Hacker News new | ask | show | jobs
by thaumasiotes 1885 days ago
This is an intended part of the design of security questions. They function like passwords, but they are not conceived of as being passwords.

If the bank wasn't able to view the answers in plain text, the security questions would not be able to serve their intended purpose.