4 ms·
no, they definitely shouldn't, for the same reason they don't store the real passwords in plain text. it would be a terrible security hole.
by phpnode 13y ago
no, they definitely shouldn't, for the same reason they don't store the real passwords in plain text. it would be a terrible security hole.
- m4tthumphrey 13y agoSorry for being ignorant, but why is providing the passwords they guess/automate a security issue?
- cscheid 13y agoFor one, because if someone does find a hole that gives them access to Github data, they'll have all password attempts, which would include typos of the real password. Which is a terrible, terrible thing to store in a hard drive (see Adobe)
- thibaut_barrere 13y agoFor instance (just a quick idea): because if you make a mistake and enter your gmail password instead of your github password, now your gmail password is stored in clear text in their database, opening another can of worms etc.