No shell: you are not in an org yet.

Reset your password

Tell us the address you sign in with and we will send a link. It works once and it lasts an hour.

Doc 22 line 343: "ordinary account recovery is handled by the configured IdP", and ADR-0100 decision 1 says we build no recovery at all. So on the documented model this screen does not exist and the way back in is your provider's own recovery. Drawn with the password route it belongs to — a password you cannot recover is worse than no password

Back to sign in
or

If you signed in with Google, Microsoft or GitHub there is no password here to reset — that provider holds it, and its own recovery is the way back. Try that route instead.

You are on auth.kordin.io. A reset link that points anywhere else did not come from us. Remembered it? Sign in.
Kordin Neo

Check your email

If [email protected] has a sign-in, a reset link is on its way to it. We say if on purpose: telling you whether an address is registered would tell anybody who asks the same thing.

SentJust now, if there is anything to send toGood forOne hour, once
Back to sign in
Kordin Neo

Set a new password

The link checked out. Choose something you have not used here before — this ends every signed-in session you have, on every device, the moment you save it.

At least twelve characters, and checked against known-breached passwords.
What saving this does. Ends every session you have signed in with, everywhere. It does not touch your API keys — a key is a separate credential with its own list, and revoking one silently here would stop production from a recovery screen. Revoke keys where keys live.
Kordin Neo

That reset link has run out

Reset links last an hour and this one was made yesterday. Nothing was changed, no session was ended, and your old password still works if you can remember it.

This link cannot be revived — that is what makes it worth anything. Asking for another takes one press.

you can fix this

That link has expired and nothing was changed. Links are good for one hour and work once; start again to get a new one.

Reference 15d2af7af1a3Get help ›
Show the code RECOVERY_LINK_EXPIRED proposed code
Kordin Neo

Your org handles this, not us

Acme Labs signs in through its own provider, so there is no password here for us to reset. Whatever your company uses to get you back into everything else is what gets you back into this.

This is the ordinary case, not the exception. Where an org federates, recovery belongs to whoever holds the identity — the same place your laptop sign-in and your mail come back from. Us offering a second way in would be a second way in.

If you do not know who that is: whoever set up your work email. It is the same people.

Kordin Neo

proposed getting an org back when nobody can administer it takes verified checks and more than one person, and how that runs is not written yet

Nobody can get into Acme Labs

This is not a forgotten password. The last person who could administer Acme Labs is gone, and no button anywhere can fix that — if one could, it would be the way in for anybody who wanted the org.

What it takes instead. More than one person, checks that happen away from this screen, and a record of who asked and who approved. Slow on purpose, and drawn here so the slowness is something you were told about rather than something you discover.
Safe meanwhile Everything keeps running. Services serve, keys keep working, and nothing is deleted while this is open — losing the last owner does not lose the org.
Frozen meanwhile Anything needing an owner: roles, paying, deleting the org. Not because of this request, but because there is nobody who could authorize them.
Kordin Neo