Skip to content

Show password hint only if password_authentication_enabled_for_web? on new location sign in email

What does this MR do?

The text within unknown sign in email is unclear especially if you have an external authentication provider and no password on the gitlab instance. This MR does conditionally add the text about password change if password_authentication_enabled_for_web? is set.

🛠 with at Siemens

Screenshots (strongly suggested)

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • [-] Label as security and @ mention @gitlab-com/gl-security/appsec
  • [-] The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • [-] Security reports checked/validated by a reviewer from the AppSec team
Edited by Roger Meier

Merge request reports