-
Notifications
You must be signed in to change notification settings - Fork 1k
Send confirmation email when password changed #999
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Comments
(And for that matter, I really hope the new implementation will require that the user confirm their existing password, rather than just allow changing it via the session cookie.) |
@edmorley Thanks for creating this issue, and sorry for the slow response! The folks working on Warehouse have gotten funding to concentrate on improving and deploying Warehouse, and have kicked off work towards our development roadmap -- the most urgent task is to improve Warehouse to the point where we can redirect pypi.python.org to pypi.org so the site is more sustainable and reliable. We're working on #2831 right now, which should also address this issue. Thanks and sorry again for the wait. |
@di This looks like an issue I can work on (no assignee 😄 ) Will start working on this. |
My bad! Can you please link me to an issue , I would be happy to work on it? Thanks |
Thanks for the suggestion @di :) I'll hop on to it. |
Currently on PyPI, if a user changes their password, there is no email notification, meaning account compromise can go unnoticed.
Changing of password doesn't seem to be implemented on https://warehouse.python.org/ yet, but filing this now to ensure it's not forgotten :-)
The text was updated successfully, but these errors were encountered: