Enable password reset despite expired invitation for employees (B2B)
Currently, employees whose invitations have expired ("Status: Invitation expired") cannot set a new password via the "Forgot password" function in the frontend.
Instead, a new invitation from the administrator of the B2B account is required.
In our application context—for example, with decentralized employees, volunteers, or project participants—it often happens that invitations are not accepted immediately.
The two-hour deadline is too short in such scenarios. For the affected user, the lack of email functionality appears to be an error, leading to frustration and additional support effort.
Our suggestion:
- Allow a password reset even after the invitation has expired.
- Or: Provide a configuration that allows the invitation period to be adjusted or the password function to be unlocked.
- Optional: add a hint text in the frontend if no reset is possible ("Please contact the administrator of your corporate account").
Added value for Shopware:
- B2B function becomes more usable for realistic use cases.
- Fewer manual interventions by admins.
- More flexibility for more complex organizations such as corporations, associations, or NGOs.
1
vote
