biocompute-objects / portal

BCO Portal rebuild.
MIT License
3 stars 0 forks source link

Password generation security and add option Forgot Username #240

Open jeet-vora opened 2 years ago

jeet-vora commented 2 years ago

Password generation security and add option Forgot Username

*When Forgot Password? Reset it here. is clicked it ask for the details and send an email to entered email address. However, the pages automatically show option to create new password without validating the link sent via email. The link when clicked show allow to change the password. The current setting will allow anyone to change anyone's password once an email is known.

Along with Forgot Password option Forgot Username option should be shown as the login auth takes in username and not email.*

[REPLACE WITH BUG DESCRIPTION]

To Reproduce

Steps to reproduce the behavior:

[EXAMPLE STEP TEMPLATE BELOW: FILL IN INFO AND ADD/REMOVE STEPS AS NEEDED]

  1. Go to '...'
  2. Click on '....'
  3. Scroll down to '....'
  4. See error

Expected behavior

A clear and concise description of what you expected to happen.

[REPLACE WITH THE BEHAVIOR YOU EXPECTED. PUT N/A IF YOU ARE UNSURE.]

Screenshots

If applicable, add screenshots to help explain your problem.

[PASTE IMAGE HERE. OPTIONALLY ADD DESCRIPTION]

Desktop (please complete the following information):

Additional context

Add any other context about the problem here.

[ADD ANY ADDITONAL INFORMATION YOU FEEL WASN'T INCLUDED ABOVE. PUT N/A IF THERE IS NONE]