How does it deal with stupid password format restrictions?
so, either password database + master password gets stolen, or salt database + master password gets stolen
Throwing passwords at a salt db gets you... what?
so, either password database + master password gets stolen, or salt database + master password gets stolen