Hacker News new | past | comments | ask | show | jobs | submit login

> I also posed the question here a while ago: http://www.quora.com/How-does-ifttt-securely-store-passwords...

And you appear to have received an answer there, as well. Anything using OAuth doesn't need to store passwords, and for anything else ifttt stores the password in an encrypted (but obviously retrievable) form. I don't see how they could do otherwise; at most, they could refuse to interoperate with any sites not supporting OAuth, and I don't see the benefit to that.




To be clear, I was looking for more detail around how they were doing the reversible encryption.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: