0
Staged for Release

Change password

Peter van Meijel 1 year ago • updated by Jira user 3 weeks ago 5

As a user, I want to change my password so that I do not have to send myself a 'reset password link', open my mail, and set it manually.


(WHY) It is not possible for users to change their password without clicking on the I forgot my password link on the login page. This is not user friendly.

(WHO) A user

(WHAT) Allow the user to reset his password directly


Current Situation

To reset his password, a user:

  1. Has to logout of BizzStream
  2. Click on the I forgot my password link on the login page
  3. Open the reset password mail
  4. Click on the link
  5. Enter the new password twice
  6. Click on Ok.

This is not very user friendly, especially when the user has to do this on a mobile device.


Acceptance Criterea

We want to allow the user to set his password directly.


On desktop

On desktop, the user:

  1. Clicks on his Avatar
  2. Clicks on the Change password 
  3. The user enters the new password twice
  4. The user clicks on Ok.
    1. The password needs to pass the conditions for passwords. If not a notification appears returning what the user does wrong.
    2. If both passwords match, the password is changed and a notification appears.
    3. If the passwords do not match, a "These fields are not equal." validation message is displayed. (See screenshot 1)
  5. The user receives an email that his password has changed.



    On mobile

    On mobile, the user:

    1. Clicks on his Avatar
    2. Clicks on the Change Password menu item 
    3. The Change Password screen opens now 
    4. The user enters the new password twice
    5. The user clicks on save.
      1. The password needs to pass the conditions for passwords. If not a notification appears returning what the user does wrong.
      2. If both passwords match, the password is changed and a notification appears.
      3. If the passwords do not match, a "These fields are not equal." validation message is displayed.
    6. The user receives an email that his password has changed.



    • External users should not have this option
    • Once reset the password, the user should be logged out of all his sessions


    UI/UX Design


    Mockup 2: The Change Password link on mobile


    Mockup 3: The Change Password screen on mobile

    Uifalean Sergiu After changing password user should be logged out. External users should not be able to use this function.

    Vitaly Kirichenko please update subtasks to reflect the approach we discussed.
    Try to reuse the filter dropdown for the dropdown in the my profile modal
    Invalidate all sessions when logging out user after reset --> Add to last task

    In Progress
    Staged for Release