Resetting Your Password
How to use a password reset link to set a new password for your Aura account.
If you've forgotten your password, or clicked Forgot password? on the sign-in page, you'll receive an email with a secure reset link. This page explains what happens when you open it.
Getting a reset link
On the sign-in page, click Forgot password?, enter your email, and click Send Recovery Link. If the request succeeds, check your inbox for an email containing the reset link.
Opening the link
The link takes you to a dedicated reset page. What you see depends on the state of the link:
- Verifying your link… - a brief loading state while the token is checked.
- Link Not Valid - shown if the link is missing its token/email, or the server can't validate it (already used, malformed, or unrecognized). You'll see Request a New Link (which takes you back to sign-in with the recovery form pre-opened) and a Back to sign in link.
- Link Expired - shown if the link was valid but has since expired. Reset links expire 15 minutes after they're sent. You get the same Request a New Link and Back to sign in options.
- Set New Password - shown once the link is confirmed valid and not yet expired. This is the form described below.
While the form is showing, a countdown badge at the top reads "Link expires in mm:ss" and ticks down live. It turns orange once less than a minute remains. If the countdown reaches zero while you're still on the page, it switches to the Link Expired state automatically - so submit before time runs out.
Setting a new password
The form has two fields: New password and Confirm new password, each with an eye icon to toggle showing the text. Spaces are stripped automatically as you type into either field.
Password strength meter
As soon as you start typing a password, a strength bar and checklist appear below the field, tracking five rules:
- At least 8 characters
- One uppercase letter
- One lowercase letter
- One number
- One special character
The bar fills in per rule met and is labeled based on how many rules pass:
| Rules met | Label |
|---|---|
| 1–2 | Weak |
| 3 | Fair |
| 4 | Good |
| 5 (all) | Strong |
Confirm password matching
As you type into Confirm new password, you get live feedback below the field: a green "Passwords match" once it matches your new password exactly, or a red "Passwords do not match" if it doesn't.
Submitting
The Reset Password button stays disabled until all five strength rules pass and the confirmation matches. If you submit without meeting the requirements, you'll see "Please meet all password requirements." or "Passwords do not match." above the form.
If you enter your current password
If the new password you submit is the same as your account's current password, the server rejects it and the form shows an amber notice: "This is your current password. Choose a new one, or sign in directly." along with a Sign In Instead button that signs you in immediately with that password, without requiring a change.
After a successful reset
On success, Aura attempts to sign you in automatically with your new password and redirect you into the app. If that automatic sign-in doesn't complete, the page falls back to a confirmation screen - "Password Reset!" with the message "Your password has been updated successfully." - and a Sign In Now button to complete sign-in manually.
Every state on this page (loading, invalid, expired, and the form) also has a Back to sign in link, so you're never stuck.
Last updated on