If they are self-hosted they can use the Migrated password hashes support plugin. It doesn’t import the passwords, but hashes of the passwords, so it’s as safe as the passwords were on the old system.
If they are self-hosted they can use the Migrated password hashes support plugin. It doesn’t import the passwords, but hashes of the passwords, so it’s as safe as the passwords were on the old system.