Re: Hiding passwords found in redirect URLs

2008-09-13 Thread Thomas Corthals
Micah Cowan wrote: Note: Saint Xavier has already written a fix for this, so it's not actually a question of whether it's worth the bother, just whether it's actually desired behavior. Since it's desired in some situations but maybe not in others, the best solution would be to provide a

Re: Hiding passwords found in redirect URLs

2008-09-13 Thread Micah Cowan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Thomas Corthals wrote: Micah Cowan wrote: Note: Saint Xavier has already written a fix for this, so it's not actually a question of whether it's worth the bother, just whether it's actually desired behavior. Since it's desired in some