mirror of https://github.com/watcha-fr/synapse
Always require users to re-authenticate for dangerous operations. (#10184)
Dangerous actions means deactivating an account, modifying an account password, or adding a 3PID. Other actions (deleting devices, uploading keys) can re-use the same UI auth session if ui_auth.session_timeout is configured.code_spécifique_watcha
parent
b8b282aa32
commit
76f9c701c3
@ -0,0 +1 @@ |
||||
Always require users to re-authenticate for dangerous operations: deactivating an account, modifying an account password, and adding 3PIDs. |
Loading…
Reference in new issue