This is a known, annoying issue.
Preface
Non-alphanumeric characters are automatically stripped from passwords on register and login pages, meaning that if you enter a non-alphanumeric character when you register or change your password, it will not be computed.
The Issue
The Edit Your Profile page and trade application do not strip non-alphanumeric characters from passwords, meaning that if you enter a non-alphanumeric character when typing your passwords, it will issue a “Wrong password” error, even though you are, technically, typing the right password.
Solution
The easiest way to solve this would be updating the Edit Your Profile page and trade application to automatically strip non-alphanumeric characters from passwords. Additionally, I think the Register and Change password/lost password pages should display a warning to remind users that non-alphanumeric characters are not supported by xat, for the sake of security.
Update
The transfer feature also does not strip non-alphanumeric characters from passwords.
- 1
Recommended Comments