Hacker News new | past | comments | ask | show | jobs | submit login

Not case sensitive, huh? How about not even distinguishing between letters and numbers?

When I called a prominent bank* recently, I was asked to enter my password via the phone. As in, the digit-equivalent of my password. At least I finally figured out why their password length is capped so low - user experience!

*I began this post with the bank name, and then wondered if given their approach to security, even that might be a bad idea.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: