Project

General

Profile

Actions

Story #43

open

Epic #51: Security Points Checking

Cleartext Password Submission Prevention

Added by rashmita rout about 2 months ago. Updated about 1 month ago.

Status:
New
Priority:
Medium
Assignee:
-
Target version:
-
Start date:
01/05/2026
Due date:
% Done:

0%

Estimated time:
Acceptance Criteria:

1. Secure password hashing
2. Elimination of cleartext password storage
3. Encrypted transport using TLS
4. Protection against MITM and downgrade attacks
5. Secure session cookie transmission

DOR:
No
Story Points:
Work Type:
Feature
User Impact:
Technical Area:
Release Narrative:
Planned Sprint:
Completed In Sprint:
Spillover Reason:

Description

Objective:

Ensure that user passwords are never transmitted, processed, or stored in cleartext by enforcing strong cryptographic hashing, encrypted transport, and secure cookie handling

Covers:

Secure password hashing

Elimination of cleartext password storage

Encrypted transport using TLS

Protection against MITM and downgrade attacks

Secure session cookie transmission

Actions #1

Updated by rashmita rout about 1 month ago

  • Tracker changed from Epic to Story
  • Parent task set to #51
  • Work Type changed from Platform to Feature
  • Acceptance Criteria updated (diff)
  • DOR set to No
Actions

Also available in: Atom PDF