credcheck v5.0 has been released

From: HexaCluster via PostgreSQL Announce <announce-noreply(at)postgresql(dot)org>
To: PostgreSQL Announce <pgsql-announce(at)lists(dot)postgresql(dot)org>
Subject: credcheck v5.0 has been released
Date: 2026-07-05 16:27:37
Message-ID: 178326885726.108996.15962152301608591926@wrigleys.postgresql.org
Views: Whole Thread | Raw Message | Download mbox | Resend email
Thread:
Lists: pgsql-announce

Bangkok, Thailand - June 21, 2026

## PostgreSQL credcheck extension

The credcheck PostgreSQL extension provides few general credential checks, which will be evaluated during the user creation, during the password change and user renaming. By using this extension, we can define a set of rules:

* allow a specific set of credentials
* reject a certain type of credentials
* deny password that can be easily cracked
* enforce use of an expiration date with a minimum of day for a password
* define a password reuse policy
* define the number of authentication failure allowed before a user is banned
* define a delay on authentication failures
* force users to change their password after first login
* throw a warning N days before when the password user is about to expire

Release 5.0 has been published,

This major release adds compatibility with PostgreSQL v19 and makes password
history replication-aware. It also fixes some issues reported by users since
last release.

- Add information about credcheck.disallow_change_password and
credcheck.superuser_nocheck use.
- Disable any CREATE/ALTER ROLE checks for superusers when credcheck.superuser_nocheck
is enabled.

Upgrade require a PostgreSQL restart to reload the credcheck library.

Complete list of changes and acknowledgements are available [here](https://github.com/HexaCluster/credcheck/releases/tag/v5.0)

## Links & Credits

credcheck is an open project under the PostgreSQL license maintained by [HexaCluster](https://github.com/HexaCluster/credcheck/).
Any contribution to build a better tool is welcome. You can send your ideas, features requests or patches
using the GitHub tools.

**Links :**

* Download: [https://github.com/HexaCluster/credcheck/releases/](https://github.com/HexaCluster/credcheck/releases/)
* Support: use GitHub report tool at [https://github.com/HexaCluster/credcheck/issues](https://github.com/HexaCluster/credcheck/issues)

## About credcheck

The credcheck extension is developed and maintained by Gilles Darold at [HexaCluster Corp](https://hexacluster.ai). If you need more information please [contact us](https://hexacluster.ai/contact-us/).

Documentation at [https://github.com/HexaCluster/credcheck#readme](https://github.com/HexaCluster/credcheck#readme)

Browse pgsql-announce by date

  From Date Subject
Next Message JDBC Project via PostgreSQL Announce 2026-07-06 07:23:02 PostgreSQL JDBC 42.7.12 Security Release
Previous Message HexaCluster via PostgreSQL Announce 2026-07-05 16:22:32 pg_dbms_errlog v2.4 released