Support  »  

Notifying Your Customers of Your New Website

If you have visibility to passwords associated with your current site, the passwords are stored in an insecure, unencrypted (or weakly hashed) format, which is why they were visible in the database. Modern e-commerce platforms, including the secure site we're building for you, never store or have access to customers' actual passwords. Instead, we use strong, one-way hashing with unique salts, meaning the original passwords cannot be recovered or migrated. 

For security and compliance reasons, your customers will need to create new passwords when they first log in to the new site. This is standard industry practice and actually protects both your business and your customers from potential data breaches. 

However, we understand wanting to make it as easy as possible for your existing customers to start using your new website. Therefore, we can implement the following steps to accomplish that goal:

  • Create a one-time import of your existing customer records that have valid email addresses and no passwords.
  • Send an e-mail to each of the customers with email addresses with a unique URL they click to create a new password that meets our minimum security standards. Their new password will be encrypted/salted.
  • Upon successful completion of this form, via this custom URL, their account is active and accessible.
  • If they choose not to use the email to assign a password, they can use the standard  'Forgot Password' option at any point in the future to request a new password reset email.

We will provide the Excel file format required for the import. 

The cost to implement is $375 assuming your Excel file is properly formatted. If you need help preparing your data, it is available for $95/hour and most files can be prepared in 2 hours or less.