8000 Search P0wned password DB? · Issue #92 · rollerworks/PasswordStrengthBundle · GitHub
[go: up one dir, main page]

Skip to content
Search P0wned password DB? #92
@gnat42

Description

@gnat42
Q A
Bug report? no
Feature request? yes
BC Break report? yes
RFC? yes

I'm thinking of implementing password validation against https://haveibeenpwned.com/API/v2#SearchingPwnedPasswordsByRange

Basically I expect to hash the password, do a ranged search (pass the first 5 chars of the hash), you get back all hashes that start with those 5 chars, and a count of how many times this password has been seen in compromised databases.

Is this something you'd accept as a PR to this bundle or should I implement it separately?

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      0