Quote:
Originally Posted by Jamie Edwards I disagree that it is a useful feature - I believe it would mislead users into a sense of security, without them realising at the first instance that anyone who gets that hash effectively has their password with regard to being able to login to the system. |
But what is better, to have an unreadable password in an URL or a readable ?
Assuming that people will use different passwords here and there but with additional information, here will MD5 prevent further guessing on the readable version.
I think it's a simple and very good feature.