Skip to main content
OwnPay provides a secure password reset flow that sends a time-limited link to the staff member’s registered email address.

Request a password reset

1
On the login page, click Forgot password?.
2
Enter the email address associated with your account.
3
OwnPay sends a reset link to that email. The link expires after a configurable duration (default: 30 minutes).
4
Click the link in the email and set your new password.
The reset link can only be used once. Requesting a new reset link invalidates all previous links.

Password requirements

New passwords must meet the policy configured in Settings > Security:
  • Minimum length - 12 characters (default)
  • Complexity - Must include at least one uppercase letter, one lowercase letter, and one number
  • History - Cannot reuse any of your last 5 passwords
The super-admin can configure the reset link lifetime in Settings > Security > Reset Link Expiry. Values are set in minutes. A shorter expiry improves security; a longer expiry is more convenient.

Super-admin password reset

If a staff member cannot access their email, the super-admin can manually reset their password:
  1. Go to People > Staff
  2. Find the user and click Reset Password
  3. Enter and confirm the new password
  4. The staff member is forced to change their password on next login
Super-admin password resets are logged in the audit log. Use this power sparingly and only when the standard email reset flow is unavailable.
Last modified on August 25, 2026