1
0
Fork 0
mirror of https://github.com/Findus23/plugin-PasswordVerifier.git synced 2024-09-19 16:03:47 +02:00
Find a file
2018-11-06 14:22:20 +01:00
docs first working version 2018-11-06 14:22:20 +01:00
lang first working version 2018-11-06 14:22:20 +01:00
screenshots first working version 2018-11-06 14:22:20 +01:00
CHANGELOG.md first working version 2018-11-06 14:22:20 +01:00
PasswordVerifier.php first working version 2018-11-06 14:22:20 +01:00
plugin.json first working version 2018-11-06 14:22:20 +01:00
README.md first working version 2018-11-06 14:22:20 +01:00

Matomo PasswordVerifier Plugin

Description

This plugin sends the first 5 characters of the SHA1 hash of the password to the haveibeenpwned.com database of over 500 million passwords exposed in data breaches. If the password is found, Matomo rejects it and asks the user to use a more secure password.

This plugin only acts on passwords changes and can't access existing passwords as they are stored securely hashed by Matomo.