Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Administrators should be able to change emails / reset passwords #14

Open
g105b opened this issue Apr 11, 2020 · 2 comments
Open

Administrators should be able to change emails / reset passwords #14

g105b opened this issue Apr 11, 2020 · 2 comments
Labels
enhancement New feature or request security

Comments

@g105b
Copy link
Member

g105b commented Apr 11, 2020

It will one day come up that a user has forgotten their authentication mechanism AND lost access to their email address.

It is then down to the discretion of the application administrator to validate the identity of the user, through whatever means necessary.

If the application administrator is sufficiently confident that the user's identity has not been compromised, they should be able to offer a new password and/or change the email address used to log on.

A huge warning is necessary to show the application administrator at this point!

@g105b g105b added enhancement New feature or request security labels Apr 11, 2020
@g105b
Copy link
Member Author

g105b commented Apr 13, 2020

This duplicates the functionality of #20

@g105b
Copy link
Member Author

g105b commented Apr 21, 2020

Duplicates the functionality of #9

g105b added a commit that referenced this issue Apr 22, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request security
Projects
None yet
Development

No branches or pull requests

1 participant