Nonsecure Collection of Passwords will trigger warnings in Chrome 56 for

Posted in: Newspaper
Post count: 4

Hi Guys,
We, YOU, have a problem.

I have browsed a wee bit in the forum but after 3 all complaining that their AdSense ads weren’t showing I thought I’d just right in with what I have learnt tonight.

I got a message from Google:
Beginning in January 2017, Chrome (version 56 and later) will mark pages that collect passwords or credit card details as “Not Secure” unless the pages are served over HTTPS.
The following URLs include input fields for passwords or credit card details that will trigger the new Chrome warning. Review these examples to see where these warnings will appear, and so you can take action to help protect users’ data. The list is not exhaustive.

While I don’t even have a contact us form on my site and the only login is the WP admin I was puzzled. It turns out that what Google are picking up is the word(s) “Password” in the page source code. They make the assumption, and rightly so, that if the source code has the word password many times then a password is expected to be entered at some point.

I just did a search on your demo page: view-source:https://demo.tagdiv.com/newspaper_magazine/ and Password show 13 – THIRTEEN times.

This might be why, or it might not, Adsense ads aren’t showing for some users. (Although, I suspect many of them have new AdSense accounts and are too impatient…)

For me, I have never had an issue with the adverts showing, they always have. BUT the site is being penalised because “Password” is in the source code. And part of the reason for the site is advert revenue. Therefore, I respectfully ask that you investigate a remedy A.S.A.P.

Post count: 23312

Hello Warwick Jones,

Do you update the latest theme version? If you have not do it you should do it now because in the latest version of the theme, was introduced the option to disable logging section. Please notice that since now, if you will have a log-in on your website and if you do not have the https you will see the no-secure message. You should have the https. For more references about this regard, you should read the following information posted by Google, like this -> http://www.pcworld.com/article/3118164/security/google-chrome-to-start-marking-http-connections-as-insecure.html So, if you do not have the https you should simply disable the login and the nonsecure message will disappear.

Thanks for your understanding!

Viewing 2 posts - 1 through 2 (of 2 total)
The forum ‘Newspaper’ is closed to new topics and replies.