Password Policy

Effective Date: [July 1st, 2023]

1. Scope

This password policy applies to the EVIDENT EMEA Merchandise Shop.

2. Password Requirements

The basic design guidelines for passwords are set out below.

  • The password must be at least 12 characters long.
  • Allowed character sets:
    • Capital letters: A – Z
    • Lower case letters: a-z
    • Digits: 0 – 9
    • Special characters: !, $, %, &, + /, ? @
  • It must not contain any personal data or names.

3. Rights and Obligations in Handling Passwords

The rights and obligations of users of passwords are described below.

  • Passphrases can be used to get easy-to-remember passwords.
  • As many of the permitted character sets listed in point 2 as possible should be used.
  • When entering passwords, make sure that the entry is made unobserved.
  • Passwords that fall within the scope of this policy may not be entered on insecure (foreign) systems.
  • Personal passwords must not be passed on to third parties.
  • A password must be changed immediately if it has become known to unauthorized persons or there is a suspicion of this.
  • Unencrypted storage of passwords on IT systems is not permitted.
  • Encrypted storage with a password manager (e.g. KeePass) is permitted.

Under no circumstances may the Evident password be used.