Two questions regarding passwords in OSSN

Dominik L Posted in General Discussion 2 years ago

When a user wants to change his password on the profile page, he can just enter the new one and save it, and it is changed

Wouldn't it make more sense to make the user enter the old password and then enter the new one? Maybe also for security reasons?

Also for registration:

Wouldn't it make more sense to double check the password? so "password" and "confirm password"?

Replies
German Dominik L Replied 2 years ago

Thanks!

And for login page?