Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Storing age is no different to storing name or address to me, it’s just a field in /etc/passwd, and root can change it.


I would disagree. First, passwd(5) is a venerable and rigidly-defined format. Can we please stop abusing poor GECOS for everything?

Second, storing PII in a world-readable file is unacceptable. Linux is multi-user so the administration needs to be responsible about sensitive data like that! Find somewhere else to stash it!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: