| ▲ | jadamson 15 hours ago | ||||||||||||||||
I don't understand your suggestion. If you're still showing one character after each character entered, what's changed? What's the benefit of having a random character from a random set, instead of just a random character? | |||||||||||||||||
| ▲ | oneeyedpigeon 14 hours ago | parent | next [-] | ||||||||||||||||
I think the idea is that each character overwrites the previous, so you're never showing the total length (apart from 0/1!) | |||||||||||||||||
| |||||||||||||||||
| ▲ | NiloCK 14 hours ago | parent | prev | next [-] | ||||||||||||||||
There's no persistent reveal of password length after you're finished typing. It reduces the length-reveal leak from anyone who eventually sees the terminal log to people who are actively over-the-shoulder as you type it. | |||||||||||||||||
| |||||||||||||||||
| ▲ | DrawTR 14 hours ago | parent | prev [-] | ||||||||||||||||
They mean to have a static single character on the screen and have it change with every keypress. For example, you type "a" and it shows /. You type "b" and it shows "|", etc. | |||||||||||||||||