Hacker News new | ask | show | jobs
by dogma1138 2897 days ago
That only works for services that do not store any sensitive data and employ costumer controller encryption, if your password is used as a cryptographic tool then it’s out of the question to use such mechanism.
2 comments

Then how would you be able to reset your password? All I'm saying is that any service that allows password resets shouldn't have passwords at all.
Whatsapp has figured out a solution to this problem. i.e. what is your Whatsapp password?
Your telephone number. So instead of something you know (password), they use something you have (phone).