Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

i assume the obvious issue with this is browser support? and what about mobile platforms? and then having everyone agree on a standard method for the salt/hash? sounds nice in theory though.


This scheme has another fatal flaw: What happens when a site moves to another domain?

All accounts will go poof...


And how do you handle subdomains? Different hash, or same? They could be different sites entirely, but they're also more likely to change, so you've got the same domain-change problem.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: