Your security is always our top priority. Part of our commitment is to educate you on our enhanced security protocols, as well as steps that you can take to protect your information. By working together, we can reduce the risk of fraud so you can focus on what matters most—collecting more rewarding moments.
Here’s what we’ve been up to
We’ve recently upgraded our security protocols to better safeguard member accounts. To take advantage of this enhanced protection, we ask that you follow these few simple steps if you haven’t yet already:
- Log in and convert your credentials from member number and PIN to email and password.
- Log in and add a phone number to enable 2-factor authentication (available starting February 26, 2025).
- Ensure you’re using a strong, unique password that isn’t used for other websites or apps and is a unique mix of special characters, upper- and lower-case letters, numbers and symbols.
We understand that these steps can feel like a pain, but we assure you they’re well worth your time to keep your account safe.
Let’s talk about Phishing
In a nutshell, phishing attacks attempt to trick you into providing personal or confidential information by mirroring a message that would come from a legitimate company or website. They can appear in the form of an email, text message or phone call. It’s important that you’re able to recognize these attempts so that you don’t inadvertently give fraudsters access to your personal information.
“Yikes! Should I be scared?”
Scared—no. Aware—yes. Here are a few tips on how to stay ahead of phishing attempts:
- Be skeptical of unexpected or unusual emails, texts and phone calls—especially those that request personal info or prompt immediate action.
- Verify email sender information—always check the sender’s email address carefully. Scammers often use addresses that closely resemble ours but with small differences. Note that our email address ends in “bluerewards.ca” such as, “no-reply@partnernews.bluerewards.ca.
- Look for red flags– watch for poor grammar, misspellings, and generic greetings (such as “Dear Customer”).
- Be wary of links—especially if they lead to sites requesting personal information.
- Don’t click on attachments from unknown sources, such as PDF and ZIP files.
“What else can I do?”
So glad you asked! In addition to being aware of phishing attempts, here are some specific actions you can take to keep your Blue Points safe:
-
- Use a strong, unique password and change it frequently.
- Lock your Blue Points account—while an account is locked, Points can’t be used but you can continue to earn Points like always.
- Read our Security and Privacy FAQs
- Visit our Security Centre
Noticed suspicious activity?
First—determine the type of unauthorized activity. If it’s a suspicious purchase or merchandise redemption, contact us as soon as possible to get help. You may be a victim of fraud.
If you’ve noticed any suspicious activity with your account, such as receiving a verification passcode from Blue Rewards without requesting one, we recommend resetting your Blue Rewards account password immediately by following these steps:
-
- Sign in to your Blue Rewards account.
- Select “Your profile” and then “Update my profile”.
- Select “Change Password” under Member Information.
- We will send you an email to reset your Password.
If you’re still concerned, visit our Support Centre or Contact Us
Stay informed. Stay ahead.
With a few simple steps, you can reduce the risk of fraud, protect your personal information and keep your Points safe. Let’s keep working together so that you can get the most out your benefits and collect more rewarding moments.