Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
seppel
on Sept 4, 2020
|
parent
|
context
|
favorite
| on:
We didn't encrypt your password, we hashed it
What are people using to store API tokens (eg. hmac based secrets)? My understanding is that it is symmetric so you need to store it in a recoverable way -- which always means you can leak it. What are better ways?
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: