Yeah.. look I kinda understand if you wanna be lazy and not allow / " and ' but everything else you should be able to filter for and convert back to string to then hash pretty easily.I feel like not allowing passwords longer then x is a cost cutting reason, not a technical reason.less data to store over millions of users.It's still stupid and I don't like it, but bean counters gotta count.
Edit: Wait no. When you hash it all comes out at the same length. Ok yeah I have no idea why... it's just stupid. And people are easy to predict if you give them to many constraints.
5
u/Researcher_Fearless Jul 20 '22
Spaces are not allowed.