Announcements

Help Wizard

Step 1

NEXT STEP

Why Spotify keeps my password history? It's not safe.

Why Spotify keeps my password history? It's not safe.

Greetings!
Spotify has reset my password recently due to my recent login into account from another browser, which were looked like "suspicious activity".
As far as I remember, some time ago Spotify kept a history of last 5 passwords, which was already questionable, but still it was possible to make sure that Spotify don't keep that record by feeding them 5 random passwords and then setting the one I actually want to use. 
Now I can't do that. And this is a quite annoying, user-unfriendly and questionable from account safety perspective situation. Why Spotify keeps that data? To let all my password history float away in case of data leak? You can't guarantee that it's impossible, there was plenty similar cases with other big companies and services, and nothing makes Spotify somewhat exceptional among them, it can happen anytime with anyone, including Spotify. All that do is creating situation when I can't use password which i used to before reset, even if it's clean, reliable, and not found in any dataleaks. I don't want to be forced making a new password, just because Spotify wants me to do so. I don't want to create a new account just for possibility to use one of my passwords. I also don't want my other not-leaked passwords, which I can potentially use somewhere else since it's not compromised, to be in constant potential threat. 

Please reconsider, and let users use passwords they want.

Reply
1 Reply

It was extremely annoying going through the process, but it seems like 20 is the number of old passwords that are now kept on file.  You can use GRC's password generator to generate and apply 20 random passwords, then you'll be able to restore your original one:  https://www.grc.com/passwords.htm

 

It goes without saying that using old passwords is bad.  But sometimes you have to temporarily change a password, so getting back to an old password is a valid scenario and doesn't pose a security risk.

 

Hope this helps!

Suggested posts

Let's introduce ourselves!

Hey there you,   Yeah, you! 😁   Welcome - we're glad you joined the Spotify Community!   While you here, let's have a fun game and get…

ModeratorStaff / Moderator/ 4 years ago  in Social & Random