Documentation
¶
Overview ¶
Package passwords provides bcrypt password hashing and strength validation.
Security:
- bcrypt with cost factor 12 (tunable)
- Constant-time comparison (built into bcrypt)
- No plaintext passwords ever stored or logged
Index ¶
Constants ¶
View Source
const ( // MinPasswordLength is the minimum acceptable password length. MinPasswordLength = 8 // MaxPasswordLength is bcrypt's maximum password byte length. MaxPasswordLength = 72 )
Variables ¶
This section is empty.
Functions ¶
func Hash ¶
Hash hashes a plaintext password using bcrypt with cost 12. The returned string is suitable for storage (e.g. "$2a$12$...").
func ValidateStrength ¶
ValidateStrength validates password strength and returns a list of issues. An empty slice means the password meets all requirements.
Types ¶
This section is empty.
Click to show internal directories.
Click to hide internal directories.