Have an idea?

Force password change

When we create new shop accounts we create them manually with a random and then send sign in information to customer by email. Having passwords in emails is bad security wise, and we always encourage our customers to change password after their first sign in. But we have no control about who is actually doing it.

It would be great if we on the Shop Account page could have some "Force to change password at next sign in" field, forcing the customer to actually change their password.

This would make eCommerce so much safer for Sana users.

13 votes
Vote
Sign in
(thinking…)
Password icon
Signed in as (Sign out)
You have left! (?) (thinking…)
Christian shared this idea  ·   ·  Flag idea as inappropriate…  ·  Admin →

[SANA PRODUCT] We have a new feature in Sana 9.3.2 where the Sana Admin user can easily send an email to the newly created Sana shop account. This email will not contain the password, but will contain a link to the reset password page. In this way, the shop account is forced to reset his password en choose his own password. That should solve your problem.

1 comment

Sign in
(thinking…)
Password icon
Signed in as (Sign out)
Submitting...
  • Tristan Johnson commented  ·   ·  Flag as inappropriate

    We do something similar but instead of sending the temporary password to the customers, the link in our confirmation email takes them directly to the Password Reset page. We just never provide them with the temporary password. Below is the text that we use in our email. So far we have had no issues with this and no customer complaints.

    "Welcome to XXXXXXX! Your login has been created. You can login to make purchases, update your profile, and view order status and history.

    Your Username is shown below. Please [CLICK HERE] to reset your password and begin using the site. "

Feedback and Knowledge Base