Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I wasn't talking about sending emails.


But... the conversation was about sending the password in emails.


Read the comment I replied to. It explains that the passwords are not hashed at all. They are not sent in an email and then hashed.

I was talking about the practice quoted in that comment of not hashing passwords.

Edit: To be clear it doesn't say it explicitly, but it says that the cleartext password is sent periodically and the only way to do that is to not hash it.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: