Cert
3. UnderstandableLevel AA

3.3.8 Accessible Authentication (Minimum)

접근 가능한 인증(최소)

Summary

Authentication must not depend on a cognitive function test such as recalling or transcribing a value. New in WCAG 2.2, it targets the habit of gating access behind memorized passwords and puzzles. Allowing paste and password managers, or offering an alternative method, satisfies it.

Common failures

  • Blocking paste in the password field, which rules out password managers.
  • Offering only a distorted-text CAPTCHA with no alternative route.

Corresponding KWCAG 2.2 items

  • 7.4.3 Accessible Authentication

Related study units

Read the W3C source — Understanding SC 3.3.8