DEV Community

Discussion on: The curious case of insecure HTTPS certificates

slavius profile image

Please stop being rude.

I tried to explain to you you don't ever need to hash passwords or any sensitive data if you're using lower level security which does secure shared secret negotiation followed by encryption of payload in transit.

If you don't care why Google sends cleartext passwords you're the one that's missing something.

Please, go and study that topic to understand it.