May 2020
Issue: When changing my password I saw this error message: "Only these special characters can be used: ! @ # $ % ^ & * . : ; { } [ ]".
There is no technical limitation in Oracle/MySQL/MS SQL databases to store passwords with *all* special characters, including "(", "<", ">", "'", "\"", and ")".
Does your website use SQL parameterization? If so you are safe supporting the above characters. If not, my data is insecure!
I would prefer to have this improvement be included in future releases of your website.
Thanks!
May 2020
Hey @gfdghrie7thgrei,
Welcome to the Community.
Thanks for your feedback on this. For security reasons we can’t post technical details on this topic. However, we assure you that Fido follows industry best practices for password management and security. We're regularly reviewing and updating our protocols to ensure customer information remains properly safeguarded!