|
|
|
|
|
by tptacek
6438 days ago
|
|
The trade-off is indeed the security of your users versus the convenience of your developers. That said, I don't so much care whether you store your passwords with a demonstrably inferior scheme like Authgasm's default or the 1-line-delta variant of it that resolves its biggest problem. It's fine to be ignorant about this stuff; it's not going to make you 1 extra dollar to do it right. Just don't be militant about your ignorance. |
|
I don't think I'm being militant about anything... Just carrying on what was a reasonably pleasant and honest conversation. Yes, part of my decision was to do with that my partner is a Window's user and I can't do anything about this at the moment. But the other part of the calculation that you overlook is that my current project is not one that requires over the top, secret squirrel encryption on stored passwords. This consideration came into it as well.
You sound bitter, man. Maybe you should take a nap and stop being so militant yourself.