[TYPO3-core] Feature request: Remove password from content of notification emails

Martin Kutschker Martin.Kutschker at n0spam-blackbox.net
Tue May 15 14:35:18 CEST 2007


Dmitry Dulepov schrieb:
> Hi!
> 
> Franz Holzinger wrote:
>> A tried password should never be stored anywhere without the 
>> permission of that person who has used this password.
> 
> I fully agree. Many people use the same password in [almost] all places, 
> so this is potential risk.
> 
> +1 for removing it or replacing with md5 hash, which is easier to check 
> if necessary.

The hash came also to my mind. New phrase:

The MD5 hash of password tried was '7815696ecbf1c96e6894b779456d330e'.

Masi


More information about the TYPO3-team-core mailing list