Hacker News new | past | comments | ask | show | jobs | submit login

As a service (http://infostripe.com) we generally only store public information but we still encrypt most of it to make it less valuable as a whole in case our db got stolen somehow.

Whether the password was plain text or decrypted by a tool both are bad practice. The only person who should have any means to make sense of the hash gibberish in any db is the user who created the key.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: