Grenoble, France - Febuary 23, 2026
The credcheck PostgreSQL extension provides few general credential checks, which will be evaluated during the user creation, during the password change and user renaming. By using this extension, we can define a set of rules:
Release 4.6 has been published, it is a security fix release. If you are running v4.5 please upgrade as soon as possible.
ALTER ROLE current_role that allow to change
superusers password.credcheck.password_valid_warning
is not defined or set to 0.If you are using the password expiration warning feature you should execute the event_trigger.sql in each database where it is defined.
Upgrade require a PostgreSQL restart to reload the credcheck library.
Complete list of changes and acknowledgements are available here
credcheck is an open project under the PostgreSQL license maintained by HexaCluster. Any contribution to build a better tool is welcome. You can send your ideas, features requests or patches using the GitHub tools.
Links :
The credcheck extension is developed and maintained by Gilles Darold at https://hexacluster.ai. If you need more information please https://hexacluster.ai/contact-us/.
Documentation at https://github.com/HexaCluster/credcheck#readme