Password Change
Keep your GitScrum account secure by regularly updating your password. This guide covers how to change your password and what happens after.
Accessing Password Change
From your Profile page:
- Navigate to Profile (click avatar → Profile)
- Locate "Password" button in header section
- Click to open password change modal
The button appears alongside the Edit Profile button, only visible when viewing your own profile.
Changing Your Password
Step 1: Open Modal
Click the Password button to open the change password dialog.
Step 2: Enter New Password
- Type your new password in the field
- Use the eye icon to toggle visibility
- Verify you've typed correctly
Password Requirements
| Requirement | Description |
|---|---|
| Length | Minimum 8 characters |
| Maximum | 25 characters |
| Characters | Any combination of letters, numbers, symbols |
Step 3: Confirm Change
- Click "Change" button
- Wait for confirmation
- Success message appears
After Password Change
Immediate Logout
After successful password change:
- Confirmation displays: "Password changed!"
- Countdown starts: "Logging out in 5s..."
- Automatic redirect to login page
- All sessions ended across all devices
Why Automatic Logout?
Security measure to ensure:
- Old sessions cannot continue using account
- Any compromised sessions are invalidated
- You must verify new password works
- Clean authentication state
Signing Back In
- Enter your email
- Enter new password
- Complete 2FA if enabled
- Access restored
Password Best Practices
Creating Strong Passwords
Do:
- Use 12+ characters when possible
- Mix uppercase, lowercase, numbers, symbols
- Use passphrases (multiple random words)
- Generate with password manager
Don't:
- Reuse passwords from other sites
- Use personal information (birthdays, names)
- Use sequential patterns (abc123, qwerty)
- Share passwords with others
Password Examples
Weak:
- password123
- john1985
- qwerty
Strong:
- Kx9#mP2$vL8nQ4@w
- correct-horse-battery-staple
- $unfl0wer!Mountain#2024Update Frequency
Recommended password update schedule:
| Situation | Recommendation |
|---|---|
| Regular update | Every 6-12 months |
| Suspected breach | Immediately |
| Shared computer used | After each use |
| Team member leaves | If password was shared |
Password Recovery
Forgot Password
If you forget your password:
- Go to login page
- Click "Forgot password?"
- Enter email address
- Check email for reset link
- Click link within 24 hours
- Set new password
Reset Link Expiration
Password reset links expire after 24 hours for security. Request a new link if expired.
Troubleshooting
Password Not Accepted
If your new password is rejected:
| Issue | Solution |
|---|---|
| Too short | Use at least 8 characters |
| Too long | Maximum 25 characters |
| Contains spaces | Remove leading/trailing spaces |
Cannot Sign In After Change
- Verify you're using the new password
- Check caps lock is off
- Clear browser autofill if outdated
- Try "Forgot password" if unsure
Still Logged In Elsewhere
After password change, all sessions should end. If you notice activity:
- Check active sessions in browser settings
- Clear all browser cookies for GitScrum
- Contact support if unauthorized access suspected
Security Notifications
When you change your password, GitScrum sends:
- Confirmation email about password change
- Alert if change was unexpected
If you receive notification about a password change you didn't make:
- Immediately reset password
- Enable 2FA if not active
- Review account activity
- Contact support if concerned
Related to Password
Two-Factor Authentication
Adding 2FA provides additional security beyond password:
- Password alone cannot access account
- Protects against password breaches
- Requires authenticator app code
See Two-Factor Authentication for setup.
Session Management
Your password protects all sessions:
- Browser sessions
- API token generation
- Mobile app access
Changing password ends all active sessions for security.
Frequently Asked Questions
Why am I logged out after changing password?
Security requirement. All sessions end to ensure any potentially compromised sessions are invalidated. This protects against unauthorized access if your old password was known by someone else.
Can I use my old password again?
Yes, GitScrum does not prevent password reuse. However, using a new unique password is recommended for security.
How long until I'm logged out?
A 5-second countdown displays after successful change. You're redirected to login after countdown completes.
What if I forget my new password immediately?
Use the "Forgot password" option on the login page to receive a reset link via email. Set a new password through that link.
Does password change affect API tokens?
No, existing API tokens remain valid after password change. Revoke tokens separately if needed.
Related Pages
- Profile - Main profile settings
- Two-Factor Authentication - Enhanced security
- Support - Account assistance