Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I suspect, given the reference to sending verification emails, that hashing was what was intended here. As with the use of identity instead of authorization. To be clear, encryption implies you can retrieve the stored value later, while hashing is intended to be one-way.


I've fixed the language in question. Thanks all for the catch here.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: