User Avatar Image

Passwords stored in ClearText?

posted by FilthyPumpkin on - last edited - Viewed by 158 users

Hi,

I must say that I was kinda surprised by the Welcome mail you sent to my e-Mail address, mainly because it contained my password in Clear Text. I'm not sure if you actually store them in clear text (i doubt so, as after the great reddit fiasco in 2006, no one in their rightful mind would not use a salted hash), but I would recommend not sending them round through unprotected channels like e-Mails. That is scary ;)

1 Comment - Linear Discussion: Classic Style
  • Notice when you log on that it sends the password unencrypted as well. Don't use the same password for Telltale that you use for anything particularly important. (Though it's a good policy to use a different password for every site anyway.)

Add Comment