Skip to content

Conversation

@not-varram
Copy link
Contributor

Pull Request Checklist

Issue

https://otwarchive.atlassian.net/browse/AO3-7260

Purpose

Increases password length requirements to improve account security:

  • User passwords: 8-72 characters (previously 6-40)
  • Admin passwords: 10-72 characters (previously 10-40)
  • Updates validation message to say "characters" instead of "letters"

The new 72-character maximum aligns with bcrypt's upper limit.

Testing Instructions

Full testing instructions are available in the Jira issue linked above.

Credit

varram (he/him)

@not-varram
Copy link
Contributor Author

Oh- Forgot to update some other tests for the updated 8 char password min in 2 tests; I'm gonna quickly do that :)

Copy link
Member

@brianjaustin brianjaustin left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks!

@Bilka2 Bilka2 merged commit f87665c into otwcode:master Feb 3, 2026
29 checks passed
@not-varram not-varram deleted the AO3-7260-pwd-length branch February 4, 2026 06:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants