When you set or reset a password in Avionté®BOLD, a strength meter checks it in real time and gives you feedback as you type. You're not required to reach the top of the scale to proceed, but a stronger password protects both you and your organization — it's worth the extra few seconds.
Password Requirements
Your password must:
- Match exactly in both password fields.
- Be at least 8 characters long.
- Contain at least 3 of these 4 character types:
- Lowercase letters (a–z)
- Uppercase letters (A–Z)
- Numbers (0–9)
- Special characters (e.g.
!@#$%^&*)
Beyond those hard requirements, avoid these patterns — the strength meter will flag all of them, and they're the first things an attacker's password-cracking tools check for:
- Real names, company names, or parts of your email address
- Dates or years (birthdays, anniversaries, the current year)
- Repeated characters or short repeating patterns (
aaa,abcabc) - Keyboard patterns (
qwerty,12345) - Common or previously breached passwords, with or without capitalization or symbol swaps
- Sequences like
12345, or words like "password" or "Avionte"
The single best way to strengthen a password isn't a symbol or a capital letter — it's length. Adding one or two extra, unrelated words does more for your security than swapping a letter for a lookalike symbol ever will.
Understanding the Strength Meter
As you type, the meter rates your password across five tiers, from Insecure (weakest) to Strong (best). Here's what each tier means and why the meter flags what it flags:
Insecure
The password is trivially easy to guess — it's a bare keyboard pattern, a repeated sequence, or a password from a known breach list, with no other words added. Add one or two unrelated words to move out of this tier; obscure words help more than common ones.
Bad
The password is a known-common password, a name or date on its own, or a keyboard/character pattern — still easy for cracking tools to guess. Capitalizing a letter or using all-uppercase doesn't meaningfully change this: crackers check both cases automatically, so it's not a substitute for a genuinely different password.
Weak
The password is a close variation of a common one — often a common word or password with a predictable symbol swap, like @ for a or 0 for o. Cracking tools test these substitutions automatically, so they add little real protection. Adding an extra unrelated word is far more effective than swapping characters.
Good
The password meets the recommended strength bar: it isn't a known or guessable pattern, and it's long enough that guessing it isn't practical. No changes needed.
Strong
The password is highly resistant to both automated guessing and targeted attempts. This is the top of the scale — nothing further to do here.
Comments
0 commentsPlease sign in to leave a comment.