We need to look at helping the user to choose a suitable password. Currently it is possible to enter 'password' as a password and others like 'browserid' , .. We should also allow not allow passwords that incorporate parts of the email address. // Paul Booker
Hi Paul! We agree with you in principal, however... Our goal with Persona is not to have the ultimate IdP. We want real IdPs to standup and implement Persona for their users. They are the correct one to educate and shape user's behavior. Closing as won't fix. If you have a pull request that is an elegant nudge towards better passwords, please submit an issue on github.com/mozilla/browserid or discuss in dev-identity. thanks!
Status: NEW → RESOLVED
Last Resolved: 5 years ago
Resolution: --- → WONTFIX
You need to log in before you can comment on or make changes to this bug.