I'm working with a government agency that requires security scans for new sites. Using this testing suite, they've identified a number of issues affecting Omeka.
- Autocomplete on email/password-related inputs...
- admin login and forgot-password forms
- Guest User login, register, forgot-password forms
As for issue #2, perhaps someone can offer some details on how best to fix it as I'm not entirely sure where to start.
Cheers -- E