TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Ask HN: How to do password strength checking in 2020?

3 pointsby mooseburgerover 4 years ago
What should I be doing when I can&#x27;t force users to use a password manager?<p>So I understand you shouldn&#x27;t be using hard rules, like including numbers, special symbols, and mixing upper and lowercase characters, as you can have a very weak password that passes those rules, or a very strong password entirely in lowercase. Nevertheless, one does need some sort of password validation to prevent technologically non-savvy users from entering trivially crackable passwords.<p>I&#x27;ve used dropbox&#x27;s zxcvbn, but that is no longer maintained, and the ports to other languages are not reliable in my experience.<p>Is the have i been pwned API (https:&#x2F;&#x2F;haveibeenpwned.com&#x2F;API&#x2F;v3) the state-of-the-art?

no comments

no comments