16

Clients r wankers. He wants to be able to send login details incl passwords in email to his clients when he adds them in the cms. The passwords are encrypted and generated on creation of a new user. Ive told him that sending credentials in email is shit and not secure. The stubborn bastard wont budge, so instead i've put explicit instructions to reset password once logged in with the credentials they send. Any other suggestions?

Comments
  • 10
    If you could have a forced password reset upon first login That should be a happy middle ground.
  • 3
    Send first login link to the password creation form.
  • 14
    Isn't devRant awesome? You can rant And at the same time get suggestions for coding :D
Add Comment