eclipse-archived / ceylon-herd

The Ceylon repository web application
Apache License 2.0
21 stars 11 forks source link

Username and password can be equal #151

Closed yeradis closed 10 years ago

yeradis commented 10 years ago

I think this can be is a security problem even more for a public module repository

FroMage commented 10 years ago

This issue is broader than that, since we do not check for trivial passwords either such as 1q2w3e or password, but neither do most other providers. In particular GitHub does not do that check, so I'm tempted to close this issue.