Birdwatch Note Rating
2025-02-17 23:48:20 UTC - NOT_HELPFUL
Rated by Participant: EAD5FAD027ED87B6CFA67A5CADE0D1C9BDBA8E87B7D4CF4D9C2C30ED8181093F
Participant Details
Original Note:
Websites do usually send a “plain text” password (with encryption over the wire, usually TLS). Not doing so would defeat the purpose of hashing/salting as that would allow anyone to use leaked data to sign in to a web service – sending it as if it’s recently hashed password. https://blog.1password.com/what-is-hashed-password/ https://en.m.wikipedia.org/wiki/Salt_(cryptography)
All Note Details