GREAT change is approaching. NIST will standardise prohibition of requirement of composing passwords from various character styles, and requirement for periodic password changes. These are harmful and obsolete rules. Now they will be treated as a cybersecurity weakness https://pages.nist.gov/800-63-4/sp800-63b.html
NIST Special Publication 800-63B

NIST Special Publication 800-63B

@LukaszOlejnik This revamp of memorized secrets started by NIST years ago now. But the world is very slow to adopt this updated guidance, especially financial services organizations.