Account recovery (Android App)
Add Password Reset Option Using Active Proton Mail Session
Description
Currently, Proton users who are locked out of Proton Pass but still have an active authenticated Proton Mail session can become permanently stuck in a recovery deadlock.
In my case, I am locked out of Proton Pass and unable to access my stored passwords or recovery codes. Proton Mail is the only session I still have access to. However, when attempting to change or reset my account password from Proton Mail, the system requires entering the current (old) password.
This requirement defeats the purpose of account recovery. If the user still had access to their old password, recovery would not be necessary in the first place. Since Proton Pass is where account passwords and recovery codes are typically stored, being locked out of Proton Pass also means being locked out of all recovery options.
As a result, users can end up fully authenticated in Proton Mail but with no available path to regain access to Proton Pass or reset their password, even though they are already logged into a trusted Proton application.
Feature Request
Implement a secure account password reset option that leverages an existing active Proton Mail session, allowing users to recover access when other recovery methods are unavailable.