Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Or, use TLS and get it for free. Crypto on JS is a scary, scary world.


I don't think I was proposing not using TLS, just that if you interpret sending cleartext password over TLS as "plain-text" then sending it encoded over TLS sounds better.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: