I have a strong password generated by Apple iOS so I feel relatively safe.
That's great, but be aware, your password can be sent to you IN CLEAR TEXT by email. Emails go through a lot of hands before you get it, and at any step, the email can be sniffed, and your password compromised. This is why I'm advising JohnRob to, instead, do password-reset links in emails. Maybe also password-recovery questions, like "What was the name of your first cat" and stuff like that.