Overview
Your password is the key to your GSK POS account. Changing it regularly and keeping it secure protects your business data, customer information, and your professional reputation.
What you'll learn:
- How to change your password
- Creating strong passwords
- Password security best practices
- Troubleshooting password issues
Why Password Security Matters
Your password protects:
- Business financial data
- Customer personal information
- Inventory and pricing details
- Your job (unauthorized access can be blamed on you)
Security requirements:
- Change every 90 days (recommended)
- Never share with anyone
- Use strong, unique passwords
- Change immediately if compromised
How to Change Your Password
**Step-by-Step Guide**
Step 1: Access Password Change
- Log into GSK POS
- Look for "Change Password" in the menu
- Usually in Settings or User menu
- May be in sidebar or top navigation
- Click to open password change form
Step 2: Complete the Form
Three fields to fill:
1. Old Password (Current Password)
- Enter your existing password
- The one you currently use to log in
- Must be correct or change won't work
- Security check to prevent unauthorized changes
2. New Password
- Enter your desired new password
- Choose a strong password (see tips below)
- Any length accepted (8+ characters recommended)
- Mix letters, numbers, and symbols
3. Confirm New Password
- Re-type your new password exactly
- Must match "New Password" field
- Prevents typos
- Ensures you remember the new password
Step 3: Submit Change
- Double-check all three fields
- Click "Change Password" button
- Wait for confirmation
Step 4: Confirmation
- Success message appears
- "Password changed successfully"
- New password active immediately
Step 5: Verify
- Log out of GSK POS
- Log back in with new password
- Confirm it works
- Store password securely
Creating Strong Passwords
**Strong Password Checklist**
- ✅ At least 8 characters (longer is better)
- ✅ Mix of UPPERCASE and lowercase
- ✅ Contains numbers (0-9)
- ✅ Contains symbols (@, #, $, !, *, etc.)
- ✅ Not a dictionary word
- ✅ Not personal info (name, birthday, phone)
- ✅ Unique (not used elsewhere)
**Examples**
❌ Weak Passwords (DON'T USE):
- `password` - Too common
- `12345678` - Too simple
- `john1990` - Personal info
- `admin` - Default/obvious
- `qwerty` - Keyboard pattern
- `gskpos` - Company name
✅ Strong Passwords (GOOD):
- `Shop@2024!Secure` - 16 chars, mixed
- `MyP@ssW0rd#GSK` - Substitutions, symbols
- `C@sh!er*2024*` - Role + year + symbols
- `Coffee!Table@2024` - Random words + symbols
**Password Creation Methods**
Method 1: Passphrase
- String of random words
- Easy to remember, hard to guess
- Example: `Purple!Elephant#Moon@2024`
Method 2: First Letters
- Take memorable phrase
- Use first letter of each word
- Add numbers and symbols
- Example: "I work at GSK POS since 2024"
→ Iw@GPsince2024!
Method 3: Password Generator
- Use password manager app
- Generates random strong passwords
- Examples: LastPass, 1Password, Bitwarden
Method 4: Modified Personal
- Start with something familiar
- Add random elements
- Example: Pet name "Max" → `M@x!2024#Secure`
Password Security Rules
**DO's ✅**
- ✅ Change Regularly
- Every 90 days (3 months)
- Set calendar reminder
- More often if shared or suspect compromise
- ✅ Use Unique Passwords
- Different for each account
- GSK POS password ≠ email password
- If one gets hacked, others stay safe
- ✅ Store Securely
- Password manager app (best)
- Physical notebook in locked drawer (OK)
- Not sticky note on monitor
- Not phone notes app
- Not in email
- ✅ Report Compromises
- Tell admin immediately if account accessed
- Better safe than sorry
- Admin can investigate and reset
**DON'Ts ❌**
- ❌ Never Share
- Not with coworkers
- Not with family
- Not with "IT support" (they can reset, don't need yours)
- Not with anyone claiming to be from GSK
- ❌ Don't Use Personal Info
- Not your name, birthday, phone
- Not family member names
- Too easy to guess
- ❌ Don't Reuse Old Passwords
- Don't cycle through same 3-4 passwords
- Create fresh ones each time
- System may prevent reuse anyway
- ❌ Don't Save in Browser (Work Computer)
- Shared/public computer → never save
- Personal computer → maybe OK
- Anyone using that computer can access
- ❌ Don't Fall for Scams
- Real support never asks for password
- They can reset without knowing it
- Email asking for password = scam
- Phone call asking for password = scam
Password Manager Recommendations
**Why Use Password Manager?**
Benefits:
- Generates strong random passwords
- Remembers all passwords for you
- Only remember one master password
- Auto-fills login forms
- Works across devices
- More secure than memory
Popular Options:
- LastPass - Free/Paid, cross-platform
- 1Password - Paid, very secure, family plans
- Bitwarden - Free/Paid, open-source
- Dashlane - Paid, user-friendly
- KeePass - Free, offline storage
How It Works:
- Install password manager
- Create strong master password
- Store all other passwords in it
- Access with master password
- Auto-fill when logging in
Troubleshooting
**"Old Password Incorrect"**
Cause: Password in "Old Password" field doesn't match current password
Solutions:
- Check caps lock (case-sensitive)
- Check for typos
- Type slowly and carefully
- If forgotten → Need admin to reset
**"New Passwords Don't Match"**
Cause: "New Password" and "Confirm" fields don't match exactly
Solutions:
- Check both fields carefully
- Look for typos
- Check caps lock
- Type new password in notepad first
- Copy/paste into both fields
**Changed But Can't Login**
Possible Causes:
Typing Wrong:
- Check caps lock
- Watch what you type
- Try carefully again
Browser Autofill:
- Browser using old password
- Clear autofill
- Type manually
- Clear cache if needed
Still Using Old:
- Maybe change didn't save
- Try password change again
- Contact admin if persists
**Forgot Password**
Cannot change without old password
Solution:
- Contact your system admin
- They will reset your password
- You'll get temporary password
- Log in with temporary password
- Change to your own password immediately
Password Change Schedule
**Recommended Frequency**
Every 90 days (quarterly):
- Set calendar reminder
- Change before reminder
- Don't wait until forced
Immediately if:
- You suspect account accessed
- Password shared accidentally
- Security breach at company
- Leaving old device/computer
- Notice unusual activity
**Setting Reminders**
Options:
- Calendar app: Repeat every 90 days
- Phone reminder
- Sticky note on calendar (just reminder, not password!)
- Team password change day (all change together)
Best Practices Summary
Creating Passwords:
- 8+ characters minimum
- Mix case, numbers, symbols
- No personal information
- Unique for each account
Storing Passwords:
- Password manager (best)
- Locked physical notebook (OK)
- Never plain text on computer
- Never sticky notes
Changing Passwords:
- Every 90 days routine
- Immediately if compromised
- Never reuse old passwords
Protecting Passwords:
- Never share with anyone
- Don't fall for scams
- Report suspicious activity
- Log out when done
Summary
Password security is your personal responsibility:
- ✅ Change regularly (every 90 days)
- ✅ Use strong, unique passwords
- ✅ Store securely
- ✅ Never share
- ✅ Report compromises immediately
Your password protects:
- Your job
- Company data
- Customer privacy
- Business operations
Take it seriously!
What's Next?
Continue learning about user management:
- User Activity Tracking - Monitoring and accountability
Next: Sales & Purchase Reports
Learn how to generate detailed and summary reports for all your sales and purchase transactions.
Next: Sales & Purchase Reports →