---
title: "Resets user's password"
method: POST
path: "/v1.0/users/forgot-password/reset-password"
tags: ["Forgot Password"]
---

# Resets user's password

`POST /v1.0/users/forgot-password/reset-password`

## Request body

- ResetPasswordDTO — The new password
  - `token` string, required
  - `otp` string, required
  - `password` string, required

## Response `204`

No Content

## Other responses

- `400` — Bad Request Error Code | Description TOKEN1001 | Invalid Token USER1005 | User not exist USER1004 | User status is not valid OTP1001 | Invalid OTP FORM1001 | Form validation failed
- `500` — Internal Server Error

## Changes

- **2025-11-18** `75eb25c6c016` — 2 warning
  - removed the optional property `security` from the response with the `400` status
  - removed the optional property `security` from the response with the `500` status
- **2025-07-17** `ae162f3b8695` — 2 info
  - added the optional property `security` to the response with the `400` status
  - added the optional property `security` to the response with the `500` status

[Change history](https://skmtc.dev/beis/apis/mets-api-documentation/changes/v1.0/users/forgot-password/reset-password/post.md)

---

[API](https://skmtc.dev/beis/apis/mets-api-documentation.md) · [All operations](https://skmtc.dev/beis/apis/mets-api-documentation/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/beis/mets-api-documentation/revisions/c3a5c6052f25/schema)
