Step 1
Submit your account email
HostMatic creates a recovery request without revealing whether an email is registered.
Recovery path
Password reset requests stay hashed, time-limited, and single-use from the moment the recovery token is issued.
HostMatic creates a recovery request without revealing whether an email is registered.
Recovery tokens are hashed at rest, expire automatically, and can only be used once.
After the reset completes, HostMatic revokes existing sessions and continues with your new password only.