Skip to main content

Vulnerable password validation on the Storefront API's Customer object

Validation to identify vulnerable passwords has been added to the Storefront API's customerReset and customerResetByUrl mutations.

Now, when you try resetting a password to one that’s considered vulnerable, the API will return an error.

Was this section helpful?