Account and sign up
Creating, securing, and managing your Sessional account.
Creating your account
To get started, visit the sign-up page and enter:
- First name and last name
- Email address: this becomes your login and is used for all correspondence
- Password: minimum 10 characters
You can optionally add your registration number during sign-up, or fill it in later on your profile page.
When you sign up, Sessional automatically creates your locum profile, assigns a Free subscription, and generates a unique referral code you can share with colleagues.
Email verification
After signing up, you will receive a verification email containing a confirmation link. Click the link to verify your email address and activate your account.
- The verification link expires after 24 hours
- You cannot access your dashboard until your email is verified
- If you do not receive the email, check your spam or junk folder
- You can request a new verification email from the verification page
Signing in
Sessional supports two ways to sign in:
- Password sign-in: enter your email and password on the login page
- Magic link sign-in: enter your email and receive a one-time login link by email. Click the link to be signed in without needing your password. Magic links expire after 15 minutes.
If you have forgotten your password, use the "Forgot your password?" link on the sign-in page. A password reset link will be sent to your email and expires after 1 hour.
Changing your email address
You can change your email address from the Account tab on your profile page. When you submit a new email address:
- A verification email is sent to the new address
- Your account continues to use your old email until the new one is verified
- Once you click the verification link in the new email, the change takes effect immediately
- Your sign-in credentials update to use the new email address
Tip
Changing your password
To change your password, go to the Account tab on your profile page and enter your new password. The minimum length is 10 characters. After changing your password, all other active login sessions are revoked for security. You will remain signed in on the current device only.
Session security
Sessional takes several measures to protect your account:
- Password hashing: your password is stored as a one-way cryptographic hash. Sessional cannot read your password.
- HTTP-only cookies: your login session is secured with HTTP-only cookies that cannot be accessed by client-side scripts
- Session expiry: sessions expire after 30 days of inactivity
- Session revocation: when you change your password or email, all other active sessions are automatically revoked, requiring those devices to sign in again