🔒 Ridiculous password rules
Set a password, it said.
Set a password, it said.
It will be quick, it said.
It is a small unpaid job interview run by a field that thinks it is a bouncer. Each try hides one more rule. Make it confess.
secure account setup // step 1 of 1
Choose your password
attempt 0
Password strength
awaiting
After rejecting nine valid passwords, the field finally confessed.
🔒 Still too weak
🔒 The field confesses:
Actually
47 seconds of actual typing
Felt like
a personality test run by a bouncer
Requirements revealed: 9, and rising
Times told you were too weak: 5
Requirements hidden until you broke them: 9 of 9
Cannot reuse last 24 passwords (you have made 1)
Certificate of exhausted compliance
The field is sorry.
Attempts6
Requirements revealed9 and rising
Final strengthstill too weak
File no.PW-000000
Datetoday
The field admits the strength bar was decorative and the 24-password history was a lie.
Still too weak ✓
We can't make the field happy. Nothing can. But we can get you a table of new friends. Join the dinner club at kf.social.
🍝 Join the dinner clubThe reasonable questions
Asked by people who just wanted to log in.
Why are password requirements so strict and annoying?+
Each rule is meant to add security, but piling on demands often just pushes people toward predictable patterns and sticky notes. Length and a passphrase usually beat a thicket of symbols.
What actually makes a strong password?+
Length. A long, memorable passphrase of a few random words is generally stronger and easier than a short string of symbols, and a password manager beats remembering any of it.
Why does the strength meter say weak when I follow every rule?+
Strength meters are rough guesses and often poorly calibrated. Following every rule can still score low if the result is short or predictable. They are vibes with a colour bar.
Who made Your Password Must Contain?+
People who have drawn a hieroglyph in anger, at kf.social. It is a parody, not a real login.