View Issue Details

IDProjectCategoryView StatusLast Update
4952Composrcorepublic2022-10-06 00:01
ReporterChris Graham Assigned ToGuest  
PrioritynormalSeverityfeature 
Status newResolutionopen 
Summary4952: Implement known password change URL
DescriptionW3C has made a spec for specifying a known URL to change a user's password.
It is designed to make it easier to do mass-password-changes after a user finds they are breached.

https://w3c.github.io/webappsec-change-password-url/

Implement this as a simple redirect in recommended.htaccess.

Update tut_webapp to reference the spec.
TagsType: Security, Type: Standards compliance
Attach Tags
Time estimation (hours)0.5
Sponsorship open

Sponsor

Date Added Member Amount Sponsored

Activities

There are no notes attached to this issue.

Add Note

View Status
Note
Upload Files
Maximum size: 32,768 KiB

Attach files by dragging & dropping, selecting or pasting them.
You are not logged in You are not logged in. This means you will not get any e-mail notifications. And if you reply, we will not know for sure you are the original poster of the issue.

Issue History

Date Modified Username Field Change
2022-09-27 17:28 Chris Graham New Issue
2022-09-27 17:28 Chris Graham Tag Attached: Type: Security
2022-09-27 17:28 Chris Graham Tag Attached: Type: Standards compliance
2022-10-06 00:01 Chris Graham Description Updated