The way it is now seems safer to me. The password should typically be skipped but I know it doesn't always. I'm not sure under what conditions the password is necessary but it seems if you only had to log in once that would avoid much of the "hassle".
- [web2py] Bypassing tickets in development Dane
- [web2py] Re: Bypassing tickets in development pbreit
- [web2py] Re: Bypassing tickets in development selecta

