Skip to content

[Feature]: Remove the Reset Password Link in Log Entries and Provide an Alternative Method to Reset Password #31065

Open
@ame-appsmith

Description

Is there an existing issue for this?

  • I have searched the existing issues

Summary

Entries such as the reset password link should not show up in the logs.
Some users might want to disable log entries for reset password links, considering this a security issue because other persons would be able to change the password of a user when accessing the server logs, while other users find it useful to be able to grab the link from the logs in case their email service does not work or users are not able to get the reset password email for some reason.
For users who are not able to reset their password for various reasons (e.g., misconfigured email service), we should provide another reset method (e.g., using the appsmithctl command).

Front thread

Why should this be worked on?

This would solve a security issue and improve the reset password experience for users.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions