Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I totally respect Troy and the work he's doing, but I still can't justify to myself the risk of typing my passwords into his website because that would be the very first time that I would use any of those in places other than the ones where I normally use them.

Is there a way around this?

Edit: to answer my own question, I should read a bit more rather than click on the first link, the answer is here:

https://haveibeenpwned.com/API/v3?ref=troyhunt.com#PwnedPass...

Which uses:

https://en.wikipedia.org/wiki/K-anonymity



DM me your passwords Ill do it for you




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: