Larion Studios forum stores your passwords in unhashed plaintext. Don't use a password there that you've used anywhere else.

you are viewing a single comment's thread
view the rest of the comments
[–] 11 points 2 years ago (1 child)

this is still a terrible idea. the system should never know the plaintext password.

logs capture a lot even automated emails. i don't see a single reason to send the user their plaintext password and many reasons why they shouldn't

  • source
  • parent
  • hideshow 1 child comment
  • [–] 2 points 2 years ago*

    passwords are usually hashed server-side tho and that's done for a reason.
    if handling passwords correctly, server side hashing is way more secure then client-side. (with client side hashing, hash becomes the password...)

  • source
  • parent