Password Forgot
3 min
The passwordForgot call is intended to retrieve an Account Protection Score when a user clicks the Forgot Password link on your website. Use your Reset Password workflows after a passwordForgot event.
Timing
The API call should come to the Interceptas Platform:
- After a user clicks the Forgot Password.
- After they pass error handling, and you retrieve their account details, IP Address, and User Agent.
- Before you send the result of their request.
Flow

Password Forgot flow
- User navigates to your Forgot Password flow.
- User enters in password retrieval option, like email address, username, or phone.
- Client processes frontend validation to ensure all fields are filled in properly.
- Client checks backend error handling (account doesn't exist).
- Client retrieves account information, IP, and user agent.
- Client's back-end server calls Accertify.
- Accertify consolidates data and returns a score.
- Client determines appropriate action for passwordForgot.
See also:
