Task #7192

Disable password autocomplete during login

Added by Dan Gillean over 7 years ago. Updated over 7 years ago.

Status:VerifiedStart date:09/04/2014
Priority:MediumDue date:
Assignee:Dan Gillean% Done:

0%

Category:Security
Target version:Release 2.1.0
Google Code Legacy ID: Tested version:2.0.0, 2.0.1
Sponsored:No Requires documentation:

Description

Description: "Form fields that handle passwords should be configured so as to prevent the browser from autocompleting the information. The application has not set autocomplete="OFF" for login fields."

Please make sure that autocomplete=OFF for any form field related to login/passwords.

History

#1 Updated by Jesús García Crespo over 7 years ago

  • Status changed from New to QA/Review
  • Assignee changed from José Raddaoui Marín to Dan Gillean

#2 Updated by Dan Gillean over 7 years ago

  • Status changed from QA/Review to Verified

Inspecting the element in the dropdown, and on the /user/login page, shows that autocomplete="off" is present in the field now.

Also available in: Atom PDF