Skip to content

New-user login information

Where to find it
Administration → Users
Who can use it
Administrators with user-management access

When you create a user, Nextal can send them their login information by email for you — you no longer have to generate a password and pass it along by hand. By default, the new user receives an email with the application URL, the email address to sign in with, and a secure one-time link that shows their password exactly once.

Creating a user with email login instructions

In Administration → Users, click Add a user and fill in the usual fields (first name, last name, email, dates, type, security group). In the create panel, a Send login instructions by email option is on by default.

On creation, 'Send login instructions by email' is on by default: no password field is shown.

While the option is on:

  • no password field is shown — the password is generated on the server, never in the browser;
  • a helper line confirms what happens: “The user will receive an email with a secure, one-time link to reveal their password.”

Click Add to create the account. A notification confirms the send: “User created — login instructions sent to {email}”.

What the new user receives

The email sent to the new user contains three things:

  • The application URL — the link to open Nextal.
  • Their sign-in email — the address to sign in with.
  • A secure one-time link — to reveal their initial password.

The link in the email opens a public page (no sign-in required) that shows the password exactly once. Nothing is revealed when the page loads: the user must click Reveal password. A warning first tells them that “For your security, this password will be shown only once.”

The reveal page. Nothing appears until the user clicks 'Reveal password'.

Once the button is clicked, the password appears with a Copy button, and a reminder notes that “You will be asked to set a new password the first time you sign in.” A Go to sign-in button takes them to the login page.

Two limits protect the link:

  • One-time use — the password is revealed only once. Reloading or reopening the page after revealing no longer shows it.
  • Expires after 7 days — past that window, the link stops working.

A link that was already used, has expired, or is invalid shows the same message: “This link has expired or was already used. Please ask your administrator to resend your login information — they can do this from the user management page.”

Setting the password manually

If you prefer to share the password yourself, turn off the Send login instructions by email option in the create panel. The Password field reappears: type one, or click Generate password to create a strong one and Copy it. In this mode, no email is sent — it’s up to you to share the password securely.

Resending login instructions

An expired or already-used link can’t be reactivated. When a user can’t retrieve their password, you generate a new one from the user list: open the menu on their row and choose Resend login instructions.

A row's ⋯ menu offers 'Resend login instructions'. A confirmation dialog appears before the send.

A confirmation dialog appears: “Resend login instructions to {email}? A new password will be generated and the previous link will stop working.” Click Resend to confirm. A new password and a new one-time link are created and a new email is sent — the old link stops working immediately. A notification confirms: “Login instructions resent to {email}”.

Google / Microsoft (SSO) accounts

If your Nextal account uses Google or Microsoft single sign-on, there is no password to manage and no email is sent. In the create panel, the email option is replaced by a message explaining that “Users on this account sign in with Google [or Microsoft]. No password is created — they use the SSO button on the login page.”

After creation, Nextal shows a reminder of how to sign in, under the heading How this user signs in:

  1. Open the Nextal sign-in page.
  2. Click the Google (or Microsoft) button below the sign-in form.
  3. Sign in with the Google (or Microsoft) work account.
On an SSO account there is no password or email: the panel explains how the user signs in with the SSO button.

See also

  • Users — add, edit, activate and deactivate accounts.
  • Security groups — what each user can see and do.