Hacker News new | ask | show | jobs
by e1ven 4883 days ago
I don't mean to speak for the OP, but I'm not particularly comfortable with that idea.

I don't necessarily know how well you are protecting them, or if your admins are able to copy my password. Even if you encrypt it, who's to say how well? What if you DB leaks, and my credentials are in the hands of the "bad guys".

It's not fundamentally terrible, but it increases the attack vector..

1 comments

Actually, you do know -- but only if you read my posts and related discussion here: http://news.ycombinator.com/item?id=4971002

We're going to add this as a FAQ on the site with the next rev.