this post was submitted on 21 Feb 2026
481 points (99.8% liked)

People Mastodon

384 readers
306 users here now

People tooting stuff. We allow toots from anyone and are platform agnostic (Mastodon, BlueSky, Twitter, Tumblr, FaceBook, Whatever)

founded 5 months ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] Maxxie@piefed.blahaj.zone 2 points 1 month ago* (last edited 1 month ago) (1 children)

which part was wrong?

Because the hashing happens server-side, it still has access to the original data. Which is why I said

It can leak if the server is compromised or misconfigured

[โ€“] Nomad 1 points 1 month ago

The hash for a password is not that secret. For a strong password it can't be used for anything bad really.