Suppress display of password to administrator

Add your suggestions for improving Poker Mavens
Post Reply
dcx135
Posts: 5
Joined: Mon Oct 10, 2011 9:39 am

Suppress display of password to administrator

Post by dcx135 »

For the players' privacy and security purposes, it would be good to suppress the display of their chosen password in the PM-Server (right now, it shows it as clear text). Since users have can reset their passwords when necessary, there's really no reason to show it to the administrator. Since many people tend to use the same passwords, it's just an unnecessary security risk.
Kent Briggs
Site Admin
Posts: 5878
Joined: Wed Mar 19, 2008 8:47 pm

Re: Suppress display of password to administrator

Post by Kent Briggs »

dcx135 wrote:For the players' privacy and security purposes, it would be good to suppress the display of their chosen password
In the next major version, no passwords will be saved at all on the server. All security will be performed with one-way hashes.
Ozzy1969
Posts: 55
Joined: Fri Aug 19, 2011 5:11 am

Re: Suppress display of password to administrator

Post by Ozzy1969 »

Kent wrote ;

In the next major version, no passwords will be saved at all on the server. All security will be performed with one-way hashes.
does this mean players cant recover password?
Kent Briggs
Site Admin
Posts: 5878
Joined: Wed Mar 19, 2008 8:47 pm

Re: Suppress display of password to administrator

Post by Kent Briggs »

Ozzy1969 wrote: does this mean players cant recover password?
Yes, but I'll come up with some kind of password reset feature instead. Instead of emailing the password, the system could email a security code and the player could enter that code along with a new password in the client. Something like that.
Post Reply