SECURITY: Password retention policy

Hi,

Next to MFA we would like to see one password retention policy for all non SSO users, overarching all projects.