Ryan Prior wrote:

> You could require OpenID to login (most people have one, especially
> Internet socialites) and store only a secure hash of the OpenID
> provider string. That way, password recovery is passed off to somebody
> else and users are free to choose their own identity providers. If
> somebody subpoenas data, all they can do is brute-force the hash and
> then send another subpoena over to the OpenID provider.

The plugins don't support OpenID ;)
_______________________________________________
Libre-fm mailing list
[email protected]
http://lists.autonomo.us/mailman/listinfo/libre-fm

Reply via email to