TIP: You can type at any time to perform a new search.

Security findings

Repository
OCA/server-auth · module folder · Try on Runboat
Module version
1.0.2
Category
Base
Folder size
0.81 MB
License
LGPL-3
Application
No
Auto-installable
No
Website
https://github.com/OCA/server-auth
Last tracking update
2026-10-04 00:16:48
Authors
Odoo Community Association (OCA), Onestein, initOS GmbH, Tecnativa, LasLabs, Kaushal Prajapati, Omar Nasr
Maintainers
Odoo Community Association (OCA), Onestein, initOS GmbH, Tecnativa, LasLabs, Kaushal Prajapati, Omar Nasr
Committers
Moises Lopez, Luis González, OCA-git-bot, oca-ci, Andrii9090-tecnativa
Odoo dependencies
Python dependencies
None
System dependencies
None
Required by
None
Description
This module allows admin to set company-level password security
requirements and enforces them on the user.

It contains features such as

- Password expiration days
- Password length requirement
- Password minimum number of lowercase letters
- Password minimum number of uppercase letters
- Password minimum number of numbers
- Password minimum number of special characters

Code Analysis info_outline

Views touched (1)
XML IDNameModelTypeStatus
res_config_settings_view_form res.config.settings.form.password_security res.config.settings form Inherits auth_password_policy.res_config_settings_view_form
HTTP endpoints (3)
Route(s)HandlerAuthTypeMethodsFlags
(inherited route override) PasswordSecurity2FAHome.web_totp inherited http ALL
(inherited route override) PasswordSecurityHome.web_auth_signup inherited http ALL
(inherited route override) PasswordSecurityHome.web_login inherited http ALL
Models touched (3)

New fields (7)
  • password_expiration Integer
    config_parameter='password_security.expiration_days' default=0 help='How many days until passwords expire' string='Days'
  • password_history Integer
    config_parameter='password_security.history' default=0 help='Disallow reuse of this many previous passwords - use negative number for infinite, or 0 to disable' string='History'
  • password_lower Integer
    config_parameter='password_security.lower' default=0 help='Require number of lowercase letters' string='Lowercase'
  • password_minimum Integer
    config_parameter='password_security.minimum_hours' default=0 help='Number of hours until a user may change password again' string='Minimum Hours'
  • password_numeric Integer
    config_parameter='password_security.numeric' default=0 help='Require number of numeric digits' string='Numeric'
  • password_special Integer
    config_parameter='password_security.special' default=0 help='Require number of unique special characters' string='Special'
  • password_upper Integer
    config_parameter='password_security.upper' default=0 help='Require number of uppercase letters' string='Uppercase'
Public methods (0)

No public methods.

New fields (2)
  • password_history_ids One2many → res.users.pass.history
    comodel_name='res.users.pass.history' inverse_name='user_id' readonly=True
  • password_write_date Datetime
    default=fields.Datetime.now readonly=True args: 'Last password update'
Public methods (5)
  • action_expire_password(self)
  • action_reset_password(self)
    Disallow password resets inside of Minimum Hours
  • get_password_policy(self)
    @api.model
  • password_match_message(self)
  • write(self, vals)

New fields (3)
  • date Datetime
    default=<expr> index=True
  • password_crypt Char
    string='Encrypted Password'
  • user_id Many2one → res.users
    comodel_name='res.users' index=True ondelete='cascade'
Public methods (0)

No public methods.

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…

Loading…