, the bank, the credit bureaus, and the listings that made you a target come next, and the protections put in place are re-checked on a schedule under Kept Gone.
Limits
- Providers decide whether an account is returned. We bring the right request, in the right order, with documentation
- Proof of ownership is yours. We help you find and assemble it; we do not create it
- We do not recover money; your bank decides what is returned
- We do not investigate or identify who is responsible. That is for law enforcement or a licensed investigator