YunoHost-Apps / etherpad_mypads_ynh

Etherpad MyPads package for YunoHost
http://etherpad.org/
GNU General Public License v3.0
16 stars 13 forks source link

*Security* Password in a mail #118

Closed Nartagnan closed 3 years ago

Nartagnan commented 4 years ago

Hello, and thank you for the hard work. Yesterday I installed Etherpad on my new YunoHost, first without mypad, then I uninstalled it and reinstalled it with mypad. And this morning, at 6, I received the following e-mail :

This is an automated message from your beloved YunoHost server. . Specific information for the application etherpad_mypads. . You can access 2 different admin panels, for Etherpad by accessing https://xxxxx/pad/admin and for MyPads by accessing https://xxxxx/pad/mypads/?/admin. You can also find a config file for Etherpad at this path /var/www/etherpad_mypads/settings.json. . Your credentials for the admin panel are: '- login : xxxxx '- password : xxxxx . You can configure this app easily by using the experimental config-panel feature https://xxxxx/yunohost/admin/#/apps/etherpad_mypads/config-panel. You can also find some specific actions for this app by using the experimental action feature https://xxxxx/yunohost/admin/#/apps/etherpad_mypads/actions. . If you are facing an issue or want to improve this app, please open a new issue in this project: https://github.com/YunoHost-Apps/etherpad_mypads_ynh .

With login and password in clear. As I redirected it on my real mail, it traveled unsafe.

Is it possible to correct that ? Thank you

ericgaspar commented 3 years ago

Fix with d7425cd