Two questions regarding passwords in OSSN

Dominik L Posted in General Discussion 4 months ago

When a user wants to change his password on the profile page, he can just enter the new one and save it, and it is changed

Wouldn't it make more sense to make the user enter the old password and then enter the new one? Maybe also for security reasons?

Also for registration:

Wouldn't it make more sense to double check the password? so "password" and "confirm password"?

Replies
vn Ethnic joystick Replied 4 months ago

@Arsalan Shah I cannot access your link. What's the problem with it? https://www.opensource-socialnetwork.org/component/view/5195/password-change-securityeggy car

German Dominik L Replied 4 months ago

Thanks!

And for login page?