cancel
Showing results for 
Search instead for 
Did you mean: 

Change your password rules

gfdghrie7thgrei
I'm a participant level 2
I'm a participant level 2

Issue: When changing my password I saw this error message: "Only these special characters can be used: ! @ # $ % ^ & * . : ; { } [ ]".

 

There is no technical limitation in Oracle/MySQL/MS SQL databases to store passwords with *all* special characters, including "(", "<", ">", "'", "\"", and ")".

 

Does your website use SQL parameterization? If so you are safe supporting the above characters. If not, my data is insecure!

 

I would prefer to have this improvement be included in future releases of your website.

 

Thanks!

1 REPLY 1

FidoPierre
Former Moderator
Former Moderator

Hey @gfdghrie7thgrei,

 

Welcome to the Community. Smiley 

 

Thanks for your feedback on this. For security reasons we can’t post technical details on this topic. However, we assure you that Fido follows industry best practices for password management and security. We're regularly reviewing and updating our protocols to ensure customer information remains properly safeguarded!