Get rid of default passwords
There's this nice document by CISA.
Among other good ideas, it calls to:
GOAL: Within one year of signing the pledge, demonstrate measurable progress towards reducing default passwords across the manufacturers’ products.
This is something actionable in Stork. We could enforce changing the password on login if it's set to admin
. Or better yet, have it empty and enforce changing on first login. Other approaches are certainly possible.