This article outlines the requirements for Personio passwords. It also explains how to enforce regular password changes for employees.
Password requirements
Passwords must:
- Contain 10 to 128 characters.
- Include at least one letter, one number, and one special character.
- Not include your name.
- Be different from your last 12 passwords.
Note:
If your organization uses single sign-on (SSO), password requirements may not apply. Learn more about different authentication methods.
Set up regular password changes
To improve security, you should enforce regular password updates. To set passwords to expire every 90 days for all employees:
- Go to Settings.
- In the Integrations section, click Authentication.
- In Password Configuration, click Edit.
- Select the 90-day password change checkbox. Employees receive a notification 10 days before their password expires.
When you turn on this setting, employees with passwords older than 90 days need to change them when they log in.
Follow password best practices
Keep the following recommendations in mind:
- Use a password manager to store passwords in an encrypted format.
- Avoid entering passwords using copy and paste.
- For added security, you can activate two-factor authentication (2FA).