They also restrict it to <= 16 characters.... Yea, that's still decently secure, but there's nothing like a 50 character password that's pretty much impossible to break. I don't get why they put these restrictions on. Probably some brainless dev decided to make a SQL column 16-bytes wide.
EDIT: That doesn't even make sense, unless they're storing plain-text passwords.
There was a site I used where one password field was something like 20 chars max, the other was 50. So I could change my password but never log in with it.
That company was namecheap, if I remember rightly.
EDIT: That doesn't even make sense, unless they're storing plain-text passwords.