Hacker News new | ask | show | jobs
by skj 4478 days ago
They would not have to store your password to know that you typed an old one by accident, just a hash.
1 comments

That is true, but all of the things in that post are still true. All of the password recovery steps will work, no matter how the backend is done.