Hacker News new | ask | show | jobs
by whiskeySix 3646 days ago
any clientside validation can easily be bypassed using something like fiddler.
1 comments

Password strength checking is (properly understood, in my view) providing help to the user, not enforcing some silly and annoying "password validation" rules.