auth.password_reset
event, passing it the token as a payload. You can listen to that event in a subscriber as explained in this guide, then send the user a notification. The notification is sent using a Notification Module Provider, and it should have the URL to reset the password in the Medusa Admin dashboard, such as http://localhost:9000/app/reset-password?token=123
.curl --location -g --request POST '{{BASE_URL}}/auth/user//reset-password' \
--header 'Content-Type: application/json' \
--data-raw '"admin@medusa-test.com"'
{
"message": "Discount must be set to dynamic",
"type": "not_allowed"
}