datavane / datasophon

The next generation of cloud-native big data management expert , Aims to help users rapidly build stable, efficient, and scalable cloud-native platforms for big data.
https://datasophon.github.io/datasophon-website/
Apache License 2.0
1.08k stars 378 forks source link

Enhancement Request: Adding Login Captcha for Better Security #485

Open laiwei1986 opened 9 months ago

laiwei1986 commented 9 months ago

Search before asking

Description

Hello DataSophon team,

I am a great admirer of the DataSophon project and its capabilities. However, I noticed a potential security concern during my recent interactions with the application. To enhance the overall security of the platform, I propose the implementation of a login captcha system.

The addition of a captcha during the login process would significantly reduce the chances of automated attacks and brute-force attempts. It would add an extra layer of protection, ensuring that only legitimate users can access the application.

Moreover, this enhancement would improve the user experience by reducing the number of invalid login attempts and subsequent lockouts. It would eliminate the need for users to constantly reset their passwords due to suspicious activities.

I understand that implementing a captcha system might require some development efforts, but I believe it would be a worthwhile investment in terms of enhancing the security of the DataSophon project.

Thank you for considering this request. I look forward to hearing from you soon.

Usage Scenario

No response

Related issues

No response

Are you willing to submit a PR?

Code of Conduct

datasophon commented 9 months ago

Thank you for your suggestion. Datasophon is commonly used internally. Is it necessary to add a login captcha system?