PLEASE FOR THE LOVE OF ERIS IF YOU ARE STARTING OUT IN WEB DEV:
* REQUIRE SSL if you have inputs for ANY kind of password
* Hash your passwords securely, preferably with a salt
* DON'T SEND CREDENTIALS VIA EMAIL
* Please offer 2FA if you can (sometimes a lot of apps just aren't built for it so I totally get why it's a Hard Problem™ in many cases)
* Please offer a form of 2FA that isn't SMS or email