<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>Moodle Plugins directory: Vulnerable Password: Comments</title>
    <link>https://moodle.org</link>
    <description>This Moodle plugin attempts to check HIBP's list of exposed passwords. Enabling your learners to be informed if their password has ever been involved in a data breach.</description>
    <generator>Moodle</generator>
    <language>en</language>
    <copyright>(c) 2026 Moodle - Open-source learning platform | Moodle.org</copyright>
    <image>
      <url>https://moodle.org/theme/image.php/moodleorg/core/1777401252/i/rsssitelogo</url>
      <title>moodle</title>
      <link>https://moodle.org</link>
      <width>140</width>
      <height>35</height>
    </image>
    <item>
      <title>Thursday, 2 January 2020, 8:26 AM - Brendan Heywood</title>
      <link>https://moodle.org/plugins/auth_vulnerablepassword#comment-61203</link>
      <pubDate>Thu, 02 Jan 2020 00:26:54 GMT</pubDate>
      <description>by Brendan Heywood. &amp;nbsp;&lt;p&gt;&lt;div class=&quot;no-overflow&quot;&gt;&lt;div class=&quot;text_to_html&quot;&gt;FYI we've publish an alternate plugin that tackles this differently as improvements to the password policy checks, which means it will also check HIBP for bad passwords when setting or changing passwords:&lt;br&gt;
&lt;br&gt;
&lt;a href=&quot;https://moodle.org/plugins/tool_passwordvalidator&quot; class=&quot;_blanktarget&quot; target=&quot;_blank&quot; rel=&quot;noreferrer&quot;&gt;https://moodle.org/plugins/tool_passwordvalidator&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
See also this tracker which will also enforce the password policy on login, not just password change:&lt;br&gt;
&lt;br&gt;
&lt;a href=&quot;https://tracker.moodle.org/browse/MDL-67309&quot; class=&quot;_blanktarget&quot; target=&quot;_blank&quot; rel=&quot;noreferrer&quot;&gt;https://tracker.moodle.org/browse/MDL-67309&lt;/a&gt;&lt;br&gt;
&lt;/div&gt;&lt;/div&gt;&lt;/p&gt;</description>
      <guid isPermaLink="true">https://moodle.org/plugins/auth_vulnerablepassword#comment-61203</guid>
    </item>
    <item>
      <title>Saturday, 13 April 2019, 2:14 PM - Ted Long</title>
      <link>https://moodle.org/plugins/auth_vulnerablepassword#comment-57542</link>
      <pubDate>Sat, 13 Apr 2019 06:14:34 GMT</pubDate>
      <description>by Ted Long. &amp;nbsp;&lt;p&gt;&lt;div class=&quot;no-overflow&quot;&gt;&lt;div class=&quot;text_to_html&quot;&gt;Hi Josh. This is a really interesting plugin. We have some users using SSO and others manual authentication. Also various cohorts handled separately. &lt;br&gt;
&lt;br&gt;
Is it possible for us to turn this function on and off for the various cohorts? Is it possible there could be an automatic alert for when a new breach is found?&lt;/div&gt;&lt;/div&gt;&lt;/p&gt;</description>
      <guid isPermaLink="true">https://moodle.org/plugins/auth_vulnerablepassword#comment-57542</guid>
    </item>
    <item>
      <title>Friday, 3 August 2018, 1:00 AM - Plugins bot</title>
      <link>https://moodle.org/plugins/auth_vulnerablepassword#comment-52078</link>
      <pubDate>Thu, 02 Aug 2018 17:00:16 GMT</pubDate>
      <description>by Plugins bot. &amp;nbsp;&lt;p&gt;&lt;div class=&quot;no-overflow&quot;&gt;&lt;div class=&quot;text_to_html&quot;&gt;Approval issue created: &lt;a title=&quot;Auto-link to Moodle Tracker&quot; href=&quot;https://moodle.atlassian.net/browse/CONTRIB-7411&quot; target=&quot;_blank&quot; rel=&quot;noreferrer&quot;&gt;CONTRIB-7411&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/p&gt;</description>
      <guid isPermaLink="true">https://moodle.org/plugins/auth_vulnerablepassword#comment-52078</guid>
    </item>
  </channel>
</rss>