|
|
|
|
|
by apgwoz
5201 days ago
|
|
> It sounds like you have the email addresses of your users stored in plaintext Just curious, but are you suggesting that plain text is the wrong way to store an email address? Your comment makes me draw that conclusion, which of course seems rather silly. |
|
If email addresses are obfuscated in some way, the difficulty for an attacker is increased.
The tradeoff in convenience is that you force a user who has forgotten his password to remember what email address she signed up with in order to recover it via email.