31 Jul 2009 - 11:09am
7 years ago
12 replies
Yohan Creemers

Password Masking and Chroma-Hash

An experiment from Mattt Thompson in how to visualize the input of
masked password fields:

Some explanation taken from his blog:

Chroma-Hash displays an ambient color representation of the input as
it is being typed.

Use Case 1: Login Check
If your password normally is represented as “red, purple, orange”,
and after you’ve finished typing you see “pink, green, grey”, you’ll
know you mistyped it somewhere along the way.

24 Jun 2009 - 3:00pm
7 years ago
18 replies

Password Masking research

Hi all,

In light of Nielsen's new article seen here: along with other user
frustration feedback, my team and I started looking at other
solutions to masking passwords on creation. Although I know the
simplest and best answer is probably not to mask the password at all,
it is highly doubtful that that answer will fly with our client.

19 Dec 2008 - 4:41am
6 years ago
11 replies
Sam Menter

best practice for security questions

Hi there

Can anyone point me in the direction of sample security questions that could
be used to verify a user's identity if they don't have an email address and
have forgotten a password? EG Mother's maiden name, first school etc etc.

I think best practice would be to let a users set the question themselves,
but in this case we need to offer a set of questions for the user to choose

Thanks for the tips,

