# Tutorial: Authenticating with a Password
Password-based login remains the historical standard for accessing the HLI platform. To ensure your data stays protected, this method is governed by strict security requirements.
---
## 1. How does the password work in HLI?
In **HLI v24**, your passwords are never stored in plain text in the database. Instead, they are secured using an advanced cryptographic hashing algorithm: **PBKDF2 with SHA-256 and 120,000 iterations**.
This level of encryption makes dictionary and brute-force attacks on the database extremely difficult, if not impossible, to execute.
---
## 2. What is it for?
The password is used to verify your identity confidentially. To prevent account compromise:
* **Length & Complexity**: Your password must meet minimum length criteria and include different types of characters (uppercase, lowercase, digits, and special characters).
* **Automatic Lockout**: After **5 consecutive failed login attempts**, your account is automatically locked for **10 minutes** as a security measure to prevent automated brute-force attacks.
---
## 3. How to use it in HLI?
### Step 1: Standard Login
1. On the HLI homepage, click on the third tab **PASSWORD**.
2. Enter your **Society Code** and **Username (Login)**.
3. Enter your **Password**. You can click on the "eye" icon to temporarily show the characters and prevent typos.
4. Click the **Login** button.
### Step 2: Changing Your Password (Login required)
It is highly recommended to change your password regularly to maintain account security:
1. Log in to HLI.
2. Go to your **User Profile** (top right, click on your name, then "My Profile").
3. Navigate to the **Security & Authentication** section.
4. Enter your current password, then define and confirm your new password.
5. Click the **Save** button.
> [!WARNING]
> Never share your password with anyone. The Horus Solutions administration and technical support teams will never ask for your password by email, phone, or messaging.
---
© Horus Solutions – 2026