Those are some really interesting arguments in the bcrypt issues/PRs. I guess I take the opinion that you can never have too much security, so I would include the constant time string comparison as well. I'm glad Devise does that.
For further actions, you may consider blocking this person and/or reporting abuse
We're a place where coders share, stay up-to-date and grow their careers.
Those are some really interesting arguments in the bcrypt issues/PRs. I guess I take the opinion that you can never have too much security, so I would include the constant time string comparison as well. I'm glad Devise does that.