Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So I am supposed to trust that the random forum I have to sign up for to view the solution of a question securely hashes the password I send them?

That’s pretty much like handing you car keys to a random person on the street and be confident they will take it to the bank and put it in a locker.



Why do you care? It's not like you use the same password for everything right?


I don’t, but the people we try collectively to protect do. That’s why we have 2FA and Passkeys in the first place, because most people will not conform to security best practices




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: