Password Policy
Effective Date: [July 1st, 2023]
1. Scope
This password policy applies to the EVIDENT EMEA Merchandise Shop.
2. Password Requirements
The basic design guidelines for passwords are set out below.
- The password must be at least 12 characters long.
- Allowed character sets:
- Capital letters: A – Z
- Lower case letters: a-z
- Digits: 0 – 9
- Special characters: !, $, %, &, + /, ? @
- It must not contain any personal data or names.
3. Rights and Obligations in Handling Passwords
The rights and obligations of users of passwords are described below.
- Passphrases can be used to get easy-to-remember passwords.
- As many of the permitted character sets listed in point 2 as possible should be used.
- When entering passwords, make sure that the entry is made unobserved.
- Passwords that fall within the scope of this policy may not be entered on insecure (foreign) systems.
- Personal passwords must not be passed on to third parties.
- A password must be changed immediately if it has become known to unauthorized persons or there is a suspicion of this.
- Unencrypted storage of passwords on IT systems is not permitted.
- Encrypted storage with a password manager (e.g. KeePass) is permitted.
Under no circumstances may the Evident password be used.