[Cosmo-dev] "Forgot Password" workflow

Brian Moseley bcm at osafoundation.org
Tue Mar 27 13:43:51 PST 2007


On 3/27/07, Travis Vachon <travis at osafoundation.org> wrote:

> The way I'm implementing it users cannot use an expired token to
> change a password, but expired tokens will remain in the database
> until a user tries to use them. In the medium term we should probably
> come up with a pruning strategy, but I don't think that's necessarily
> needed for Preview. Thoughts?

definitely not needed for preview, but i have some thoughts on how to
implement it. we should probably put in an enhancement bug for adding
a general purpose data reaper.


More information about the cosmo-dev mailing list