Hello,

Just a quick (worrying) note:

I just filled out the "Forgot Password?" form on the
webstandardsgroup.orgsite and had my password sent back to me.

Either the passwords are being stored in plain text, or are being encrypted
with a key that the website software has access to. Could an admin clear up
the situation with regards to how passwords are being stored?

(Regardless of the reason, I recommend members make sure their passwords
for this list be completely different from their other passwords, in the
event that the WSG site suffers a security breach. This is good practice
regardless, but sometimes software like 1Password is too much of a pain in
the bum to use with every website.)

Thanks,
Rob Howard


*******************************************************************
List Guidelines: http://webstandardsgroup.org/mail/guidelines.cfm
Unsubscribe: http://webstandardsgroup.org/join/unsubscribe.cfm
Help: memberh...@webstandardsgroup.org
*******************************************************************

Reply via email to