▲ | tharkun__ 2 days ago | ||||||||||||||||||||||||||||||||||
Not parent but, what about this does not scream red bloody flag to you?
Give my banking password to some other company? That's a red bloody flag right there. Stop the presses. Nobody should ever do that. Not outside of very specific use cases like a password manager and in that case there better be seventeen million levels of encryption and such in place.
Did we mention the color red? On a flag? I think we did. Cleartext, eh? Who thought this was a good idea? | |||||||||||||||||||||||||||||||||||
▲ | tzs a day ago | parent | next [-] | ||||||||||||||||||||||||||||||||||
Storage in cleartext would indeed be a huge red flag, but Plaid says they store it encrypted and I've seen no evidence that they are wrong about that. That still might be a red flag but not as big a red flag. Cleartext means a database leak would leaks passwords. Encrypted, if done right, would mean a database leak would not leak passwords. | |||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||
▲ | BenjiWiebe 2 days ago | parent | prev [-] | ||||||||||||||||||||||||||||||||||
Yep, that's what I was meaning. |