Hacker News new | ask | show | jobs
by masterjack 684 days ago
As a long-time Schwab user, one thing I was shocked by is that the login flow silently truncates the password to eight characters. I found this since I tend to have complex suffixes I rotate around, and one day I was able to login with the wrong suffix and even with no suffix at all. This must be due to some legacy process only allowing eight characters.
2 comments

Grounds for class action litigation?

To anyone looking to test this, once login again becomes possible: Response I've gotten from Schwab website to a wrong password is merely loading of a blank page, with an endless spinner on top.

That's surprising and alarming. Thank you for bringing that up, though!