Skip to content

Comment on Chrome's insane password security strategyparent

Comments

If I see your password, I can write it down and use it later without you even knowing I was there. That's why we never send passwords in emails.

Maybe requiring you to re-enter your login session password, as a pseudo master password, would slow down a really naive attacker.

That's exactly what I'm trying to achieve. It's a real concern for many people. Please show this to a non-technical person and see what they say.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.